February 11, 2009 2:59 PM
- Text
Epilepsy Site Hacked With Seizure Images
Hackers / Man at computer, Binary code, with the word hackers (AP / CBS)
(AP)
Computer attacks typically don't inflict physical pain on their victims.
But in a rare example of an attack apparently motivated by malice rather than money, hackers recently bombarded the Epilepsy Foundation's Web site with hundreds of pictures and links to pages with rapidly flashing images.
The breach triggered severe migraines and near-seizure reactions in some site visitors who viewed the images. People with photosensitive epilepsy can get seizures when they're exposed to flickering images, a response also caused by some video games and cartoons.
The attack happened when hackers exploited a security hole in the foundation's publishing software that allowed them to quickly make numerous posts and overwhelm the site's support forums.
Within the hackers' posts were small flashing pictures and links - masquerading as helpful - to pages that exploded with kaleidoscopic images pulsating with different colors.
"They were out to create seizures," said Ken Lowenberg, senior director of Web and print publishing for the foundation.
He said legitimate users are no longer able to post animated images to the support forum or create direct links to other sites, and it is now moderated around the clock. He said the FBI is investigating the breach.
Security experts said the attack highlights the dangers of Web sites giving visitors great freedom to post content to different parts of the site.
In another recent attack, hackers exploited a simple coding vulnerability in Sen. Barack Obama's Web site to redirect users visiting the community blogs section to Sen. Hillary Rodham Clinton's official campaign site.
The hackers who infiltrated the Epilepsy Foundation's site didn't appear to care about profit. The harmful pages didn't appear to try to push down code that would allow the hacker to gain control of the victims' computers, for instance.
"I count this in the same category of teenagers who think it's funny to put a cat in a bag and throw it over a clothesline - they don't realize how cruel it is," said Paul Ferguson, a security researcher at antivirus software maker Trend Micro Inc. "It was an opportunity waiting to happen for some mean-spirited kid."
In a similar attack this year, a piece of malicious code was released that disabled software that reads text aloud from a computer screen for blind and visually impaired people. That attack appeared to have been designed to cripple the computers of people using illegal copies of the software, researchers said.
But in a rare example of an attack apparently motivated by malice rather than money, hackers recently bombarded the Epilepsy Foundation's Web site with hundreds of pictures and links to pages with rapidly flashing images.
The breach triggered severe migraines and near-seizure reactions in some site visitors who viewed the images. People with photosensitive epilepsy can get seizures when they're exposed to flickering images, a response also caused by some video games and cartoons.
The attack happened when hackers exploited a security hole in the foundation's publishing software that allowed them to quickly make numerous posts and overwhelm the site's support forums.
Within the hackers' posts were small flashing pictures and links - masquerading as helpful - to pages that exploded with kaleidoscopic images pulsating with different colors.
"They were out to create seizures," said Ken Lowenberg, senior director of Web and print publishing for the foundation.
He said legitimate users are no longer able to post animated images to the support forum or create direct links to other sites, and it is now moderated around the clock. He said the FBI is investigating the breach.
Security experts said the attack highlights the dangers of Web sites giving visitors great freedom to post content to different parts of the site.
In another recent attack, hackers exploited a simple coding vulnerability in Sen. Barack Obama's Web site to redirect users visiting the community blogs section to Sen. Hillary Rodham Clinton's official campaign site.
The hackers who infiltrated the Epilepsy Foundation's site didn't appear to care about profit. The harmful pages didn't appear to try to push down code that would allow the hacker to gain control of the victims' computers, for instance.
"I count this in the same category of teenagers who think it's funny to put a cat in a bag and throw it over a clothesline - they don't realize how cruel it is," said Paul Ferguson, a security researcher at antivirus software maker Trend Micro Inc. "It was an opportunity waiting to happen for some mean-spirited kid."
In a similar attack this year, a piece of malicious code was released that disabled software that reads text aloud from a computer screen for blind and visually impaired people. That attack appeared to have been designed to cripple the computers of people using illegal copies of the software, researchers said.
Popular Now in SciTech
- Retro Duo will play your old Nintendo games
- Apple iPad 3 rumors: thicker, sharper, coming soon
- Scientists say online dating doesn't work
- Kids react to seeing iPhone for first time
- Anonymous breaks into Assad's server
- Apple faces $1.6 billion iPad trademark lawsuit
- FBI releases Steve Jobs background report
- Hackers release Symantec pcAnywhere source code
- Apple iPad 3 rumors resurface, sources say March release
- Ethical iPhone 5 petitions head to Apple stores
- Facebook graffiti artist David Choe, from homeless to millions
- Apple iPhone 5 rumors, reports say June release
- Pinterest secretly swaps links for profit
- Shocking Stats on Texting While Driving
- Hackers tried to extort $50000 from Symantec
- Google Earth update erases undersea grid mistaken for "Atlantis"
- Facebook RIP pages defaced by British man
Latest CBS News Headlines
on Facebook
on CBS News
- Forrester 4Q profit doubles but outlook soft
- Doubts cast on "girlfriend adoption" scheme
- US: No leniency for Ill. man in erectile pump case
- Summary Box: Early Greece rally fades; Apple rises
on Facebook
- Adele opens up about vocal cord surgery
- Tenn. father charged with murdering couple who"unfriended" daughter on Facebook
- Mo. teen gets life in prison for murder of 9-year-old girl
- "American Idol": Jim Carrey's daughter out, and then disaster
on CBS News






