Twitter phishing/spam worm

I got a few DMs recently purporting to be warnings from people you follow about abusive posts from somebody else.


The link in the message goes to a phishing page most likely posting new messages again if you disclose your account.


Even though the scam is quite obvious, there are probably enough people still falling for this.


(The taget url is blacklisted by now, however)

Update (2012-09-26):

The story has now been reported by cnet:…

Update (2012-09-26):

There are a few variations of the actual message and the redirect urls sometimes use .tk domains, e.g.

Did you see this tweet about you? XYZ.TK

hilarious pic! XYZ.TK

Twitter might start to charge soon, sign this petition to keep the service free!

HIGHEST QUALITY REPLlCA WATCHES & JEWELRY 15% Off (this may have been a normal spam url)