Don’t fall for this Facebook Exploit

So this evening I came across a nicely performed combination of social engineering, phishing, and coding. I was on facebook and noticed that a friend posted something on my wall. On first look it appeared to be a link to the video “charlie bit me”, a popular meme from several months ago.

The link brings you to a profile note which looks like this:

WordPress/Mediatemple Exploit

Recently a large number of web sites were compromised in a subtle redirection attack. By some unknown means the attacker gains access to your wordpress database and inserts some javascript into the end of all your posts. This code will load from an external site, and on the first load, set a cookie, then redirect to a “virus” phishing site which attempts to install malicious software on the user’s computer.

