Wikipedia hit by self-propagating JavaScript worm that vandalized pages

Wikipedia Gets a Fucking JavaScript Infection

Oh for fuck’s sake. Look at this shit. Wikipedia, that bastion of “any idiot can edit” knowledge, just got itself proper fucked by a self-propagating JavaScript worm. And who saw this coming? Everyone with half a brain cell and a working knowledge that users are, by and large, complete fucking morons.

Some bright spark thought it would be a grand old idea to inject malicious JavaScript into user pages, which then proceeded to spread like herpes at a tech conference. This digital syphilis targeted user accounts, vandalized pages, and propagated itself faster than rumors about the PFY’s browsing history. The worm exploited the fact that Wikipedia allows users to customize their pages with scripts—because apparently, we learned absolutely fucking nothing from the MySpace era.

It modified user profiles and spread when other unsuspecting users visited infected pages, executing XSS attacks that would make a first-year security student weep into their Red Bull. Classic cross-site scripting bullshit that any competent admin should have neutered at the firewall, but nooooo, let’s just leave the barn doors wide open and invite every script-kiddie with a grudge to come on in and shit all over the server.

And the best part? The perpetrator claimed they were just “testing” security. Testing! As if that’s s