FORUM WARNING [2] Division by zero (Line: 2933 of /srcsgcaop/boardclass.php)
Virus City -
     
 
The Wikipedia Review: A forum for discussion and criticism of Wikipedia
Wikipedia Review Op-Ed Pages

Welcome, Guest! ( Log In | Register )

> Virus City, Dramatica and more
Emperor
post
Post #1


Postmaster
*******

Group: Regulars
Posts: 1,871
Joined:
Member No.: 2,042



A member here reported that his computer was infected with a virus while browsing Encyclopedia Dramatica. Other members say that it's a big problem on Dramatica, and that the people who run the site are fighting but losing.

How can this happen? Is MediaWiki that easy to put viruses into? Once a MediaWiki site is overrun with viruses, why is it so difficult to clean up?
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
 
Reply to this topicStart new topic
Replies
Somey
post
Post #2


Can't actually moderate (or even post)
*********

Group: Moderators
Posts: 11,816
Joined:
From: Dreamland
Member No.: 275



QUOTE(Emperor @ Fri 31st October 2008, 6:50pm) *
How can this happen? Is MediaWiki that easy to put viruses into? Once a MediaWiki site is overrun with viruses, why is it so difficult to clean up?

IMO, stuff like that would have to come from uploaded image files, which are probably scanned for embedded scripting and other forms of malware on Wikipedia, but not on ED or some other standard MediaWiki installation. I don't know exactly when Wikipedia started scanning them, but I suspect it was well before 2004.

Having said that, there's no guarantee that malicious code couldn't be embedded into an image file in such a way that WP's scanners wouldn't catch it, at least not immediately.

There was also this incident, but that was more of a "spoof" than anything else, though of course the ultimate goal there was also to spread a virus, and it did manage to ensnare a few gullible people, apparently.

As for it being difficult to clean up, that would depend on whether or not you can run malware-scanning software on the server, and how good it is. A site like ED probably doesn't operate its own servers, and if they have to check out each image manually, well... that would be a nightmare after a while, no question about that!
User is offlineProfile CardPM
Go to the top of the page
+Quote Post



Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 

-   Lo-Fi Version Time is now:
 
     
FORUM WARNING [2] Cannot modify header information - headers already sent by (output started at /home2/wikipede/public_html/int042kj398.php:242) (Line: 0 of Unknown)