Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

My bet is C&C instructions.

IRC traffic is commonly blocked, but HTTP traffic directed to Twitter is generic enough to get through most locked down networks. I doubt whoever is behind this cares if it's public data and that people see what's being posted. Public access just means any newly compromised computer can access it without anything more than a single HTTP request.

If we had access to the IP(s) posting the tweets, it'd be pretty easy to get an idea if they were malicious or not. But where's the fun in that



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: