TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Dismantling a Crappy Malware Operation

102 点作者 MrBruh大约 2 年前

9 条评论

nightpool大约 2 年前
You mentioned they were using Dropbox to distribute the malware—did you follow up with them? What about the university?
jallasprit大约 2 年前
I am surprised and also not surprised that they had approximately 0 OPSEC related to their hustle.
评论 #35309569 未加载
nubinetwork大约 2 年前
Nice, but I have to wonder why Github acted on this so fast... I reported one account spreading Python based malware 2 months ago and the account was still there up until last week.
quacksilver大约 2 年前
Great work! - though the redaction of names / university is very leaky if that is a concern (particularly if you have some knowledge of common Vietnamese naming patterns)
评论 #35313356 未加载
评论 #35316494 未加载
atsushin大约 2 年前
Really fun analysis, wasn't aware that Python scripts could be packaged into an executable until now, learned something new. Thanks for sharing!
评论 #35309655 未加载
voiper1大约 2 年前
Incredible detective work!<p>Why would discord let anyone delete a webhook?<p>I&#x27;d think anyone can post to the webhook, but you need to be authorized to modify it.
评论 #35312450 未加载
juunpp大约 2 年前
Did they have &quot;malware development and distribution&quot; on their resume?
charcircuit大约 2 年前
As mentioned in the article anyone can delete a malicious webhook.<p><a href="https:&#x2F;&#x2F;webhooks.scam.gay&#x2F;" rel="nofollow">https:&#x2F;&#x2F;webhooks.scam.gay&#x2F;</a> is a site that makes it easy to do for people who want a tool do it for them.
b1c1jones大约 2 年前
Great work!