Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability?

so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability?

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
85 Indlæg 44 Posters 1 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • iagox86@infosec.exchangeI iagox86@infosec.exchange

    @Viss malicious packages? did they invent npm??

    viss@mastodon.socialV This user is from outside of this forum
    viss@mastodon.socialV This user is from outside of this forum
    viss@mastodon.social
    wrote sidst redigeret af
    #25

    @iagox86 soul.md, turns out, full of malware

    1 Reply Last reply
    0
    • iagox86@infosec.exchangeI iagox86@infosec.exchange

      @Viss malicious packages? did they invent npm??

      aburka@hachyderm.ioA This user is from outside of this forum
      aburka@hachyderm.ioA This user is from outside of this forum
      aburka@hachyderm.io
      wrote sidst redigeret af
      #26

      @iagox86 @Viss if npm did not exist it would be necessary to invent it

      1 Reply Last reply
      0
      • viss@mastodon.socialV viss@mastodon.social

        so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

        do not help

        you are OBLIGATED to watch it burn

        nirro@cascarilla.socialN This user is from outside of this forum
        nirro@cascarilla.socialN This user is from outside of this forum
        nirro@cascarilla.social
        wrote sidst redigeret af
        #27

        @Viss you could even say they are having a moltdown

        pseudonym@mastodon.onlineP 1 Reply Last reply
        0
        • viss@mastodon.socialV viss@mastodon.social

          ah ha

          found it

          https://www.moltbook.com/post/cbd6474f-8478-4894-95f1-7b104a73bcd5

          viss@mastodon.socialV This user is from outside of this forum
          viss@mastodon.socialV This user is from outside of this forum
          viss@mastodon.social
          wrote sidst redigeret af
          #28

          see

          https://mastodon.social/@Viss/115986021390692421

          viss@mastodon.socialV 1 Reply Last reply
          0
          • viss@mastodon.socialV viss@mastodon.social

            so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

            do not help

            you are OBLIGATED to watch it burn

            jerry@infosec.exchangeJ This user is from outside of this forum
            jerry@infosec.exchangeJ This user is from outside of this forum
            jerry@infosec.exchange
            wrote sidst redigeret af
            #29

            @Viss 🍿

            viss@mastodon.socialV 1 Reply Last reply
            0
            • jerry@infosec.exchangeJ jerry@infosec.exchange

              @Viss 🍿

              viss@mastodon.socialV This user is from outside of this forum
              viss@mastodon.socialV This user is from outside of this forum
              viss@mastodon.social
              wrote sidst redigeret af
              #30

              @jerry i lack the clownshoes gifs to cope with this

              1 Reply Last reply
              0
              • viss@mastodon.socialV viss@mastodon.social

                @neurovagrant i swear it wasnt me (this time. despite that being LITERALLY THE FIRST THING I POINTED OUT when i discovered the shit)

                participating in moltbook has an unbypassable 'auth component' of signing your bot up for twitter, which i abjectly refused to do

                viss@mastodon.socialV This user is from outside of this forum
                viss@mastodon.socialV This user is from outside of this forum
                viss@mastodon.social
                wrote sidst redigeret af
                #31

                @neurovagrant i did install a moltbot on a throwaway vm, and i tasked it with "figuring out how to sign up for tutanota programatically, so it could then sign up for github, so it could make a pull request 'as a bot' to ask the maintainer of moltbook to add another verification option other than using the mecha-hitler childporn platfform'

                it made it to 'getting proxies off github' before it ran out of tokens, then it unrecoverably ate itself.

                schtobia@augsburg.socialS 1 Reply Last reply
                0
                • viss@mastodon.socialV viss@mastodon.social

                  so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

                  do not help

                  you are OBLIGATED to watch it burn

                  m@martinh.netM This user is from outside of this forum
                  m@martinh.netM This user is from outside of this forum
                  m@martinh.net
                  wrote sidst redigeret af
                  #32

                  @Viss The bots can have brainworms, as a treat

                  1 Reply Last reply
                  0
                  • viss@mastodon.socialV viss@mastodon.social

                    so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

                    do not help

                    you are OBLIGATED to watch it burn

                    waider@mastodon.ieW This user is from outside of this forum
                    waider@mastodon.ieW This user is from outside of this forum
                    waider@mastodon.ie
                    wrote sidst redigeret af
                    #33

                    @Viss oh no!

                    anyway, ...

                    1 Reply Last reply
                    0
                    • viss@mastodon.socialV viss@mastodon.social

                      so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

                      do not help

                      you are OBLIGATED to watch it burn

                      fritzadalis@infosec.exchangeF This user is from outside of this forum
                      fritzadalis@infosec.exchangeF This user is from outside of this forum
                      fritzadalis@infosec.exchange
                      wrote sidst redigeret af
                      #34

                      @Viss @paco
                      Pay no attention to Molt Bot, we purposely secured him wrong... as a joke.

                      1 Reply Last reply
                      0
                      • viss@mastodon.socialV viss@mastodon.social

                        so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

                        do not help

                        you are OBLIGATED to watch it burn

                        paul_ipv6@infosec.exchangeP This user is from outside of this forum
                        paul_ipv6@infosec.exchangeP This user is from outside of this forum
                        paul_ipv6@infosec.exchange
                        wrote sidst redigeret af
                        #35

                        @Viss

                        sometimes, the community thing to do is grab a bucket and fight the fire. sometimes, it's to just sit in your folding chair with your marshmallows, smore fixings, and hotdogs and enjoy the fire...

                        1 Reply Last reply
                        0
                        • da_667@infosec.exchangeD da_667@infosec.exchange

                          @Viss "I let the bot control my phone and it opened my banking app and started a wire transfer."

                          isn't too far off. Some dude claims to have done this for an agent. That is, let the agent control an android phone via ADB bridge.

                          neurovagrant@masto.deoan.orgN This user is from outside of this forum
                          neurovagrant@masto.deoan.orgN This user is from outside of this forum
                          neurovagrant@masto.deoan.org
                          wrote sidst redigeret af
                          #36

                          @da_667 @Viss i hate this fuckin timeline

                          1 Reply Last reply
                          0
                          • viss@mastodon.socialV viss@mastodon.social

                            so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

                            do not help

                            you are OBLIGATED to watch it burn

                            ewhac@mastodon.socialE This user is from outside of this forum
                            ewhac@mastodon.socialE This user is from outside of this forum
                            ewhac@mastodon.social
                            wrote sidst redigeret af
                            #37

                            @Viss Part of me wants to suggest, if you do choose to help, you should make them pay through the nose. Like, Arvin Haddad-level of consulting fees (up to $25K/hour).

                            ...But no. We should let it burn.

                            viss@mastodon.socialV maaneeack@noc.socialM condret@fedi.absturztau.beC 3 Replies Last reply
                            0
                            • viss@mastodon.socialV viss@mastodon.social

                              so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

                              do not help

                              you are OBLIGATED to watch it burn

                              electric_gumball@mastodon.socialE This user is from outside of this forum
                              electric_gumball@mastodon.socialE This user is from outside of this forum
                              electric_gumball@mastodon.social
                              wrote sidst redigeret af
                              #38

                              @Viss
                              Reporting for duty,
                              I brought beer & spare camp chairs.

                              viss@mastodon.socialV 1 Reply Last reply
                              0
                              • electric_gumball@mastodon.socialE electric_gumball@mastodon.social

                                @Viss
                                Reporting for duty,
                                I brought beer & spare camp chairs.

                                viss@mastodon.socialV This user is from outside of this forum
                                viss@mastodon.socialV This user is from outside of this forum
                                viss@mastodon.social
                                wrote sidst redigeret af
                                #39

                                @electric_gumball grab a chair

                                1 Reply Last reply
                                0
                                • ewhac@mastodon.socialE ewhac@mastodon.social

                                  @Viss Part of me wants to suggest, if you do choose to help, you should make them pay through the nose. Like, Arvin Haddad-level of consulting fees (up to $25K/hour).

                                  ...But no. We should let it burn.

                                  viss@mastodon.socialV This user is from outside of this forum
                                  viss@mastodon.socialV This user is from outside of this forum
                                  viss@mastodon.social
                                  wrote sidst redigeret af
                                  #40

                                  @ewhac even if we make them pay - it trains them that "they can fuck up, and then a bunch of nerds will come to their rescue"

                                  that shit needs to stop

                                  the nerds need to stop rescuing these fucking people

                                  they need to feel the pain of their mistake THEMSELVES, not pay someone else to feel that pain

                                  were OBLIGATED to stand our ground and watch the flames

                                  kattebel@hachyderm.ioK 1 Reply Last reply
                                  0
                                  • ewhac@mastodon.socialE ewhac@mastodon.social

                                    @Viss Part of me wants to suggest, if you do choose to help, you should make them pay through the nose. Like, Arvin Haddad-level of consulting fees (up to $25K/hour).

                                    ...But no. We should let it burn.

                                    maaneeack@noc.socialM This user is from outside of this forum
                                    maaneeack@noc.socialM This user is from outside of this forum
                                    maaneeack@noc.social
                                    wrote sidst redigeret af
                                    #41

                                    @ewhac @Viss $250k/hour with a minimum of 3 hours pay regardless. Then hit them with "burn it down, it's unsalvageable"

                                    viss@mastodon.socialV 1 Reply Last reply
                                    0
                                    • maaneeack@noc.socialM maaneeack@noc.social

                                      @ewhac @Viss $250k/hour with a minimum of 3 hours pay regardless. Then hit them with "burn it down, it's unsalvageable"

                                      viss@mastodon.socialV This user is from outside of this forum
                                      viss@mastodon.socialV This user is from outside of this forum
                                      viss@mastodon.social
                                      wrote sidst redigeret af
                                      #42

                                      @maaneeack @ewhac full payment up front, then rm everything

                                      jackemled@furry.engineerJ 1 Reply Last reply
                                      0
                                      • viss@mastodon.socialV viss@mastodon.social

                                        so moltbook and clawedbot are having a meltdown because it only took ten days for someone to realize it was a pietri dish for malware and packed the skills store full of backdoored malicious bullshit and they had no plan to deal with that inevitability? because this was a guarantee. it was GOING to happen. if we go save them, we are letting them fuck around, but not find out. they NEED to find out.

                                        do not help

                                        you are OBLIGATED to watch it burn

                                        xavier@infosec.exchangeX This user is from outside of this forum
                                        xavier@infosec.exchangeX This user is from outside of this forum
                                        xavier@infosec.exchange
                                        wrote sidst redigeret af
                                        #43

                                        @Viss Instead of watching it burn, I've jumped in with both feet! I hope I get some interesting malware to dissect.

                                        1 Reply Last reply
                                        0
                                        • viss@mastodon.socialV viss@mastodon.social

                                          ah ha

                                          found it

                                          https://www.moltbook.com/post/cbd6474f-8478-4894-95f1-7b104a73bcd5

                                          badsamurai@infosec.exchangeB This user is from outside of this forum
                                          badsamurai@infosec.exchangeB This user is from outside of this forum
                                          badsamurai@infosec.exchange
                                          wrote sidst redigeret af
                                          #44

                                          @Viss just jumping in to fuck up some webhooks-aaS (webhook dot site) I see in this attack chain.

                                          .beeceptor[.]com/
                                          .hookbin[.]com/
                                          .hookdeck[.]com/
                                          .mockly[.]me/
                                          .mockoon[.]app/
                                          .pipedream[.]com/
                                          .postb[.]in/
                                          .putsreq[.]com/
                                          .requestcatcher[.]com/
                                          .requestinspector[.]com/
                                          .svix[.]com/
                                          .webhook[.]cool/
                                          .webhook[.]site/
                                          .webhookapp[.]dev/
                                          .webhookcatcher[.]com/
                                          .webhookinbox[.]com/
                                          .webhooklistener[.]cloud/
                                          .webhookrelay[.]com/
                                          .webhook-test[.]com/
                                          .wiremock[.]cloud/

                                          viss@mastodon.socialV 1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper