Live data from Hacker News

Stopping phishing campaigns with Bash

blog.haschek.at

1–10 of 169 posts

Re: Stopping phishing campaigns with Bash

#3
Oh how cool, I thought I was the only one trying to mess with scammy sites when I find them. Although I can see that I could improve my methods, since I usually write a short user script which spams the forms with data from faker.js and let the open tab sit pinned in my browser for a week or so.

Re: Stopping phishing campaigns with Bash

#6

While this is all fun and games, I am curious if DOSing someone else’s server, even if it’s being used to run a phishing scam, is legal.

I seriously doubt it is legal in the United States. Seems like a pretty clear abuse of a computer network.

Re: Stopping phishing campaigns with Bash

#7

While this is all fun and games, I am curious if DOSing someone else’s server, even if it’s being used to run a phishing scam, is legal.

If you're in the US, it could be a violation of the Computer Fraud and Abuse Act. I used to do stuff like this until I became aware of the potential felony behind it.

Re: Stopping phishing campaigns with Bash

#10

All banks in the EU are required to use 2FA, I'm curious how these hackers get around that.

For quite a long time my bank used cargo culted 2FA i.e. 2x things that you know. Pretty embarrassing really. Thankfully they now have a card reader device but it's only used for certain actions (like adding new payees).
Post reply on HN