Live data from Hacker News

I almost got hacked by a 'job interview'

blog.daviddodda.com

211–220 of 534 posts

Re: I almost got hacked by a 'job interview'

#211
post #60

Earlier quoted context omitted.

HN has harbored fugitive hackers knowingly, this does not surprise me at all.

- people post because they want to be hired - info is public - random person reaches out with public info - ??? - HN harbours fugitive hackers

I think, if you take jacquesm's posting history here, into consideration it was probably a joke. Maybe not his best work but I don't think he was serious.

Re: I almost got hacked by a 'job interview'

#213

I'm seeing red flags all over the story. "Blockchain" being the first one. The use cases for that are so small, it is a red flag in and of itself. Then asking you to run code before a meeting? No, that doesn't "save time", that is driving you to take actions when you don't yet know who is asking. Still, I appreciate the write-up. It is a great example of a clever attack, and I'm going to watch out more for such thing…

Doing this in the context of blockchain is probably a filter. Only folks who don't think his is all a scam anyway would apply there. So you filter for getting the more gullible folks. That are more likely to have a wallet somewhere.

Just like nigerian prince scams are always full of typos and grammar issues. Because only those not recognizing that as obvious scams click the link and thereby this is a filter to increase signal to noise for the scammers.

Re: I almost got hacked by a 'job interview'

#214

Earlier quoted context omitted.

https://www.urbandictionary.com/define.php?term=dfe DFE "deleted everything"

Why censor your answer? The F is for Fucking. DFE: Delete Fucking Everything.

It's a joke. An older version of the joke, from Usenet, is that RTFM stands for "Read The Manual".

The gag is that the newbie asking the question will wonder why the F wasn't included in the expansion, and rapidly figure it out. Or they ask, and you make fun of them for it. The joke is either kinda cerebral or really juvenile... and the tension between the two is part of the joke.

Re: I almost got hacked by a 'job interview'

#215
post #66

Earlier quoted context omitted.

> Seasoned accounts are a positive heuristic in many domains, not just LinkedIn. Yep. This is how the 3 major credit bureaus is the United States to verify your identity. Your residence history and your presences on the distributed Internet is the HARDES to fake.

> Your residence history and your presences on the distributed Internet is the HARDES to fake. When I was 18 with little to no credit trying to do things. Financial institutions would often hit me with security questions like this. But, I was incredibly confused because many of the questions had no valid answer. Somehow these institutions got the idea that I was my stepmother or something and started asking me about…

Not to be rude, but... uh... did your step mom steal your identity and use it for stuff? Minors are huge targets for that sort of stuff because generally no one is checking a 10 year old's credit

Re: I almost got hacked by a 'job interview'

#216
post #16

The pseudonym "Mykola Yanchii" on LinkedIn [1] doesn't look real at all. Click "More" button -> "About this profile", RED FLAGS ALL OVER. -> Joined May 2025 -> Contact information Updated less than 6 months ago -> Profile photo Updated less than 6 months ago Funny things, this profile has the LinkedIn Verified Checkmark and was verified by Persona ?!?! -> This might be a red flag for Persona service itself as it migh…

Exactly. There are at least several different modes these scammers are operating in but eventually it all boils down to some "technical" part in the interviews where the developer is supposed to run some code from an unknown repository.

Nowadays just to be sure, I verify nearly every person's LinkedIn profile's creation date. If the profile has been created less than a few years ago, then most likely our interaction will be over.

Re: I almost got hacked by a 'job interview'

#217

Earlier quoted context omitted.

LMAO this post on his page has to be an AI generated map, it puts the UAE in Bangladesh. https://www.linkedin.com/posts/mykola-yanchii-430883368_hiri... Anyway I think we can add OP's experience to the many reasons why being asked to do work/tasks/projects for interviews is bad.

yea, And this team-bonding pic has a ghost finger - https://www.linkedin.com/feed/update/urn:li:activity:7379209... On linkedin company pics, look for extra fingers.

I think this is a real picture. I can't explain the ghost finger, probably just a weird angle but it doesn't give off the generated vibe. The poster of the photo seems to be a real person as well as the person who left a comment. Probably in the OP's case the company was real but the person was impersonating. I had been involved in a couple of these scams recently and the patterns are very similar but approaches slightly different.

Re: I almost got hacked by a 'job interview'

#220
post #186

I've been hacked a couple of times, all job offers coming from linkedin. Now I calmly refuse to run code as a way to evaluate me and they stop asking. Be polite, say no, move on. * I wish linkedin and github were more proactive on detecting scammers

Github now is overwhelming the top source of spam in my entire online life existence. Its nonstop spam/scams to the disposable email I list on there. I've gotten less spam from literally spam testing services than github.

I once reported this kind of interview scam repository with the full backstory and explanation why I was reporting it and Github's support asked for a proof that it was a scam. As if I was supposed to do the detective's work. I just wrote back to them that they can do whatever they want with it as I've done my part.
Post reply on HN