The scariest "user support" email I've received
71–80 of 267 posts
Re: The scariest "user support" email I've received
#72In Windows CMD you don’t even need to hit return at the end. They can just add a line break to the copied text and as soon as you paste into the command line (just a right click!), you own yourself. I have one question though: Considering the scare-mongering about Windows 10’s EOL, this seems pretty convoluted. I thought bad guys could own your machine by automatic drive-by downloads unless you’re absolutely on the l…
Far from an expert myself but I don't think this attack is directed at windows users. I don't think windows even has base64 as a command by default?
Re: The scariest "user support" email I've received
#73> as ChatGPT confirmed when I asked it to analyze it lol we are so cooked
Re: The scariest "user support" email I've received
#74> as ChatGPT confirmed when I asked it to analyze it lol we are so cooked
Re: The scariest "user support" email I've received
#75To me the scariest support email would be discovering that the customer's 'bug' is actually evidence that they are in mortal danger, and not being sure the assailant wasn't reading everything I'm telling the customer. I thought perhaps this was going that way up until around the echo | bash bit. I don't think this one is particularly scary. I've brushed much closer to Death even without spear-phishing being involved.
Re: The scariest "user support" email I've received
#76No it didn't. It starts with "sites.google.com"
Re: The scariest "user support" email I've received
#77I just want to point out a slight misconception. GDPR tracking consent isn't a question of ads, any manner of user tracking requires explicit consent even if you use it for e.g. internal analytics or serving content based on anonymous user behavior.
Re: The scariest "user support" email I've received
#78Earlier quoted context omitted.
I doubt it downloaded or executed anything, it probably just did a base64 decode using some tool and then analysed the decoded bash command which would be very easy. Seems like a good use of an LLM to me.
It can easily read base64 directly.
Re: The scariest "user support" email I've received
#79In Windows CMD you don’t even need to hit return at the end. They can just add a line break to the copied text and as soon as you paste into the command line (just a right click!), you own yourself. I have one question though: Considering the scare-mongering about Windows 10’s EOL, this seems pretty convoluted. I thought bad guys could own your machine by automatic drive-by downloads unless you’re absolutely on the l…
What's more baffling is that I also haven't heard of any Android malware that does this, despite most phones out there having several publicly known exploits and many phones not receiving any updates.
I can't really explain it except "social engineering like this works so well and is so much simpler that nobody bothers anymore".
Re: The scariest "user support" email I've received
#80In Windows CMD you don’t even need to hit return at the end. They can just add a line break to the copied text and as soon as you paste into the command line (just a right click!), you own yourself. I have one question though: Considering the scare-mongering about Windows 10’s EOL, this seems pretty convoluted. I thought bad guys could own your machine by automatic drive-by downloads unless you’re absolutely on the l…
>What’s with all the “please follow this step-by-step guide to getting hacked”? Far from an expert myself but I don't think this attack is directed at windows users. I don't think windows even has base64 as a command by default?