Live data from Hacker News

I Inspected My Take-Home Interview Project. It Was a Whole Operation

citizendot.github.io

1–10 of 135 posts

Re: I Inspected My Take-Home Interview Project. It Was a Whole Operation

#3

I assume these types of things are going to become more and more common. Looks like these folks really did their homework. It's nasty, but I have to respect their skills. I'll bet it works, quite often.

Their "skills" might just be borrowed from some LLM.

Re: I Inspected My Take-Home Interview Project. It Was a Whole Operation

#4
My takeaway from this is that I should use the same defense as when someone calls you "from you bank". When they reach out directly, go to the real company's site to apply and contact a real recruiter. If you can't validate that the business is legit before, then assume malfeasance.

Re: I Inspected My Take-Home Interview Project. It Was a Whole Operation

#6

I assume these types of things are going to become more and more common. Looks like these folks really did their homework. It's nasty, but I have to respect their skills. I'll bet it works, quite often.

Their "skills" might just be borrowed from some LLM.

Yeah, this scam is probably all automated at first place. Welcome to the "agent era"...

Re: I Inspected My Take-Home Interview Project. It Was a Whole Operation

#7

I assume these types of things are going to become more and more common. Looks like these folks really did their homework. It's nasty, but I have to respect their skills. I'll bet it works, quite often.

yea, i had fun looking around, this felt like a ctf challenge lol. if they had any vuln on their server, it would've been even better.

Re: I Inspected My Take-Home Interview Project. It Was a Whole Operation

#9
post #4

My takeaway from this is that I should use the same defense as when someone calls you "from you bank". When they reach out directly, go to the real company's site to apply and contact a real recruiter. If you can't validate that the business is legit before, then assume malfeasance.

Companies make this hard, a bit like various email scams where legit company communication comes from seemingly random domains (hello paypal). Often the company is legit, but theres no public contact that knows anything about the recruiter thats working for them.
Post reply on HN