Someone created a bunch of github profiles impersonating real researchers alongside fake Twitter accounts. Pretty fascinating, really.

  • meli nasa@feddit.de
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 year ago

    huh, this is weird. one would think people would use separate machines / vms to test zero day exploits, not their main machines.

    • execveat@infosec.pubOP
      link
      fedilink
      English
      arrow-up
      4
      ·
      1 year ago

      They’re not even that stealthy. The code is bullshit, gitignore folder is super suspicious and malware is just a binary within the zip file. Clearly meant for script kiddies.