Post #2426761
2025-07-17 11:52 UTC
@fooker@corteximplant.com @filippo@abyssdomain.expert
Interesting, now I've to think what if they'd send you a different script when they detect this? Like one that is just designed to waste your time as a security researcher but does nothing. Combined with just sending a malicious script to a fraction of the victims would probably make it quite hard for researchers.
Or imagine you make this look like a legit service and 1/10th of the users running it get malwared 🤔
Replies (1)
-
@fooker@corteximplant.com 2025-07-17 12:24
@agowa338@chaos.social @filippo@abyssdomain.expert yea, that's why curl > file less file bash file Is the only way to do such a thing securely. Or something with signatures on top of it.