Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. @jerry @lerg regarding the "malicious interview code" thingy from the podcast, ep340: Interesting version I encountered itw a bit over a year ago: Fake job interview (also tailored at cryptocurrency devs) with a malicious video conferencing app.

@jerry @lerg regarding the "malicious interview code" thingy from the podcast, ep340: Interesting version I encountered itw a bit over a year ago: Fake job interview (also tailored at cryptocurrency devs) with a malicious video conferencing app.

Scheduled Pinned Locked Moved Uncategorized
3 Posts 2 Posters 2 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • nyanbinary@infosec.exchangeN This user is from outside of this forum
    nyanbinary@infosec.exchangeN This user is from outside of this forum
    nyanbinary@infosec.exchange
    wrote last edited by
    #1

    @jerry @lerg regarding the "malicious interview code" thingy from the podcast, ep340: Interesting version I encountered itw a bit over a year ago: Fake job interview (also tailored at cryptocurrency devs) with a malicious video conferencing app.

    Was full amateur hours with everyone involved (incl. attackers, didnt even try obfuscating shit), but led to one of our devs (in the process being fired, someone forgot to take away & lock their company macbook) ending up with an infostealer, stealing company passwords & their private wallets they had on their company device...

    Got reminded of that when mentioned the recommendation of running the coding challenges in isolated VMs - bringing it to the office side instead of coding side is a neat workaround & messes with peoples mental model

    nyanbinary@infosec.exchangeN lerg@infosec.exchangeL 2 Replies Last reply
    0
    • nyanbinary@infosec.exchangeN nyanbinary@infosec.exchange

      @jerry @lerg regarding the "malicious interview code" thingy from the podcast, ep340: Interesting version I encountered itw a bit over a year ago: Fake job interview (also tailored at cryptocurrency devs) with a malicious video conferencing app.

      Was full amateur hours with everyone involved (incl. attackers, didnt even try obfuscating shit), but led to one of our devs (in the process being fired, someone forgot to take away & lock their company macbook) ending up with an infostealer, stealing company passwords & their private wallets they had on their company device...

      Got reminded of that when mentioned the recommendation of running the coding challenges in isolated VMs - bringing it to the office side instead of coding side is a neat workaround & messes with peoples mental model

      nyanbinary@infosec.exchangeN This user is from outside of this forum
      nyanbinary@infosec.exchangeN This user is from outside of this forum
      nyanbinary@infosec.exchange
      wrote last edited by
      #2

      @jerry @lerg oh, and re: "doctor didnt notice his password changed, someone stealing their paycheck": we also encountered this a couple of months ago, fortunately an impacted employee noticed the password change & a helpdesk agent actually put 1 & 1 together, so I believe we managed to revert everything in time.

      An interesting quirk was that not everyone noticed - as non-IT users were targeted they may only type in their actual password every couple of days & people forgetting passwords isnt uncommon, so it looks like some employees may have just... assumed IT changed their password/they forgot their passwords/...?

      1 Reply Last reply
      0
      • nyanbinary@infosec.exchangeN nyanbinary@infosec.exchange

        @jerry @lerg regarding the "malicious interview code" thingy from the podcast, ep340: Interesting version I encountered itw a bit over a year ago: Fake job interview (also tailored at cryptocurrency devs) with a malicious video conferencing app.

        Was full amateur hours with everyone involved (incl. attackers, didnt even try obfuscating shit), but led to one of our devs (in the process being fired, someone forgot to take away & lock their company macbook) ending up with an infostealer, stealing company passwords & their private wallets they had on their company device...

        Got reminded of that when mentioned the recommendation of running the coding challenges in isolated VMs - bringing it to the office side instead of coding side is a neat workaround & messes with peoples mental model

        lerg@infosec.exchangeL This user is from outside of this forum
        lerg@infosec.exchangeL This user is from outside of this forum
        lerg@infosec.exchange
        wrote last edited by
        #3

        @nyanbinary @jerry Oy, fun times... hah.

        1 Reply Last reply
        1
        0
        • R relay@relay.infosec.exchange shared this topic
        Reply
        • Reply as topic
        Log in to reply
        • Oldest to Newest
        • Newest to Oldest
        • Most Votes


        • Login

        • Login or register to search.
        • First post
          Last post
        0
        • Categories
        • Recent
        • Tags
        • Popular
        • World
        • Users
        • Groups