Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

Scheduled Pinned Locked Moved Uncategorized
24 Posts 21 Posters 67 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • jonty@chaos.socialJ jonty@chaos.social

    Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

    Link Preview Image
    pl@cosocial.caP This user is from outside of this forum
    pl@cosocial.caP This user is from outside of this forum
    pl@cosocial.ca
    wrote last edited by
    #12

    @jonty but it has a scan hash!!

    1 Reply Last reply
    0
    • jonty@chaos.socialJ jonty@chaos.social

      Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

      Link Preview Image
      david_chisnall@infosec.exchangeD This user is from outside of this forum
      david_chisnall@infosec.exchangeD This user is from outside of this forum
      david_chisnall@infosec.exchange
      wrote last edited by
      #13

      @jonty

      Some legitimate folks got burned by doing this because asking for money to not do a bad thing meets the legal definition of blackmail, even if it's well intentioned. If they have an actual business that they want you to contact, you may be able to get the police involved.

      1 Reply Last reply
      0
      • issyl0@ruby.socialI issyl0@ruby.social

        @jonty I escalated to the spam team and the account is now ⚰️.

        impulse9@chaos.socialI This user is from outside of this forum
        impulse9@chaos.socialI This user is from outside of this forum
        impulse9@chaos.social
        wrote last edited by
        #14

        @issyl0 @jonty thank you!

        1 Reply Last reply
        0
        • jonty@chaos.socialJ jonty@chaos.social

          Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

          Link Preview Image
          spaceinvader@social.securitytheater.netS This user is from outside of this forum
          spaceinvader@social.securitytheater.netS This user is from outside of this forum
          spaceinvader@social.securitytheater.net
          wrote last edited by
          #15

          @jonty Yeah, I wouldn’t pay $299 for something with only a SHA-256 seal! That’s more than $1/bit.

          1 Reply Last reply
          0
          • R relay@relay.publicsquare.global shared this topic
          • jonty@chaos.socialJ jonty@chaos.social

            Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

            Link Preview Image
            eatyourgreens@mastodon.socialE This user is from outside of this forum
            eatyourgreens@mastodon.socialE This user is from outside of this forum
            eatyourgreens@mastodon.social
            wrote last edited by
            #16

            @jonty isn’t extortion a teensy bit illegal in the UK?

            rndanger@infosec.exchangeR 1 Reply Last reply
            0
            • jonty@chaos.socialJ jonty@chaos.social

              Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

              Link Preview Image
              L This user is from outside of this forum
              L This user is from outside of this forum
              luc0x61@mastodon.gamedev.place
              wrote last edited by
              #17

              @jonty When you have a perfect idiot machine to generate massive scam, why don't?
              Here's the real added value of LLMs, where to monetize on.

              1 Reply Last reply
              0
              • jonty@chaos.socialJ jonty@chaos.social

                Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

                Link Preview Image
                guillotine_jones@beige.partyG This user is from outside of this forum
                guillotine_jones@beige.partyG This user is from outside of this forum
                guillotine_jones@beige.party
                wrote last edited by
                #18

                @jonty
                Who said Ai isn't making money?

                1 Reply Last reply
                0
                • jonty@chaos.socialJ jonty@chaos.social

                  Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

                  Link Preview Image
                  n1xnx@tilde.zoneN This user is from outside of this forum
                  n1xnx@tilde.zoneN This user is from outside of this forum
                  n1xnx@tilde.zone
                  wrote last edited by
                  #19

                  @jonty
                  Sounds like criminal extortion to me.
                  Send a C&D letter and f9ile a complaint with the police? Since it's over the wire, that makes it Federal if it's in the US.

                  1 Reply Last reply
                  0
                  • jonty@chaos.socialJ jonty@chaos.social

                    Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

                    Link Preview Image
                    nobody@mastodon.acm.orgN This user is from outside of this forum
                    nobody@mastodon.acm.orgN This user is from outside of this forum
                    nobody@mastodon.acm.org
                    wrote last edited by
                    #20

                    @jonty
                    "You're in a desert, Leon, walking along in the sand ..."

                    1 Reply Last reply
                    0
                    • jonty@chaos.socialJ jonty@chaos.social

                      Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

                      Link Preview Image
                      tr4nt0r@chaos.socialT This user is from outside of this forum
                      tr4nt0r@chaos.socialT This user is from outside of this forum
                      tr4nt0r@chaos.social
                      wrote last edited by
                      #21

                      @jonty more like Veritas scamming engine. Also got an issue yesterday, but it was empty without any details. But I instantly deleted it and blocked the account.

                      1 Reply Last reply
                      0
                      • eatyourgreens@mastodon.socialE eatyourgreens@mastodon.social

                        @jonty isn’t extortion a teensy bit illegal in the UK?

                        rndanger@infosec.exchangeR This user is from outside of this forum
                        rndanger@infosec.exchangeR This user is from outside of this forum
                        rndanger@infosec.exchange
                        wrote last edited by
                        #22

                        @eatyourgreens @jonty
                        Not if you put pressure on the right people

                        1 Reply Last reply
                        0
                        • jonty@chaos.socialJ jonty@chaos.social

                          Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

                          Link Preview Image
                          musevg@23.socialM This user is from outside of this forum
                          musevg@23.socialM This user is from outside of this forum
                          musevg@23.social
                          wrote last edited by
                          #23

                          @jonty @da_667
                          So… This is your code? And they created an issue about 2 alleged vulnerabilities and are asking you for $299 to disclose them to you?

                          1 Reply Last reply
                          0
                          • jonty@chaos.socialJ jonty@chaos.social

                            Today a bunch of my open-source projects got slammed by incorrect AI-written vulnerability reports demanding $299 for disclosure

                            Link Preview Image
                            xeno@hexokina.seX This user is from outside of this forum
                            xeno@hexokina.seX This user is from outside of this forum
                            xeno@hexokina.se
                            wrote last edited by
                            #24

                            @jonty@chaos.social this is just a sloppy attempt at automated extortion

                            (to the creator of this “””tool”””) get fucked mate

                            1 Reply Last reply
                            0
                            Reply
                            • Reply as topic
                            Log in to reply
                            • Oldest to Newest
                            • Newest to Oldest
                            • Most Votes


                            • Login

                            • Login or register to search.
                            • First post
                              Last post
                            0
                            • Categories
                            • Recent
                            • Tags
                            • Popular
                            • World
                            • Users
                            • Groups