Ich hatte heute ein gefälschtes Vorstellungsgespräch, bei dem versucht wurde, mich zum Klonen und Ausführen eines Repos mit einer Hintertür zum Diebstahl von Passwörtern zu bewegen. Sie gaben sich tatsächlich Mühe, seriös zu wirken. Es dauerte 15 bis 20 Minuten, bis sie auf den Betrug aufmerksam wurden. Sie kontaktierten mich auf LinkedIn und gaben sich als Web3-Unternehmen auf der Suche nach einem Freiberufler aus.

    Wie auch immer, hier ist die Malware, falls es jemanden interessiert:

    https://github.com/togetherlabsgamespace/palooza-poker/blob/main/routes/api/auth.js

    Bitte melden Sie das Repo (ich bin mir nicht sicher, ob es etwas nützt, aber nicht schaden kann).

    Attempted scam during job interview – git repo with wallet stealing backdoor
    byu/PuffThePed inCryptoCurrency

    Share.

    9 Kommentare

    1. CantaloupeCamper on

      I’m always curious if these attempts are focused on folks they know might have something like that on their computer.

      Like did they reach out to you?

    2. I’ve had similar, went through a whole thing of viewing their repo and Figma boards then suggested I log my wallet into their site. They got a little funny when I said I wouldn’t do that for an unverified site because that’s just good crypto hygiene.

      Either they were scammers or absolute morons. Either way, I’m out.

    3. Where is the backdoor? Not seeing anything obvious in the auth route or controller (didn’t look too deeply elsewhere since that’s what you linked).

    4. bitcoinbrisbane on

      Very common. And yep, they do all the fancy interview. Tell me about yourself stuff now.

    5. bitcoinbrisbane on

      Are the old Poker repo! There’s also an issue with server.JS of memory

    Leave A Reply