There have been multiple accounts created with the sole purpose of posting advertisement posts or replies containing unsolicited advertising.

Accounts which solely post advertisements, or persistently post them may be terminated.

BearOfaTime ,

Wouldn’t it require elevation?

Yet another example of why running as root/admin is a Bad Idea©

IsThisAnAI , (edited )

Yes. The prompt asking you if you wanted to do it or not would come up next. Unless they figured out some sneaky way to do something to avoid using admin.

avidamoeba ,
@avidamoeba@lemmy.ca avatar

Deploy a user-level payload that is auto started on login. The computer is now part of the botnet and can already be used for useful ops. Deploy a privilege escalation payload later if needed.

dgriffith , (edited )

90% of users when they are presented with the UAC popup when they do something:

“Yes yes whateverrr” <click>

IsThisAnAI ,

🤷‍♂️ people are going to take the path of least resistance

groet ,

No, why would it? It will run code in the context of the current user which is absolutely enough to start a new process that will run in the background, download more code from a attacker server and allow remote access. The attacker will only have as much permissions as the user executing the code but that is enough to steal their files, run a keyloggers, steal their sessions for other websites etc.

They can try to escalate to the admin user, but when targeting private victims, all the data that is worth stealing is available to the user and does not require admin privs.

avidamoeba , (edited )
@avidamoeba@lemmy.ca avatar

Exactly. The moment you hit Enter, the computer becomes part of a botnet on every login.

Womble ,
Treczoks ,

Once you run something on windows, elevation is just a thing of using the right toolbox.

Bezier ,
@Bezier@suppo.fi avatar

That should be easy on windows, but user permissions might also be enough for whatever it does.

BetaDoggo_ ,

This is actually pretty smart because it switches the context of the action. Most intermediate users avoid clicking random executables by instinct but this is different enough that it doesn’t immediately trigger that association and response.

zephorah ,

That’s going to catch some people, especially older ones.

Rhaedas ,

Yet if I was helping my elders over the phone, I'd get all sorts of "What Windows key?", "I can't find that Control key", or "I did that key, the plus key, and then my hand slipped and I minimized everything."

QuadratureSurfer ,
@QuadratureSurfer@lemmy.world avatar

Just reported by Mohamed Aruham on Twitter

The oldest tweets I could find that actually started reporting this are from ~16 days ago.

x.com/Piotrdotcom/status/1829126494574067992

They reference a page here that was posted on Aug 29th.

niebezpiecznik.pl/…/uwazajcie-na-takie-captcha/

melroy ,
@melroy@kbin.melroy.org avatar

Failed to execute child process: "calc.exe" (No such file or directory).. hehe

  • All
  • Subscribed
  • Moderated
  • Favorites
  • [email protected]
  • random
  • lifeLocal
  • goranko
  • All magazines