mastodon.world is one of the many independent Mastodon servers you can use to participate in the fediverse.
Generic Mastodon server for anyone to use.

Server stats:

8.1K
active users

#scriptkiddies

0 posts0 participants0 posts today
Continued thread

@Codeberg In later issue titles (not shown) they’ve foregone the AI and just default to the same racial slur. (So you know what kind of lowlife scum are behind the attack.) It’s not just my repositories either so I wouldn’t visit Codeberg until this is dealt with if I were you unless you want to subject yourself to that crap. I’ll let you all know when it’s been dealt with.

#codeberg#AI#spam

I think a script kiddy made a really bizarre mistake in their script.

I've got requests hitting my server that include `%ADd+allow_url_include=1` in the query string.

Now, `-d allow_url_include=1` would set an INI value in PHP when calling the interpreter. But you might want to hide the obvious `-d` switch. So you URL encode it, right?

Only they've used the "shy hyphen" (U+00AD) that is normally invisible rather than a regular hyphen (U+002D)! 🤦

Mastodon Has A Serious SPAM Problem

"Over the past week or so there has been a serious spam problem hitting mastodon and rest of the fediverse especially misskey over on the japanese side of things and the story behind it is absolutely wild."

youtube.com/watch?v=_KCwq9e-H5

#Mastodon #Fediverse #Lemmy #spam #skid #scriptKiddies #DoS #security #openSocialNetworking #misskey #BrodieRobertson #YouTube

PS: if you like Brodie's content, he can also be found on Mastodon: @BrodieOnLinux

#DarkAI is a thing. I've talked about it before, and this article supports every theory I've mentioned over the years. #CyberCriminals are using #GenerativeAI to create sophisticated #BEC campaigns, #NovelMalware, and lowers the entry for new cyber criminals and especially #ScriptKiddies or people with zero technical experience to create and commit malicious fraud campaigns against a much wider swath of targets than ever before. The ONLY way to combat these emerging threats is through user awareness trainings and a #DefenseInDepth approach to your security platform for #EnterpriseSecurity. For yourselves personally - invest in a solid #antivirus solution, whether that's Microsoft's #Defender (consumer version), or a platform like #Avast who is affordable, very good, and works on desktop and mobile. You also want to look into a #VPN to protect your data streams. These DarkAI's aren't here to play, they are here to cause chaos. #BeCyberAware #BeCyberSafe and #DontGetPhished!!

darkreading.com/application-se

Dark Reading'DarkBERT' GPT-Based Malware Trains Up on the Entire Dark WebBy Elizabeth Montalbano