I just saw this and felt I should share it. I’m sure most people here wouldn’t fall for it but it can’t hurt to make sure 👍

Edit: I just wanted to add, I have no idea what this tried to copy. I’m using Firefox on Linux which is perhaps why it didn’t make it to my clipboard 🤷

  • @Telorand@reddthat.com
    link
    fedilink
    English
    06 months ago

    This tactic is so old, but it weaponizes the annoying ubiquity of capchas. People just want to get to where they’re going, so they click the squares and do the dance to get past the seemingly arbitrary barriers.

    This technique shows up on !cybersecurity@sh.itjust.works every few weeks as the initial attack vector for some new RAT.

  • @markovs_gun@lemmy.world
    link
    fedilink
    English
    06 months ago

    Legit question- who is this for? I can’t imagine anyone getting to PC Master Race on Lemmy that would fall for something this obvious.

    • peto (he/him)
      link
      fedilink
      English
      06 months ago

      You maybe not, your family? All your friends/coworkers/etc? Talk about scams with people, lots of people use PCs without knowing what is and isn’t safe.

    • @Warl0k3@lemmy.world
      link
      fedilink
      English
      06 months ago

      There’s a ton of IT workers on lemmy (go figure). Being aware of the current scams is quite valuable, since it means both that you can warn your users and you know what to look for when they inevitably ignore your warning and do it anyways.

    • @Mouselemming@sh.itjust.works
      link
      fedilink
      English
      06 months ago

      Useful for someone like me who saw this in All. You know the “Granny lowers her glasses and peers into the computer screen” meme? That’s me, except I have progressive lenses (to match my politics) so I leave my glasses up.

      • @SirSamuel@lemmy.world
        link
        fedilink
        English
        06 months ago

        Hi. That’s me. I came from all.

        I’m also not a complete dumbass, but i appreciate the post, b/c some of my family could BSoD a pocket watch

  • @nukeforyou@lemm.ee
    link
    fedilink
    English
    06 months ago

    Easily stopped by using Ad Blockers… Now if only chrome wasnt trying to kill ad blockers

    • Jolteon
      link
      fedilink
      English
      06 months ago

      Someone having a virus on their computer doesn’t prevent them from giving Google ad revenue.

  • slazer2au
    link
    fedilink
    English
    06 months ago

    If your web browser tells you to do something outside of your web browser, you shouldn’t.

  • JoshCodes
    link
    fedilink
    English
    06 months ago

    Oooo I’m researching this. We call some of them click fix and others clearfake but theyre all fake captcha. Its either from vulnerable wordpress themes or plugins so update ya sites for the love of Torvalds.

    They’re basically a method for infostealers to get downloaded onto the device. They’re kinda nasty and some lead to ransomware if youre really unlucky. The usual payload is intended to leach off an individual and steal passwords, crypto addresses, etc, but as soon as they find out you’re an organisation computer, they use your machine for initial access and potential further compromise.

    Most people don’t run these but I’ve seen at least 3 people who have and tbh usually antivirus stops the 2nd stage payload. So make sure Defender antivirus is turned on, and maybe consider blocking newly registered domains using ad block if you are more tech savvy. Remind your grandparents and young siblings to never do anything with Win+R or disable it on their pc if you know how. Infostealers are nasty and having one on the family pc will hurt every member of the family.

  • JRaccoon
    link
    fedilink
    English
    06 months ago

    I think Microsoft should add a warning before allowing pasting into the Run dialog for the first time. Similarly like they already have in Edge’s console

    • @Brosplosion@lemm.ee
      link
      fedilink
      English
      06 months ago

      Hot take, win+r should be disabled by default and have an option to enable. Probably 99% or more of users will never use the run dialogue

      • @Aqarius@lemmy.world
        link
        fedilink
        English
        06 months ago

        Disagree, mostly because half the time I WinR is when I’m trying to fix someone else’s PC, and getting to the settings is half the problem.

      • Natanael
        link
        fedilink
        English
        06 months ago

        Linux does this better by defaulting to files not being executable, versus Windows needing the downloading software to apply a specific “downloaded file” flag to trigger a notice about potentially unsafe files.

        You could make a lot of the commands available by default much less dangerous. Stuff like requiring using protected screens more (like UAC and ctrl+alt+del) for enabling the risky stuff.

        Also, sandboxing by default would do even more to prevent the worst dangers.

  • @Treczoks@lemmy.world
    link
    fedilink
    English
    06 months ago

    Could someone just copy the clipboard content into a text editor so one could see what they are trying to do?

    • @UnH1ng3d@lemmy.worldOP
      link
      fedilink
      English
      06 months ago

      I can’t actually make it copy 😅 I’ve now also tried in Firefox and Chrome but it still hasn’t worked.

  • SwizzleStick
    link
    fedilink
    English
    06 months ago

    Anyone falling for this lacks a basic understanding of technology, and should not be near the Internet unsupervised until they do. Regardless of age - plenty of young folk blindly walking into shit too.

    If you know people like this - please teach them. If you can’t teach them, at least set them up with foolproof tools. A non-chromium browser and ublock origin is a good start. If you’ve got the know-how, a DNSBL like a pihole (for whole home blocking) or adaway/blokada (for Android) are good additional layers.

    And get their data backed up 😬