home.social

#scriptkiddies — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #scriptkiddies, aggregated by home.social.

  1. Yes, this happened:

    May 23 09:54:39 skapet sshd-session[44948]: Failed password for invalid user root/1234567 from 109.248.231.249 port 52134 ssh2

    Must have worked *somewhere* at least *once*, right?

    #cybercrime #ssh #passwordgroping #passwordguessing #morons #scriptkiddies

  2. I created the DNS record for a new web site 4 hours ago. It's already getting requests for blah-blah/wp-includes/wlwmanifest.xml etc... (I don't use wordpress) 😒
    #webdev #scriptkiddies

  3. Ah, yes, the illustrious "Dirty Frag"—because apparently, Linux's new hobby is collecting root #exploits like Pokémon. 🎮🐧 Quick, patch your servers before the script kiddies finish their juice boxes! 🍹💻
    copahost.com/blog/dirty-frag-c #DirtyFrag #Linux #PatchYourServers #ScriptKiddies #CyberSecurity #HackerNews #ngated

  4. Ah, yes, the illustrious "Dirty Frag"—because apparently, Linux's new hobby is collecting root #exploits like Pokémon. 🎮🐧 Quick, patch your servers before the script kiddies finish their juice boxes! 🍹💻
    copahost.com/blog/dirty-frag-c #DirtyFrag #Linux #PatchYourServers #ScriptKiddies #CyberSecurity #HackerNews #ngated

  5. Ah, yes, the illustrious "Dirty Frag"—because apparently, Linux's new hobby is collecting root #exploits like Pokémon. 🎮🐧 Quick, patch your servers before the script kiddies finish their juice boxes! 🍹💻
    copahost.com/blog/dirty-frag-c #DirtyFrag #Linux #PatchYourServers #ScriptKiddies #CyberSecurity #HackerNews #ngated

  6. Ah, yes, the illustrious "Dirty Frag"—because apparently, Linux's new hobby is collecting root #exploits like Pokémon. 🎮🐧 Quick, patch your servers before the script kiddies finish their juice boxes! 🍹💻
    copahost.com/blog/dirty-frag-c #DirtyFrag #Linux #PatchYourServers #ScriptKiddies #CyberSecurity #HackerNews #ngated

  7. Ah, yes, the illustrious "Dirty Frag"—because apparently, Linux's new hobby is collecting root #exploits like Pokémon. 🎮🐧 Quick, patch your servers before the script kiddies finish their juice boxes! 🍹💻
    copahost.com/blog/dirty-frag-c #DirtyFrag #Linux #PatchYourServers #ScriptKiddies #CyberSecurity #HackerNews #ngated

  8. yes, friends, this happened:

    Apr 18 11:42:19 byteheap sshd-session[51555]: Failed keyboard-interactive/pam for invalid user mymagicpass228 from 178.20.210.185 port 10858 ssh2

    #ssh #passwordguessers #passwordgropers #sshgropers #cybercrime #morons #groperbots #scriptkiddies

  9. yes, friends, this happened:

    Apr 18 11:42:19 byteheap sshd-session[51555]: Failed keyboard-interactive/pam for invalid user mymagicpass228 from 178.20.210.185 port 10858 ssh2

    #ssh #passwordguessers #passwordgropers #sshgropers #cybercrime #morons #groperbots #scriptkiddies

  10. yes, friends, this happened:

    Apr 18 11:42:19 byteheap sshd-session[51555]: Failed keyboard-interactive/pam for invalid user mymagicpass228 from 178.20.210.185 port 10858 ssh2

    #ssh #passwordguessers #passwordgropers #sshgropers #cybercrime #morons #groperbots #scriptkiddies

  11. yes, friends, this happened:

    Apr 18 11:42:19 byteheap sshd-session[51555]: Failed keyboard-interactive/pam for invalid user mymagicpass228 from 178.20.210.185 port 10858 ssh2

    #ssh #passwordguessers #passwordgropers #sshgropers #cybercrime #morons #groperbots #scriptkiddies

  12. yes, friends, this happened:

    Apr 18 11:42:19 byteheap sshd-session[51555]: Failed keyboard-interactive/pam for invalid user mymagicpass228 from 178.20.210.185 port 10858 ssh2

    #ssh #passwordguessers #passwordgropers #sshgropers #cybercrime #morons #groperbots #scriptkiddies

  13. A kiddie and their script, part N of N!

    Mar 9 17:54:52 skapet sshd-session[97161]: Failed password for invalid user %company% from 20.83.3.189 port 17677 ssh2

    #scriptkiddies #sshgropers #passwordguessing #cybercrime #ssh #security

    And if you need some reading material, nxdomain.no/~peter/hailmary_le (or g-tracked bsdly.blogspot.com/2013/10/the)

  14. 👨‍💻🎨 #Hackers are now Picasso with Visual Studio Code, apparently! The article tries to convince us that evil tech wizards are using VS Code to wreak havoc, but let's be real—it's probably just a bunch of script kiddies who discovered copy-paste. 🙄🔍
    jamf.com/blog/threat-actors-ex #art #VSCode #techhumor #scriptkiddies #copyandpaste #HackerNews #ngated

  15. @web3isgreat

    Ehm, nobody asking the real question of "why was this 'attack' even possible?" after all it was already known and therefore none of the nodes should have accepted these malicious transactions/blocks to begin with.

    How many other known attacks (still) work against #cardano? Is now the question a lot of people will have.

    Lets see how many #scriptkiddies will find interest in that project now.

    Going to be fun watching :)

    #infosec

  16. Hack to #school: #Parents told to keep their little #scriptkiddies in line
    Information Commissioner's Office (ICO) looked at 215 data breach cases at #schools between Jan 2022 - Aug 2024, noting that 57% were caused by students, and almost a third (30%) were caused by stolen login details.
    In the case of stolen logins – either by #students seeing others input credentials and remembering or simply reading them noted down on paper – #pupils were behind 97% of these attacks.
    theregister.com/2025/09/12/stu

  17. Hack to #school: #Parents told to keep their little #scriptkiddies in line
    Information Commissioner's Office (ICO) looked at 215 data breach cases at #schools between Jan 2022 - Aug 2024, noting that 57% were caused by students, and almost a third (30%) were caused by stolen login details.
    In the case of stolen logins – either by #students seeing others input credentials and remembering or simply reading them noted down on paper – #pupils were behind 97% of these attacks.
    theregister.com/2025/09/12/stu

  18. Hack to : told to keep their little in line
    Information Commissioner's Office (ICO) looked at 215 data breach cases at between Jan 2022 - Aug 2024, noting that 57% were caused by students, and almost a third (30%) were caused by stolen login details.
    In the case of stolen logins – either by seeing others input credentials and remembering or simply reading them noted down on paper – were behind 97% of these attacks.
    theregister.com/2025/09/12/stu

  19. Hack to #school: #Parents told to keep their little #scriptkiddies in line
    Information Commissioner's Office (ICO) looked at 215 data breach cases at #schools between Jan 2022 - Aug 2024, noting that 57% were caused by students, and almost a third (30%) were caused by stolen login details.
    In the case of stolen logins – either by #students seeing others input credentials and remembering or simply reading them noted down on paper – #pupils were behind 97% of these attacks.
    theregister.com/2025/09/12/stu

  20. Hack to #school: #Parents told to keep their little #scriptkiddies in line
    Information Commissioner's Office (ICO) looked at 215 data breach cases at #schools between Jan 2022 - Aug 2024, noting that 57% were caused by students, and almost a third (30%) were caused by stolen login details.
    In the case of stolen logins – either by #students seeing others input credentials and remembering or simply reading them noted down on paper – #pupils were behind 97% of these attacks.
    theregister.com/2025/09/12/stu

  21. While procrastinating something, I noticed a wave of script kiddie traffic with a browser ID string matching a Github hosted "security scanning" project, but one without contact info. #github #security #scriptkiddies

    Should I

  22. @Codeberg In later issue titles (not shown) they’ve foregone the AI and just default to the same racial slur. (So you know what kind of lowlife scum are behind the attack.) It’s not just my repositories either so I wouldn’t visit Codeberg until this is dealt with if I were you unless you want to subject yourself to that crap. I’ll let you all know when it’s been dealt with.

    #codeberg #AI #spam #technofascism #bigots #scriptKiddies

  23. A message just inboxed here with

    "To: undisclosed-recipients: ;
    Subject: Request to Join Your Private Bug Bounty Program"

    Should I put the entire message on display somewhere and post the link to the fediverse?

    #scriptkiddies #bugbunnies #bugbounty #scammers #spammers #scambunnies

  24. #BOLO Another #DarkAI chatbot has been born #GhostGPT. Similar to #WormGPT I started discussing at my company over a year ago, it is an unrestricted AI with zero guardrails. DO NOT USE THESE CHATBOTS! THEY ARE DANGEROUS!

    Expect another increase in #novel #malware and #scriptkiddies "playing around".
     
    darkreading.com/cloud-security

  25. #BOLO Another #DarkAI chatbot has been born #GhostGPT. Similar to #WormGPT I started discussing at my company over a year ago, it is an unrestricted AI with zero guardrails. DO NOT USE THESE CHATBOTS! THEY ARE DANGEROUS!

    Expect another increase in #novel #malware and #scriptkiddies "playing around".
     
    darkreading.com/cloud-security

  26. #BOLO Another #DarkAI chatbot has been born #GhostGPT. Similar to #WormGPT I started discussing at my company over a year ago, it is an unrestricted AI with zero guardrails. DO NOT USE THESE CHATBOTS! THEY ARE DANGEROUS!

    Expect another increase in #novel #malware and #scriptkiddies "playing around".
     
    darkreading.com/cloud-security

  27. #BOLO Another #DarkAI chatbot has been born #GhostGPT. Similar to #WormGPT I started discussing at my company over a year ago, it is an unrestricted AI with zero guardrails. DO NOT USE THESE CHATBOTS! THEY ARE DANGEROUS!

    Expect another increase in #novel #malware and #scriptkiddies "playing around".
     
    darkreading.com/cloud-security

  28. #BOLO Another #DarkAI chatbot has been born #GhostGPT. Similar to #WormGPT I started discussing at my company over a year ago, it is an unrestricted AI with zero guardrails. DO NOT USE THESE CHATBOTS! THEY ARE DANGEROUS!

    Expect another increase in #novel #malware and #scriptkiddies "playing around".
     
    darkreading.com/cloud-security

  29. I think a script kiddy made a really bizarre mistake in their script.

    I've got requests hitting my server that include `%ADd+allow_url_include=1` in the query string.

    Now, `-d allow_url_include=1` would set an INI value in PHP when calling the interpreter. But you might want to hide the obvious `-d` switch. So you URL encode it, right?

    Only they've used the "shy hyphen" (U+00AD) that is normally invisible rather than a regular hyphen (U+002D)! 🤦

    #SysAdmin #WebDev #ScriptKiddies #Fail

  30. #DarkAI is a thing. I've talked about it before, and this article supports every theory I've mentioned over the years. #CyberCriminals are using #GenerativeAI to create sophisticated #BEC campaigns, #NovelMalware, and lowers the entry for new cyber criminals and especially #ScriptKiddies or people with zero technical experience to create and commit malicious fraud campaigns against a much wider swath of targets than ever before. The ONLY way to combat these emerging threats is through user awareness trainings and a #DefenseInDepth approach to your security platform for #EnterpriseSecurity. For yourselves personally - invest in a solid #antivirus solution, whether that's Microsoft's #Defender (consumer version), or a platform like #Avast who is affordable, very good, and works on desktop and mobile. You also want to look into a #VPN to protect your data streams. These DarkAI's aren't here to play, they are here to cause chaos. #BeCyberAware #BeCyberSafe and #DontGetPhished!!

    darkreading.com/application-se

  31. #DarkAI is a thing. I've talked about it before, and this article supports every theory I've mentioned over the years. #CyberCriminals are using #GenerativeAI to create sophisticated #BEC campaigns, #NovelMalware, and lowers the entry for new cyber criminals and especially #ScriptKiddies or people with zero technical experience to create and commit malicious fraud campaigns against a much wider swath of targets than ever before. The ONLY way to combat these emerging threats is through user awareness trainings and a #DefenseInDepth approach to your security platform for #EnterpriseSecurity. For yourselves personally - invest in a solid #antivirus solution, whether that's Microsoft's #Defender (consumer version), or a platform like #Avast who is affordable, very good, and works on desktop and mobile. You also want to look into a #VPN to protect your data streams. These DarkAI's aren't here to play, they are here to cause chaos. #BeCyberAware #BeCyberSafe and #DontGetPhished!!

    darkreading.com/application-se

  32. #DarkAI is a thing. I've talked about it before, and this article supports every theory I've mentioned over the years. #CyberCriminals are using #GenerativeAI to create sophisticated #BEC campaigns, #NovelMalware, and lowers the entry for new cyber criminals and especially #ScriptKiddies or people with zero technical experience to create and commit malicious fraud campaigns against a much wider swath of targets than ever before. The ONLY way to combat these emerging threats is through user awareness trainings and a #DefenseInDepth approach to your security platform for #EnterpriseSecurity. For yourselves personally - invest in a solid #antivirus solution, whether that's Microsoft's #Defender (consumer version), or a platform like #Avast who is affordable, very good, and works on desktop and mobile. You also want to look into a #VPN to protect your data streams. These DarkAI's aren't here to play, they are here to cause chaos. #BeCyberAware #BeCyberSafe and #DontGetPhished!!

    darkreading.com/application-se

  33. #DarkAI is a thing. I've talked about it before, and this article supports every theory I've mentioned over the years. #CyberCriminals are using #GenerativeAI to create sophisticated #BEC campaigns, #NovelMalware, and lowers the entry for new cyber criminals and especially #ScriptKiddies or people with zero technical experience to create and commit malicious fraud campaigns against a much wider swath of targets than ever before. The ONLY way to combat these emerging threats is through user awareness trainings and a #DefenseInDepth approach to your security platform for #EnterpriseSecurity. For yourselves personally - invest in a solid #antivirus solution, whether that's Microsoft's #Defender (consumer version), or a platform like #Avast who is affordable, very good, and works on desktop and mobile. You also want to look into a #VPN to protect your data streams. These DarkAI's aren't here to play, they are here to cause chaos. #BeCyberAware #BeCyberSafe and #DontGetPhished!!

    darkreading.com/application-se

  34. #DarkAI is a thing. I've talked about it before, and this article supports every theory I've mentioned over the years. #CyberCriminals are using #GenerativeAI to create sophisticated #BEC campaigns, #NovelMalware, and lowers the entry for new cyber criminals and especially #ScriptKiddies or people with zero technical experience to create and commit malicious fraud campaigns against a much wider swath of targets than ever before. The ONLY way to combat these emerging threats is through user awareness trainings and a #DefenseInDepth approach to your security platform for #EnterpriseSecurity. For yourselves personally - invest in a solid #antivirus solution, whether that's Microsoft's #Defender (consumer version), or a platform like #Avast who is affordable, very good, and works on desktop and mobile. You also want to look into a #VPN to protect your data streams. These DarkAI's aren't here to play, they are here to cause chaos. #BeCyberAware #BeCyberSafe and #DontGetPhished!!

    darkreading.com/application-se