jandoenermann@feddit.org to Technology@lemmy.worldEnglish · 1 year agoGithub scam investigation: Thousands of "mods" and "cracks" stealing your datatimsh.orgexternal-linkmessage-square3fedilinkarrow-up185arrow-down11
arrow-up184arrow-down1external-linkGithub scam investigation: Thousands of "mods" and "cracks" stealing your datatimsh.orgjandoenermann@feddit.org to Technology@lemmy.worldEnglish · 1 year agomessage-square3fedilink
minus-squareFarceOfWill@infosec.publinkfedilinkEnglisharrow-up4·1 year agoThere have been cases of crypto miners embedded but once discovered they’re nuked so quick it’s hard to get more than rumours. C# modding is the most likely vector (rimworld, cities skylines, unity stuff) but Skyrim skse mods are raw code too. All can be misused. Usually lua mods have a sandbox so they’re safe. Eg.factorio. and, um, more but my mind has gone blank.
There have been cases of crypto miners embedded but once discovered they’re nuked so quick it’s hard to get more than rumours.
C# modding is the most likely vector (rimworld, cities skylines, unity stuff) but Skyrim skse mods are raw code too. All can be misused.
Usually lua mods have a sandbox so they’re safe. Eg.factorio. and, um, more but my mind has gone blank.