this post was submitted on 14 Sep 2024
1621 points (99.1% liked)

Technology

58133 readers
4330 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 36 points 5 days ago (2 children)

Anybody got more info on the actual payload?

powershell.exe -eC [payload_w_base64] is mentioned here.

-eC just means encoded command afaik.

[–] [email protected] 6 points 5 days ago

Seen this on the powershell subreddit before, it just downloads and runs another executable.

[–] [email protected] 5 points 4 days ago (1 children)
[–] [email protected] 3 points 4 days ago (1 children)

Thanks for sharing.

I also added that website to my RSS reader.