jandoenermann@feddit.org to Technology@lemmy.worldEnglish · 1 month agoGithub scam investigation: Thousands of "mods" and "cracks" stealing your datatimsh.orgexternal-linkmessage-square3fedilinkarrow-up185arrow-down11cross-posted to: [email protected]
arrow-up184arrow-down1external-linkGithub scam investigation: Thousands of "mods" and "cracks" stealing your datatimsh.orgjandoenermann@feddit.org to Technology@lemmy.worldEnglish · 1 month agomessage-square3fedilinkcross-posted to: [email protected]
minus-squareFarceOfWill@infosec.publinkfedilinkEnglisharrow-up4·1 month agoThere have been cases of crypto miners embedded but once discovered they’re nuked so quick it’s hard to get more than rumours. C# modding is the most likely vector (rimworld, cities skylines, unity stuff) but Skyrim skse mods are raw code too. All can be misused. Usually lua mods have a sandbox so they’re safe. Eg.factorio. and, um, more but my mind has gone blank.
There have been cases of crypto miners embedded but once discovered they’re nuked so quick it’s hard to get more than rumours.
C# modding is the most likely vector (rimworld, cities skylines, unity stuff) but Skyrim skse mods are raw code too. All can be misused.
Usually lua mods have a sandbox so they’re safe. Eg.factorio. and, um, more but my mind has gone blank.