Creative New Way Hackers Are Trying To Be Awful: Pretending To Be Security Researchers

Posted on Saturday, Jun 24, 2023 by Chris Hayner

Featured in this episode of Chaos Lever

From the “Of course someone would try this eventually” department: Hackers are now trying to push malware by pretending to be security researchers. Even up to the point of stealing real researchers headshots for their Twitter accounts.

Naturally, free speech absolutist Elon Musk has no problem leaving these accounts up even while he blocks ones that remind people that Twitter has had over 25 lawsuits levied against it since he took over, and Tesla is scarcely doing any better in the lawsuit department. Seriously, Elon is literally the worst.

What was the question again? Oh right- Hackers. The hackers are posting online mimicking the way security researchers talk and sharing “tools” to “fix” the fake zero day attacks that they describe. In all cases, what they’re actually sharing is of course malware.

The current popular payload is a python script that attacks Windows and Linux PC’s alike. Which is why I run SerenityOS. Nothing runs there… not even malware.