dmv.community is one of the many independent Mastodon servers you can use to participate in the fediverse.
A small regional Mastodon instance for those in the DC, Maryland, and Virginia areas. Local news, commentary, and conversation.

Administered by:

Server stats:

170
active users

#captcha

10 posts9 participants0 posts today
Ami<p>You fucking retard <a href="https://mastodon.world/tags/paypal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>paypal</span></a> </p><p>So I can't spend MY money on what I want to buy.. because you can't deliver a fucking <a href="https://mastodon.world/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a> that is nothing more than training <a href="https://mastodon.world/tags/google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>google</span></a> AI to recognise shit.</p><p>You have gone full retard.</p><p>It's MY money you useless data harvesting sack of shit. </p><p>The biggest lie these companies tell is that it's for "verification". It's not. It's data harvesting.</p><p>So in other words, we can't use our money until we hand over data and fingerprints to goolag.</p><p>That's extortion.</p>
Donncha<p><strong>Won’t someone think of the AGI?</strong></p><p><a href="https://www.youtube.com/watch?v=4VrLQXR7mKU" rel="nofollow noopener noreferrer" target="_blank">https://www.youtube.com/watch?v=4VrLQXR7mKU</a></p><p>An excellent Academy Award winning short film in which a woman fails a CAPTCHA test multiple times.</p><p><a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/artificial-intelligence/" target="_blank">#artificialIntelligence</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/captcha/" target="_blank">#CAPTCHA</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/comedy/" target="_blank">#comedy</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/drama/" target="_blank">#drama</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/ellen-parren/" target="_blank">#EllenParren</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/identity/" target="_blank">#identity</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/introspection/" target="_blank">#introspection</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/robot/" target="_blank">#robot</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/satire/" target="_blank">#satire</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/short-film/" target="_blank">#ShortFilm</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/technology/" target="_blank">#technology</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://odd.blog/tag/victoria-warmerdam/" target="_blank">#VictoriaWarmerdam</a></p>
OTX Bot<p>The rising threat of social engineering through fake fixes</p><p>ClickFix is an emerging social engineering tactic that manipulates users into executing malicious actions under the guise of troubleshooting or system maintenance. Attackers present fake error messages, CAPTCHA verifications, or system prompts to convince users to take actions that compromise their devices, often by manually copying and pasting malicious commands into the command line. This method bypasses modern security solutions by tricking users into executing commands themselves. Recent campaigns like OBSCURE#BAT and Storm-1865 have targeted various industries and regions. The attack vector has been observed in Field Effect's telemetry, with attempts to deploy AsyncRAT and other malware. Mitigation strategies include restricting command line use, deploying advanced threat detection solutions, enhancing email and web filtering, training users, and maintaining up-to-date security measures.</p><p>Pulse ID: 67dd406c50b049fa09cf97b4<br>Pulse Link: <a href="https://otx.alienvault.com/pulse/67dd406c50b049fa09cf97b4" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">otx.alienvault.com/pulse/67dd4</span><span class="invisible">06c50b049fa09cf97b4</span></a> <br>Pulse Author: AlienVault<br>Created: 2025-03-21 10:33:16</p><p>Be advised, this data is unverified and should be considered preliminary. Always do further verification.</p><p><a href="https://social.raytec.co/tags/AsyncRAT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AsyncRAT</span></a> <a href="https://social.raytec.co/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a> <a href="https://social.raytec.co/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://social.raytec.co/tags/Email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Email</span></a> <a href="https://social.raytec.co/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://social.raytec.co/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> <a href="https://social.raytec.co/tags/OTX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTX</span></a> <a href="https://social.raytec.co/tags/OpenThreatExchange" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenThreatExchange</span></a> <a href="https://social.raytec.co/tags/RAT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RAT</span></a> <a href="https://social.raytec.co/tags/SocialEngineering" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SocialEngineering</span></a> <a href="https://social.raytec.co/tags/bot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bot</span></a> <a href="https://social.raytec.co/tags/AlienVault" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AlienVault</span></a></p>
𝕂𝚞𝚋𝚒𝚔ℙ𝚒𝚡𝚎𝚕<p>🧵 …wie schon oben im Toot hingewiesen, sind CAPTCHAs veraltet und sind ohne weiters technisch umgeh- so wie hackbar und wird trotz allem immer noch zu oft eingesetzt.</p><p>»Interview – Warum traditionelle Bild-Captchas verschwinden sollten:<br>Anfang März hatte das BSI vor Fake-Captcha gewarnt. Worauf man achten sollte, erklärt Benedict Padberg von Friendly Captcha.«</p><p>🔓 <a href="https://www.heise.de/hintergrund/Interview-Warum-traditionelle-Bild-Captchas-verschwinden-sollten-10323101.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/hintergrund/Interview</span><span class="invisible">-Warum-traditionelle-Bild-Captchas-verschwinden-sollten-10323101.html</span></a></p><p><a href="https://chaos.social/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a> <a href="https://chaos.social/tags/online" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>online</span></a> <a href="https://chaos.social/tags/login" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>login</span></a> <a href="https://chaos.social/tags/bsi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bsi</span></a> <a href="https://chaos.social/tags/fake" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fake</span></a> <a href="https://chaos.social/tags/web" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>web</span></a> <a href="https://chaos.social/tags/chechbox" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>chechbox</span></a> <a href="https://chaos.social/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a> <a href="https://chaos.social/tags/cyberangriff" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cyberangriff</span></a> <a href="https://chaos.social/tags/itsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>itsec</span></a></p>
argv minus one<p>I see there is a new <a href="https://mastodon.sdf.org/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a>-like thing in which web page visitors are only allowed through if they first complete a proof-of-work exercise.</p><p>I question the efficacy of this method on the basis that loading a modern web page is already a proof-of-work exercise. 😂</p>
N-gated Hacker News<p>🎩🤖 Ah, the classic tale of tech bros mistaking <a href="https://mastodon.social/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> for their personal Picasso, only to be thwarted by a <a href="https://mastodon.social/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a> and a "blocked" sign. Maybe the real creative genius was the security protocol they met along the way. 😂🚫<br><a href="https://www.aaronrosspowell.com/p/why-tech-bros-overestimate-ai-s-creative-abilities" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">aaronrosspowell.com/p/why-tech</span><span class="invisible">-bros-overestimate-ai-s-creative-abilities</span></a> <a href="https://mastodon.social/tags/techbros" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>techbros</span></a> <a href="https://mastodon.social/tags/creativity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>creativity</span></a> <a href="https://mastodon.social/tags/securityhumor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securityhumor</span></a> <a href="https://mastodon.social/tags/blocked" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>blocked</span></a> <a href="https://mastodon.social/tags/HackerNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HackerNews</span></a> <a href="https://mastodon.social/tags/ngated" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ngated</span></a></p>
UnCoveredMyths<p>For my author friends who are publishing on <a href="https://writing.exchange/tags/Kobo" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kobo</span></a>, do they require a <a href="https://writing.exchange/tags/Captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Captcha</span></a> when you login?</p><p> As a deafblind author I cannot independently answer captchas.</p><p>I had my books on Kobo a decade ago, and had to reduce them back to Amazon as I lost most of my remaining vision.</p><p>Draft2Digital requires Blind Blocking captchas.</p><p>I had my books on Apple at one time. However, for some reason, my email is blocked from getting back into my account. A few years ago. Customer service has no idea why.</p>
Nikhil 🐧<p>lol what should I do exactly? 😂</p><p><a href="https://social.linux.pizza/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a></p>
OTX Bot<p>ClearFake Leverages Fake reCAPTCHA to Deliver Malicious PowerShell Codes</p><p>ClearFake which is a malicious JavaScript framework, leverages fake<br>reCAPTCHA to trick users to deliver malicious PowerShell codes.</p><p>Pulse ID: 67da1922c6176ae1dda3f448<br>Pulse Link: <a href="https://otx.alienvault.com/pulse/67da1922c6176ae1dda3f448" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">otx.alienvault.com/pulse/67da1</span><span class="invisible">922c6176ae1dda3f448</span></a> <br>Pulse Author: cryptocti<br>Created: 2025-03-19 01:08:50</p><p>Be advised, this data is unverified and should be considered preliminary. Always do further verification.</p><p><a href="https://social.raytec.co/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a> <a href="https://social.raytec.co/tags/ClearFake" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ClearFake</span></a> <a href="https://social.raytec.co/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://social.raytec.co/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://social.raytec.co/tags/Java" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Java</span></a> <a href="https://social.raytec.co/tags/JavaScript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JavaScript</span></a> <a href="https://social.raytec.co/tags/OTX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTX</span></a> <a href="https://social.raytec.co/tags/OpenThreatExchange" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenThreatExchange</span></a> <a href="https://social.raytec.co/tags/PowerShell" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PowerShell</span></a> <a href="https://social.raytec.co/tags/bot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bot</span></a> <a href="https://social.raytec.co/tags/cryptocti" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cryptocti</span></a></p>
quangobaud<p>Useful. A site with infornation about Complaining and Compliance regarding <a href="https://kolektiva.social/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a> .</p><p>DataDome website</p>
quangobaud<p>Completely Automated Public Turing test to tell Computers and Humans Apart</p><p><a href="https://kolektiva.social/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a> <a href="https://kolektiva.social/tags/bollocks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bollocks</span></a> <a href="https://kolektiva.social/tags/SpyStop" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SpyStop</span></a></p>
NeadReport<p>Fake CAPTCHA websites hijack your clipboard to install information stealers | via Malwarebytes</p><p><a href="https://www.malwarebytes.com/blog/news/2025/03/fake-captcha-websites-hijack-your-clipboard-to-install-information-stealers" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">malwarebytes.com/blog/news/202</span><span class="invisible">5/03/fake-captcha-websites-hijack-your-clipboard-to-install-information-stealers</span></a></p><p><a href="https://social.vivaldi.net/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> <a href="https://social.vivaldi.net/tags/fake" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fake</span></a> <a href="https://social.vivaldi.net/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a> <a href="https://social.vivaldi.net/tags/stayinformed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>stayinformed</span></a></p>
mav :happy_blob:<p>Out of curiosity, is anyone else having a lot of misfires with reCaptcha lately or is it just me? Seems like they're milking more free labor out of us these days than they used to.</p><p><a href="https://hackers.town/tags/recaptcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>recaptcha</span></a> <a href="https://hackers.town/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a></p>
techUpdate.io<p>Gefälschte Captchas: BSI warnt vor neuer Cybercrime-Masche</p><p><a href="https://techupdate.io/sicherheit/gefaelschte-captchas-bsi-warnt-vor-neuer-cybercrime-masche/50220/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">techupdate.io/sicherheit/gefae</span><span class="invisible">lschte-captchas-bsi-warnt-vor-neuer-cybercrime-masche/50220/</span></a></p><p><a href="https://mastodon.social/tags/technews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>technews</span></a> <a href="https://mastodon.social/tags/sicherheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sicherheit</span></a> <a href="https://mastodon.social/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> <a href="https://mastodon.social/tags/hacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hacking</span></a> <a href="https://mastodon.social/tags/bsi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bsi</span></a> <a href="https://mastodon.social/tags/cybercrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybercrime</span></a> <a href="https://mastodon.social/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a> <a href="https://mastodon.social/tags/phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>phishing</span></a> <a href="https://mastodon.social/tags/itsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>itsecurity</span></a> <a href="https://mastodon.social/tags/onlineschutz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>onlineschutz</span></a></p>
.:\dGh/:.<p>Fuck the what Google's ReCAPTCHA is now a paid service?</p><p>Okay, time to migrate. Which other CAPTCHA services you know are free?</p><p>BTW: Planning to kill ReCaptcha package for Laravel, ask Google to bring their own.</p><p><a href="https://mastodon.social/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> <a href="https://mastodon.social/tags/ReCAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ReCAPTCHA</span></a> <a href="https://mastodon.social/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a> <a href="https://mastodon.social/tags/Robots" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Robots</span></a> <a href="https://mastodon.social/tags/Bots" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Bots</span></a> <a href="https://mastodon.social/tags/WebDevelopment" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebDevelopment</span></a> <a href="https://mastodon.social/tags/SoftwareDevelopment" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SoftwareDevelopment</span></a> <a href="https://mastodon.social/tags/WebDev" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebDev</span></a> <a href="https://mastodon.social/tags/Internet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Internet</span></a> <a href="https://mastodon.social/tags/Web" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Web</span></a> <a href="https://mastodon.social/tags/WorldWideWeb" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WorldWideWeb</span></a> <a href="https://mastodon.social/tags/WWW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WWW</span></a> <a href="https://mastodon.social/tags/Bot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Bot</span></a> <a href="https://mastodon.social/tags/Programming" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Programming</span></a> <a href="https://mastodon.social/tags/appdevelopment" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appdevelopment</span></a></p>
OTX Bot<p>Fake CAPTCHA prompts Installs LummaStealer Malware</p><p>An emerging threat represents a new approach for distributing LummaStealer<br>malware, an dangerous information-stealing malware.</p><p>Pulse ID: 67cb9fd7748edf5284c0e76b<br>Pulse Link: <a href="https://otx.alienvault.com/pulse/67cb9fd7748edf5284c0e76b" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">otx.alienvault.com/pulse/67cb9</span><span class="invisible">fd7748edf5284c0e76b</span></a> <br>Pulse Author: cryptocti<br>Created: 2025-03-08 01:39:35</p><p>Be advised, this data is unverified and should be considered preliminary. Always do further verification.</p><p><a href="https://social.raytec.co/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a> <a href="https://social.raytec.co/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://social.raytec.co/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://social.raytec.co/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> <a href="https://social.raytec.co/tags/OTX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTX</span></a> <a href="https://social.raytec.co/tags/OpenThreatExchange" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenThreatExchange</span></a> <a href="https://social.raytec.co/tags/bot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bot</span></a> <a href="https://social.raytec.co/tags/cryptocti" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cryptocti</span></a></p>
Olly 👾<p>Fake CAPTCHA PDFs spread Lumma Stealer via Webflow, GoDaddy &amp; other Domains.</p><p>IT-Security researchers have uncovered a widespread phishing campaign that uses fake CAPTCHA images shared via PDF documents hosted on Webflow's content delivery network (CDN) to deliver the Lumma stealer malware.</p><p><a href="https://www.netskope.com/blog/fake-captchas-malicious-pdfs-seo-traps-leveraged-for-user-manual-searches" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">netskope.com/blog/fake-captcha</span><span class="invisible">s-malicious-pdfs-seo-traps-leveraged-for-user-manual-searches</span></a></p><p><a href="https://nerdculture.de/tags/fake" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fake</span></a> <a href="https://nerdculture.de/tags/captcha" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>captcha</span></a> <a href="https://nerdculture.de/tags/pdf" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>pdf</span></a> <a href="https://nerdculture.de/tags/phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>phishing</span></a> <a href="https://nerdculture.de/tags/campaign" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>campaign</span></a> <a href="https://nerdculture.de/tags/it" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>it</span></a> <a href="https://nerdculture.de/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://nerdculture.de/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://nerdculture.de/tags/engineer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>engineer</span></a> <a href="https://nerdculture.de/tags/media" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>media</span></a> <a href="https://nerdculture.de/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://nerdculture.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
OTX Bot<p>Analysis of a JavaScript-based Phishing Campaign Targeting Microsoft 365 Credentials</p><p>A sophisticated JavaScript-based credential harvesting campaign has been discovered, utilizing fake voicemail notifications to capture Microsoft 365 credentials. The attackers employ HTML smuggling, obfuscation, and encryption techniques to evade detection. The phishing emails contain PDF attachments with QR codes and HTM files with embedded JavaScript. The malicious code uses base64 encoding, CryptoJS for encryption, and dynamic URL generation to redirect victims to a fake Microsoft 365 login page. The campaign involves multiple stages, including CAPTCHA and media player mimicry, to increase legitimacy. This evolving threat poses significant challenges for automated detection and analysis systems.</p><p>Pulse ID: 67c76948c1381d8741fff9f8<br>Pulse Link: <a href="https://otx.alienvault.com/pulse/67c76948c1381d8741fff9f8" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">otx.alienvault.com/pulse/67c76</span><span class="invisible">948c1381d8741fff9f8</span></a> <br>Pulse Author: AlienVault<br>Created: 2025-03-04 20:57:44</p><p>Be advised, this data is unverified and should be considered preliminary. Always do further verification.</p><p><a href="https://social.raytec.co/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a> <a href="https://social.raytec.co/tags/CredentialHarvesting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CredentialHarvesting</span></a> <a href="https://social.raytec.co/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://social.raytec.co/tags/Email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Email</span></a> <a href="https://social.raytec.co/tags/Encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Encryption</span></a> <a href="https://social.raytec.co/tags/HTML" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HTML</span></a> <a href="https://social.raytec.co/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://social.raytec.co/tags/Java" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Java</span></a> <a href="https://social.raytec.co/tags/JavaScript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JavaScript</span></a> <a href="https://social.raytec.co/tags/Mac" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Mac</span></a> <a href="https://social.raytec.co/tags/Microsoft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Microsoft</span></a> <a href="https://social.raytec.co/tags/Mimic" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Mimic</span></a> <a href="https://social.raytec.co/tags/OTX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTX</span></a> <a href="https://social.raytec.co/tags/OpenThreatExchange" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenThreatExchange</span></a> <a href="https://social.raytec.co/tags/PDF" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PDF</span></a> <a href="https://social.raytec.co/tags/Phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Phishing</span></a> <a href="https://social.raytec.co/tags/RAT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RAT</span></a> <a href="https://social.raytec.co/tags/bot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bot</span></a> <a href="https://social.raytec.co/tags/AlienVault" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AlienVault</span></a></p>
OTX Bot<p>Booking a Threat: Inside LummaStealer's Fake reCAPTCHA</p><p>A new malicious campaign targeting booking websites has been discovered, utilizing LummaStealer, an info-stealer operating under a Malware-as-a-Service model. The attack employs fake CAPTCHAs to trick users into executing malicious PowerShell commands. Initially targeting the Philippines, the campaign has expanded globally, focusing on malvertising. The infection chain involves a fake booking confirmation link, obfuscated PHP scripts, and payload download mechanisms. LummaStealer samples in this attack are significantly larger, up to 350% increase in size, and use techniques like Binary Padding and Indirect Control Flow for evasion. The campaign's sophistication and global reach indicate a growing threat in the cybercrime landscape.</p><p>Pulse ID: 67c718b9605e1b9b0784f4a5<br>Pulse Link: <a href="https://otx.alienvault.com/pulse/67c718b9605e1b9b0784f4a5" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">otx.alienvault.com/pulse/67c71</span><span class="invisible">8b9605e1b9b0784f4a5</span></a> <br>Pulse Author: AlienVault<br>Created: 2025-03-04 15:14:01</p><p>Be advised, this data is unverified and should be considered preliminary. Always do further verification.</p><p><a href="https://social.raytec.co/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a> <a href="https://social.raytec.co/tags/CyberCrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberCrime</span></a> <a href="https://social.raytec.co/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://social.raytec.co/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://social.raytec.co/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://social.raytec.co/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> <a href="https://social.raytec.co/tags/MalwareAsAService" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MalwareAsAService</span></a> <a href="https://social.raytec.co/tags/OTX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTX</span></a> <a href="https://social.raytec.co/tags/OpenThreatExchange" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenThreatExchange</span></a> <a href="https://social.raytec.co/tags/PHP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PHP</span></a> <a href="https://social.raytec.co/tags/Philippines" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Philippines</span></a> <a href="https://social.raytec.co/tags/PowerShell" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PowerShell</span></a> <a href="https://social.raytec.co/tags/RAT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RAT</span></a> <a href="https://social.raytec.co/tags/SMS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMS</span></a> <a href="https://social.raytec.co/tags/bot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bot</span></a> <a href="https://social.raytec.co/tags/AlienVault" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AlienVault</span></a></p>
Konstantin :C_H:<p>BTW, the <a href="https://infosec.exchange/tags/bots" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bots</span></a> managed to bypass my (admittedly weak) <a href="https://infosec.exchange/tags/CAPTCHA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CAPTCHA</span></a>. I prefer not to use reCAPTCHA for privacy reasons, though it would probably solve the issue.</p><p>15 accounts were successfully created just today.</p><p>I've blocked their IPs. Let's see what happens next! 😆</p><p><a href="https://infosec.exchange/@kpwn/113936616152666255" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@kpwn/1139366</span><span class="invisible">16152666255</span></a></p>