Unrelated to this git pre commit hook attack but yeah
should i remove it?
there is no place for fun, whimsy, moods, or personalization on the web. sorry.
(no, at least not at the request of random internet stranger #10545346)
I joke, anyway, and bear the downvotes. Totally worth it.
Seems like this is becoming a recurring theme, similar story was on the front page last month.
Silently only because @OP is not running Little Snitch (or the equivalent on Windows/Linux).
I’m in the habit of running `tree -a` or the more modern `erd --hidden` but in this case I wouldn’t have needed to, and I wouldn’t have had to audit the scripts either. Little Snitch would have popped up an alert the moment cURL tried to reach that remote server, which is obviously suspicious, and I would have ended the “interview” right there.
they added this back in 2023 (https://news.linkedin.com/2023/april/linkedin-s-new-verifica...), but very less people actually bother to verify with their email, so not having it doesn't always mean it's illegitimate.
Maybe they don't want to give any identifying info to the domain registrar? Or just minimizing their online presence?
Give defenders a better shot…
I'm not talking about switching to cold contacting companies as a job hunting strategy. I'm saying if you get a suspicious outreach from a rando on linked in on behalf of a company THEN you only continue if you can reach out to the same person via official company channels.
ChrisMarshallNY•1h ago
Looks like these folks really did their homework.
It's nasty, but I have to respect their skills. I'll bet it works, quite often.
LoganDark•54m ago
throw_m239339•50m ago
ChrisMarshallNY•31m ago
I suspect it's clever, experienced, engineers, leveraging LLMs.
CITIZENDOT•49m ago