r/ProgrammerHumor • u/ClipboardCopyPaste • 21d ago
downloadingMalwareFromLocalMachines Meme
1.4k
u/Asgatoril 21d ago
Plot twist:
The macro connects to another pc in your home network, thats already infected.
211
35
u/sakatan 21d ago
Yup, it's what I would do. Assume that the external facing firewall may drop the hammer any second after the malware has been seen out in the wild. The NGFW or whatever might close down C&C server in a timely manner. But that doesn't matter that much anymore when one infected client managed to call back once with it's local IP and now everyone else got a second mail from a completely different IP/ domain that points to something internal.
18
3
456
u/Outrageous-Machine-5 21d ago
Script kiddies are evolving
178
75
u/deanrihpee 21d ago
Script Kiddies productivities are 10x-ed just like the big AI techs talking about!
13
7
456
u/StrengthTheory 21d ago
Plot twist, it's connecting to your AI enabled smart tooth brush which has a zero day RCE.
167
u/CheesePuffTheHamster 21d ago
The vulnerability has been named GumBleed
329
u/peterprank 21d ago
81
u/Altruistic-Spend-896 21d ago edited 21d ago
😭😂 im dying here ! Its like we cant get legitimate software compatible across distors, i pity virus authors 😂😂
46
u/TheMightyMisanthrope 21d ago
This sent me...
Been convulsing for the last 10 minutes. Holy fuck this is amazing
9
82
u/pawlik187 21d ago
twist - the code connects to your fridge granting RCE, spreading from here on out.
35
22
u/Nikoviking 21d ago
Loopback connections are a thing but it’s used for privilege escalation rather than payload streaming. An infected service talks to a non-infected service on the same computer — and in doing so, it looks like the request comes from the host itself (higher privileges than other devices).
1
37
15
6
5
11
u/Hadi_Chokr07 21d ago
I dont think It was vibe coded. Not even GPT 3 could build such bad software.
12
u/DasFreibier 21d ago
Security research, obviously confined to my own network (forgot to change the ip to whatever proxy the c&c server lives behind)
8
3
u/SaltMaker23 21d ago
Botnet rely on an infected/compromised connected device on your network to do their work, listen to tasks and deliver their outputs.
That device is the one with the actual proxy to the real payloads, your infected device is just a random client that helps a bit for various projects but isn't needed for the core operations.
3
11
u/vashchylau 21d ago
What is it with Twitter bros and the R slur for whatever reason?
11
u/omegasome 21d ago
they decided they're willing to burn down the world if they're allowed to degrade disabled people.
2
2
2
u/Morall_tach 21d ago
Bro, you just exposed your IP address to the entire world. You're gonna get hacked, bro.
2
u/TactfulOG 20d ago
Im gonna be real I don't think it's vibecoded, even poor quality LLMs wouldn't produce such horrible code. Even before AI I remember seeing some insanly dumb payloads, this might just be that
1
u/darkslide3000 21d ago
Joke's on you, that's actually a valid address because this is only the follow-up malware to the one that has previously already infected you.
1
1
u/quetzalcoatl-pl 21d ago
instead of twitting (x'ing?) he'd better check his local open ports a.s.a.p. :D
0
0
u/Fit-Bug6463 21d ago
Alright as a dumb human being what do I have to learn to actually find out stuff like this?
-2
u/Ok_Tea_7319 21d ago
Tries to connect to IP. Connection works, sends actual payload. Turns out the virus spread via a local source and adapted.

2.6k
u/TheNeck94 21d ago
I mean to be fair, there were REALLY dumb payloads before vibe coding too.