I am not a super code-literate person so bare with me on this… But. Still please becareful. There appears to be a vulnerability.

Users are posting images like the following:

https://imgur.com/a/RS4iAeI

And inside hidden is JavaScript code that when executed can take cookie information and send it to a URL address.

Among other things. At this time if you see an image please click the icon circled before clicking the link. DO NOT CLICK THE IMAGE. If you see anything suspicious, please report it immediately. It is better a false report than a missed one.

  • Saigonauticon@voltage.vn
    link
    fedilink
    English
    arrow-up
    3
    ·
    1 year ago

    Sure, send it my way. If it sufficiently malicious, I’ll maybe have fun dissecting it. You should know that messaging on Lemmy is not secure though.

    • imaqtpie@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      1
      ·
      1 year ago

      FYI if you have a Matrix account you can attach it to your Lemmy account in your profile settings on Lemmy. Then people should see an option to send a secure message when they visit your Lemmy profile, by going through Matrix.

      • Saigonauticon@voltage.vn
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 year ago

        Ah yeah, I’ve heard about that! Sadly, I don’t have time to set it up presently. Thanks for the reminder though, I’ll add it to the list.