zlacker

[return to "Notepad++ supply chain attack breakdown"]
1. Willis+O9[view] [source] 2026-02-03 23:31:25
>>natebc+(OP)
> cmd /c "whoami&&tasklist&&systeminfo&&netstat -ano" > a.txt

Naive question, but isn't this relatively safe information to expose for this level of attack? I guess the idea is to find systems vulnerable to 0-day exploits and similar based on this info? Still, that seems like a lot of effort just to get this data.

◧◩
2. gruez+Oe[view] [source] 2026-02-03 23:56:53
>>Willis+O9
>I guess the idea is to find systems vulnerable to 0-day exploits and similar based on this info?

You don't need 0days when you already have RCE on an unsandboxed system.

[go to top]