zlacker

[parent] [thread] 2 comments
1. pgwhal+(OP)[view] [source] 2026-01-26 13:48:14
I was hoping for a real world example.
replies(1): >>lmeyer+9u
2. lmeyer+9u[view] [source] 2026-01-26 16:12:21
>>pgwhal+(OP)
Like https://www.securityweek.com/hackers-target-popular-nx-build... ?

Or the many people putting content in their LI profiles, forums like these, etc because they know scrapers are targeting them ?

Or the above, for the users stating they are using it to scrape hn?

replies(1): >>pgwhal+yI
◧◩
3. pgwhal+yI[view] [source] [discussion] 2026-01-26 17:12:38
>>lmeyer+9u
> Like https://www.securityweek.com/hackers-target-popular-nx-build... ?

I only had time to skim this, but it doesn't seem like prompt injection to me, just good old fashioned malware in a node package.

Your other two examples do seem to open the door for prompt injection, I was just asking about documented cases of it succeeding.

[go to top]