此主题已被锁定
Kerry 2022 年 11 月 16 日 下午 1:32
2
Remove all Discord CDN links
The chat program Discord is a known dumping ground for malware and malicious bots, and is widely used for command and control of serious malware including credential stealers, ransomware, and other things. Some malware can even use Discord to crash other players' games.

Sophos, an anti-malware publisher and research group, reports that the greatest amount of malware they've found on the Discord Content Distribution Network is, quote: "credential and personal information theft, a wide variety of stealer malware as well as more versatile RATs."

This means software that steals bank account info and Steam account info.

So by allowing games that link with Discord to run on Steam, ValveCorp is inadvertently putting their users and all the games on this platform at serious risk of catastrophic loss.

I believe that these games should be sanctioned or heavily restricted in their capability to link with Discord, and all links that lead to a Discord server should be considered a direct link to malware.

Source: https://news.sophos.com/en-us/2021/07/22/malware-increasingly-targets-discord-for-abuse/

EDIT: I will not allow this thread to be derailed by any method. Attempts to bring up previous threads are obvious attempts to derail a thread and will be treated as such.

Each creator who makes a post that attempts to derail this thread will result in one singular chain of action:

Mute, block, report. You're not worthy of my time if you keep trying to derail the thread and troll me. You're not going to get a rise out of me.

EDIT: I'm sick and tired of some people (not naming names) being so stuck-up and closed-minded that they cannot admit that other people have different experiences.

The technically-impossible happens all the time. Just because YOU haven't seen it happen, doesn't mean weird crap doesn't happen!
最后由 Kerry 编辑于; 2022 年 11 月 17 日 下午 4:44
< >
正在显示第 511 - 525 条,共 599 条留言
Kerry 2022 年 11 月 18 日 上午 10:09 
引用自 Mad Scientist
If there are malicious files or links on discord Report them to Discord as the responsibility of security for Discord is on Discord.

Precisely. Yet Discord refuses to do anything about it.
最后由 Kerry 编辑于; 2022 年 11 月 18 日 上午 10:10
Kerry 2022 年 11 月 18 日 上午 10:11 
引用自 KittenGrindr
引用自 Kerry Freeman
During that time, I downloaded no files and clicked no links. I have antivirus programs AND a pair of firewalls, one software and one hardware, operating on the strictest of security settings.

Despite these settings, I got hacked no less than seven times.

Here's the issue: I ran Discord... which functioned as a back door.

-------------------------------------------------------------------------------
Conclusion:

Discord
Internet security

Pick one. You can't have both.


No it doesn't. A 'backdoor' is an exploitable hole in security measures. Discord doesn't function as one. It doesn't even have the access to be one.

You know what's common denominator in your story(ies)?

You.

The Discord app requires administrative access. Back door.
Mad Scientist 2022 年 11 月 18 日 上午 10:11 
引用自 Kerry Freeman
引用自 Mad Scientist
If there are malicious files or links on discord Report them to Discord as the responsibility of security for Discord is on Discord.

Precisely. Yet Discord refuses to do anything about it.
They actively remove problem material, just like Valve does.
Please do not spread misinformation.
Kerry 2022 年 11 月 18 日 上午 10:12 
引用自 Mad Scientist
引用自 Kerry Freeman

Precisely. Yet Discord refuses to do anything about it.
They actively remove problem material, just like Valve does.
Please do not spread misinformation.

They only remove things after users report it. No user reports, no removal.

I am not spreading misinformation.
最后由 Kerry 编辑于; 2022 年 11 月 18 日 上午 10:13
Mad Scientist 2022 年 11 月 18 日 上午 10:21 
引用自 Kerry Freeman
引用自 Mad Scientist
They actively remove problem material, just like Valve does.
Please do not spread misinformation.
They only remove things after users report it.No user reports, no removal.

I am not spreading misinformation.
You are intentionally on numerous occasions through the thread, giving false & misleading information, the OP edits are also come across very combative. Very few platforms are naive enough to think there's no problems until there's a report especially when they're huge platforms.

Only actual bad links will be removed. There will be no blanket blocks of CDNs unless en-masse used to attempt compromising, spreading malware etc. So unless a CDN is owned and operated by a hacker/phishing group, it's not going to happen.

Let it go.
最后由 Mad Scientist 编辑于; 2022 年 11 月 18 日 上午 10:21
Start_Running 2022 年 11 月 18 日 上午 10:22 
引用自 Kerry Freeman


Answers to your statements:

Not confirmation bias.
WHich is why you're disregarding everything that counters or throws your statements into reasonable doubt. Mmm-Hmmm.

引用自 Kerry Freeman
I also have been on the internet long before the creation of Discord. I also know enough not to do anything stupid. It's just like with strangers on the street - same basic protocols.
If you go by what people say NO ONE is dumb enough to fall for the Nigerian Prince scam.. and yet... everyday proves that plenty of people are and the overlap in the two groups is there :P.


引用自 Kerry Freeman
I am VERY certain the initial transmission vector was Discord, via process of elimination. I had nothing unsecured on my system except Discord.
That's nice. Can you actually provide evidence though. The mechanism by which discord accessed the protected memory of other applications, the means by which it was abled to search, open, and change files without you or your AV's noticing? ANything? I mean if yoyu can actually show that this is possible there'd be quite a monetary windfall for it.

引用自 Kerry Freeman
No I don't visit questionable sites.
Bruh.
If you've been on the internet anywhjere near as long as you claim to have been you know no one's gonna believe when you say that and you know why no ones gonna believe you when you say that.

引用自 Kerry Freeman
Yes, I'm the only one who has access to my system.
Clearly a Wizard did it then.
M'dude if DIscord was so much of a backdoor, it'd have been shut down by now . Plain and simple.
Boblin the Goblin 2022 年 11 月 18 日 上午 10:40 
引用自 Kerry Freeman
引用自 Start_Running
So confirmation bias then?


Not really m8. I mean i'm sure I haven't experienced some of the problems you have...but that may well be due to having enough sense to steer clear of said problems. As said. Discord ain't anything new. I mean it's just Usenet with a nicer interface :p


And you're certain Discord was where you got hacked from. Not say, any questionable sites you might have visited over that same period?

Secondly . You are the only opne with access to that system of yours?


Yeah. There are literally millions of people who can't say that. So. Either you got 'hacked' through discord or through some orther service/apop/site or combination thereof that you visited.

You managed to get problems in discord. I haven't. I haven't been on it as long as you but logically if I use you as a baseline I should have been hacked at least twice by now. But. Nothing.


Answers to your statements:

Not confirmation bias.

I also have been on the internet long before the creation of Discord. I also know enough not to do anything stupid. It's just like with strangers on the street - same basic protocols.

I am VERY certain the initial transmission vector was Discord, via process of elimination. I had nothing unsecured on my system except Discord.

No I don't visit questionable sites. Yes, I'm the only one who has access to my system.


Yet you didn't know what LimeWire(literally second to Napster in early P2P file sharing) was until explained.

You keep changing stories and being inconsistent.
最后由 Boblin the Goblin 编辑于; 2022 年 11 月 18 日 上午 10:41
Crazy Tiger 2022 年 11 月 18 日 上午 10:45 
If you take this thread and the copyright thread, it's quite clear that OP likes to create their own narratives and be completely detached from reality.
Kerry 2022 年 11 月 18 日 上午 10:48 
引用自 Start_Running
引用自 Kerry Freeman


Answers to your statements:

Not confirmation bias.
WHich is why you're disregarding everything that counters or throws your statements into reasonable doubt. Mmm-Hmmm.

引用自 Kerry Freeman
I also have been on the internet long before the creation of Discord. I also know enough not to do anything stupid. It's just like with strangers on the street - same basic protocols.
If you go by what people say NO ONE is dumb enough to fall for the Nigerian Prince scam.. and yet... everyday proves that plenty of people are and the overlap in the two groups is there :P.


引用自 Kerry Freeman
I am VERY certain the initial transmission vector was Discord, via process of elimination. I had nothing unsecured on my system except Discord.
That's nice. Can you actually provide evidence though. The mechanism by which discord accessed the protected memory of other applications, the means by which it was abled to search, open, and change files without you or your AV's noticing? ANything? I mean if yoyu can actually show that this is possible there'd be quite a monetary windfall for it.

引用自 Kerry Freeman
No I don't visit questionable sites.
Bruh.
If you've been on the internet anywhjere near as long as you claim to have been you know no one's gonna believe when you say that and you know why no ones gonna believe you when you say that.

引用自 Kerry Freeman
Yes, I'm the only one who has access to my system.
Clearly a Wizard did it then.
M'dude if DIscord was so much of a backdoor, it'd have been shut down by now . Plain and simple.

More answers.

For your first quote: Yes, people do fall for the Nigerian Prince scheme. Mainly older folks who are forgetting their basics due to age, and children who hop on mommy and daddy's computer and say things like "Hey, this nice prince wants to make mommy and daddy rich!" As long as you can think clearly, you won't fall for an obvious scam.


For your second: Discord requires administrative permissions to even function on your computer. They harvest information from you at all times - you must provide them access or you don't get to use the app. it's right there on the options page when you go to modify your account on the app. This administrative permission allows for modification of a large number of things, including registry files.

For your third: Believe it or not, I know not to visit questionable sites just like I know enough not to visit questionable people's houses. Pretty basic "stranger danger" protocols.

For your fourth: Discord heavily obfuscates the data, making it very hard for the authorities to catch people who use it. The very things that make Discord easy for people to use, such as high amounts of trust and encryption of data, make the site very hard to prosecute.
最后由 Kerry 编辑于; 2022 年 11 月 18 日 上午 10:51
Kerry 2022 年 11 月 18 日 上午 10:50 
引用自 KittenGrindr
引用自 Kerry Freeman


Answers to your statements:

Not confirmation bias.

I also have been on the internet long before the creation of Discord. I also know enough not to do anything stupid. It's just like with strangers on the street - same basic protocols.

I am VERY certain the initial transmission vector was Discord, via process of elimination. I had nothing unsecured on my system except Discord.

No I don't visit questionable sites. Yes, I'm the only one who has access to my system.


Yet you didn't know what LimeWire(literally second to Napster in early P2P file sharing) was until explained.

You keep changing stories and being inconsistent.

I didn't know what LimeWire was. I was aware of Napster because of TV advertising.

In those early days, I was extremely wary of file sharing sites because even then I knew that they were a threat.
Boblin the Goblin 2022 年 11 月 18 日 上午 11:00 
引用自 Kerry Freeman
引用自 KittenGrindr


Yet you didn't know what LimeWire(literally second to Napster in early P2P file sharing) was until explained.

You keep changing stories and being inconsistent.

I didn't know what LimeWire was. I was aware of Napster because of TV advertising.

In those early days, I was extremely wary of file sharing sites because even then I knew that they were a threat.


LimeWire wasn't a site...

They were only a threat if you didn't practice basic internet safety. I'm seeing a theme that everything you say is a 'threat' is only one if you don't practice internet safety.

Weird.
2022 年 11 月 18 日 上午 11:00 
引用自 Crazy Tiger
If you take this thread and the copyright thread, it's quite clear that OP likes to create their own narratives and be completely detached from reality.
In their journal they literally talked about every bluescreen/error they got, and every internet outage as a hacker attack. Yeah, they like to see a lot of issues where there may not be.
Boblin the Goblin 2022 年 11 月 18 日 上午 11:01 
引用自 Leonardo Da Pinchi
引用自 Crazy Tiger
If you take this thread and the copyright thread, it's quite clear that OP likes to create their own narratives and be completely detached from reality.
In their journal they literally talked about every bluescreen/error they got, and every internet outage as a hacker attack. Yeah, they like to see a lot of issues where there may not be.


Are you ♥♥♥♥♥♥♥ serious?
AmsterdamHeavy 2022 年 11 月 18 日 上午 11:02 
引用自 Kerry Freeman
引用自 KittenGrindr


Yet you didn't know what LimeWire(literally second to Napster in early P2P file sharing) was until explained.

You keep changing stories and being inconsistent.

I didn't know what LimeWire was. I was aware of Napster because of TV advertising.

In those early days, I was extremely wary of file sharing sites because even then I knew that they were a threat.


Just like 4chan! :steammocking:
2022 年 11 月 18 日 上午 11:03 
引用自 KittenGrindr
引用自 Leonardo Da Pinchi
In their journal they literally talked about every bluescreen/error they got, and every internet outage as a hacker attack. Yeah, they like to see a lot of issues where there may not be.


Are you ♥♥♥♥♥♥♥ serious?
Yup, I had time on my hands so I went through 280 someodd "journal" posts they had made.

I'm not going to mention where, or much else due to that was an issue of hyperfixation on my own part.
< >
正在显示第 511 - 525 条,共 599 条留言
每页显示数: 1530 50

发帖日期: 2022 年 11 月 16 日 下午 1:32
回复数: 599