Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 4 days agoFake ‘One Battle After Another’ torrent hides malware in subtitleswww.bleepingcomputer.comexternal-linkmessage-square2linkfedilinkarrow-up11cross-posted to: piracy@lemmy.dbzer0.com
arrow-up11external-linkFake ‘One Battle After Another’ torrent hides malware in subtitleswww.bleepingcomputer.comKid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 4 days agomessage-square2linkfedilinkcross-posted to: piracy@lemmy.dbzer0.com
minus-squareRekall Incorporated@piefed.sociallinkfedilinkEnglisharrow-up0·4 days agoTechnically speaking it is hidden in a SRT subtitle file, but it’s not the like you can execute the SRT file, since it’s just text. If you are downloading pirates movies, it makes sense to not click on on random stuff in the torrent/download that’s clearly not a media file.
minus-squareaaaa@piefed.worldlinkfedilinkEnglisharrow-up0·3 days agoThe whole exploit is based on the user clicking on a .lnk shortcut, which then executes commands found in the subtitle text file. Which seems strangely over complicated. How does it really help to involve the subtitles file at all?
Technically speaking it is hidden in a SRT subtitle file, but it’s not the like you can execute the SRT file, since it’s just text.
If you are downloading pirates movies, it makes sense to not click on on random stuff in the torrent/download that’s clearly not a media file.
The whole exploit is based on the user clicking on a .lnk shortcut, which then executes commands found in the subtitle text file.
Which seems strangely over complicated. How does it really help to involve the subtitles file at all?