this post was submitted on 19 Jun 2023
16 points (100.0% liked)

Lemmy

12690 readers
43 users here now

Everything about Lemmy; bugs, gripes, praises, and advocacy.

For discussion about the lemmy.ml instance, go to [email protected].

founded 4 years ago
MODERATORS
 
  1. I create a well crafted post to a normal site that gets 10.000 upvotes.

  2. I change the URL to a malicious site.

  3. ??????

  4. Profit

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 1 points 2 years ago (1 children)

Most subreddits also blocked redirect links for (partially) reason.

[–] [email protected] 2 points 2 years ago (1 children)

You don't need to use a known redirect link. If the plan begins with a high-quality post that obtains 10,000 likes, I am sure the attacker can spend a small amount of effort and register a domain.

[–] [email protected] 1 points 2 years ago (1 children)

Surely you don't think that's equivalent to a simple 5 second copy paste of a new URL into the textbox, right?

And it's not just about attack vectors, it's also about stealth ads and misinformation

[–] [email protected] 1 points 2 years ago

I'm not sure what you're getting at but he's right, it's incredibly simple to setup a new redirect site.