logoalt Hacker News

janmo • 01/18/2025 • 3 replies • view on HN

There is also a technique where they ask you to press: [Win + R] + [CRTL + V] + [ENTER] to verify that you are human.

This will install malware code that was put in the clipboard by using javascript.


Replies

account42 • 01/20/2025

Letting javascript manipulate the clipboard was a mistake. Yet another "feature" that's added for apps but absolutely useless for the web.

yapyap • 01/18/2025

yeah, you paste malicious code into the run window (basically a powershell) and then paste in code. pretty obvious most of the time

HeliumHydride • 01/18/2025

The "Run" app appears right after pressing Win+R, so this wouldn't work.

➕ show 1 reply