top | item 39930390

(no title)

MakeThemMoney | 1 year ago

Thank you!

- Browser 0-day vendor

discuss

order

autoexec|1 year ago

You aren't wrong. I've got a heavily locked down browser on an off-network device for working with questionable websites. While the vast majority of phishing sites aren't pushing malware spearphishing is another story.

bee_rider|1 year ago

IT still might not want you to follow the link.

* Other users might have, instead, an incompetently secured browser that they think is locked down on their work devices. It is hard for IT to distinguish between you and them.

* If the URL is personalized, it tells the attacker that the address is active. This is probably pretty limited help to the attacker. But it might tell them if your company emails follow a particular format, right?

fkyoureadthedoc|1 year ago

I feel truly sorry for whoever spends a browser 0-day giving RCE on me.

planede|1 year ago

It's good that I otherwise don't click on links in my browser during my day-to-day work. /s

themoonisachees|1 year ago

Good thing browser aren't able to display content of random unvetted third parties in exchange for money on any website you visit too :)

Adblock is a security measure at this point.