PSA: Lemmy.world has been compromised! (Edit: Multiple Instances are down)

G59@lemmy.ml to Fediverse@lemmy.ml – 433 points –

FYI!!! In case you start getting re-directed to porn sites.

Maybe the admin got hacked?


edit: lemmy.blahaj.zone has also been hacked. beehaw.org is also down, possibly intentionally by their admins until the issue is fixed.

Post discussing the point of vulnerability: https://lemmy.ml/post/1896249

Github Issue created here: https://github.com/LemmyNet/lemmy-ui/issues/1895

196

You are viewing a single comment

Just went there and didn't immediately see anything out of the ordinary, but then was redirected to Chatroulette, lol yikes

Really hoping it's "only" redirecting to offensive sites, and not to malware. I got redirected a few times, before I closed my browser.

TBF modern browsers are remarkably secure from being a vector to pwn your computer these days.

EDIT: I don't endorse hanging out on a compromised lemmy.world. Focus on the implication for the bigger lemmyverse though. A hack coming through to you is unlikely.

You can't get malware or viruses just by visiting a site