Alex Stamos
CPO/CSO of Corridor.dev, teaching at Stanford.
- Another day, another phishing site protected by @cloudflare.social. This one is totally ripping through my kids’ school. Thanks CloudFlare, for the useless reply to my abuse report! Toxs[.]digital for the threat hunters
- Just don’t try to fetch it with curl or run it in a sandbox, CloudFlare will protect the malware authors from your evil bot!
- Here is the MSI it downloads: www.virustotal.com/gui/file/6f2...
- The full URL shows up clean on VT, likely because they have Cloudflare's anti-bot protections turned on and it defeats all these security vendors fetching and analyzing, so they are only getting Cloudflare's Javascript and marking it clean.