Hacker News new | past | comments | ask | show | jobs | submit login

I have found JiaT75 - Jia Tan mentioned in Microsoft C++, C, and Assembler as an community contributor ... https://learn.microsoft.com/en-us/cpp/overview/whats-new-cpp...

Also check this... https://www.abuseipdb.com/check/64.23.252.16




Completely benign documentation change to fix a typo: https://github.com/MicrosoftDocs/cpp-docs/pull/4716

I have no idea what that IP address is supposed to be about...


Regarding the AbuseIPDB link: some of the SSH payloads mentioned in the instances of 'attack' contain the username jiat75.

Doesn't necessarily validate anything though. Could be progressof planting misdirection given that the IP address only started being detected basically today (and the VPS was likely only just setup today as well, if the hostname is to be trusted).

... and that progressof's account is about an hour old.


So all binaries built with a Microsoft compiler must be considered compromised?


no


Care to enlighten how you come to such a knee-jerk reaction given a highly critivcal observation? What obvous are we missing?


It's just a documentation change. Likely made to add reputation to the account.


I didn't come to any conclusion... and I don't think you missed anything... I'm just posting links... you think it's better if I didn't post anything because this is stupid? if so then ok...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: