Hacker News new | ask | show | jobs
by throwawaykwt01 1562 days ago
Here is the url lightly obfuscated if anyone is interested in investigating further: https:// kuwaitpostparcel [DOT] express / KW343

You can trigger the website by using "responsive mode" in dev tools and selecting a common android device.

Please note that this site /is/ malicious. Investigate at your own risk.

1 comments

They have some management daemons listening. [1] That could be how they were compromised. Did you try emailing all the addresses listed on this page? [2]

[1] - https://www.shodan.io/host/162.0.229.161

[2] - https://bgp.he.net/ip/162.0.229.161#_whois