- Pers1valle
News
10:55, 11.09.2024
The INUI platform, which has recently attracted the attention of users due to the involvement of popular players and streamers such as Lobanjica, Get_Right, and shox, is already raising significant security questions. As it has become known, this new esports platform is exploiting an XSS (cross-site scripting) vulnerability that can lead to the theft of personal data, including Steam accounts and financial information.
What happened?
Recently, a message from the CS2 community was shared on Twitter, warning users against the risks associated with the new INUI platform. This platform, which announced its features and attracted Lobanjica, Get_Right, and shox, now puts users at risk by capturing screenshots of their desktop and game every 10 seconds.
How does it work?
The XSS vulnerability allows attackers to add malicious scripts to servers that can collect sensitive user data such as logins and passwords. It is known that INUI can not only collect data, but also replace users' screens with random images, gifs, and even videos.
😨 🇲🇪 @LobanjicaCS , 🇸🇪 @GeT_RiGhT, and 🇫🇷 @shoxCSGO have reportedly become the faces of a new CS platform, INUI.
— bo3.gg (@CS2_bo3gg) September 11, 2024
However, this platform poses serious risks — it can steal your data and replace your screen content with random images, GIFs, and more.
🧵 THREAD pic.twitter.com/jlUVsoMDuO
Why is this a problem?
The INUI platform can steal users' personal data, including Steam accounts and bank details. This is possible because the platform uses XSS to inject malicious code into the server. Even though many users on Twitter believe that Loba is behind this platform, no real evidence has been provided yet.
Operation GeT_RaNk and the prize pool
The same platform has announced an operation called GeT_RaNk, which promises a prize pool of $36,000. However, the value of the potential loss that users can suffer is much higher than this amount. Many believe that these funds could be spent on improving cybersecurity rather than creating an unsafe platform.
Community reaction
Many users consider the INUI platform to be risky and urge other companies to avoid such initiatives that could jeopardize data privacy. Some believe that bringing in big names like Loba, Get_Right, and shox was just a way to draw attention to the platform without considering its real problems.
Conclusion
Be careful with new platforms, especially when it comes to sensitive data and cybersecurity. Although GeT_RaNk 's operation looks attractive due to the involvement of esports stars, the risk of data loss or account theft far outweighs the possible gains.
Comments