this post was submitted on 01 Jan 2026
1233 points (98.6% liked)
Microblog Memes
10249 readers
3188 users here now
A place to share screenshots of Microblog posts, whether from Mastodon, tumblr, ~~Twitter~~ X, KBin, Threads or elsewhere.
Created as an evolution of White People Twitter and other tweet-capture subreddits.
RULES:
- Your post must be a screen capture of a microblog-type post that includes the UI of the site it came from, preferably also including the avatar and username of the original poster. Including relevant comments made to the original post is encouraged.
- Your post, included comments, or your title/comment should include some kind of commentary or remark on the subject of the screen capture. Your title must include at least one word relevant to your post.
- You are encouraged to provide a link back to the source of your screen capture in the body of your post.
- Current politics and news are allowed, but discouraged. There MUST be some kind of human commentary/reaction included (either by the original poster or you). Just news articles or headlines will be deleted.
- Doctored posts/images and AI are allowed, but discouraged. You MUST indicate this in your post (even if you didn't originally know). If a post is found to be fabricated or edited in any way and it is not properly labeled, it will be deleted.
- Be nice. Take political debates to the appropriate communities. Take personal disagreements to private messages.
- No advertising, brand promotion, or guerrilla marketing.
Related communities:
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
The kind of person who blindly runs commands also blindly runs any .exe or .bat they download from github which is not any better.
Of course in an ideal world there'd be a perfect GUI for everything, and we've gotten a lot better at that in the last few years. But it's not like windows is lacking in things that are only configurable through CLI or the registry (which is even more opaque). I'm not saying Linux is perfect, just pointing out the hypocrisy.
While true, copying and pasting is much easier to exploit, especially since websites can alter your clipboard. Not to mention that people are already more wary of downloadable executables, but less so for commands.
For example, I'm not sure if you saw the newer attack vector a lot of scammers are using, but essentially they'll have a 3-step process saying "Press Win + R" and "Press Ctrl + V" then "Hit Enter", as a fake captcha, and the site automatically copies a malicious command to their clipboard, which then gets run when they paste.
A similar attack vector could take place where a user copies a command that looks legitimate, hits paste and enter, and only then is it clear that the site copied a new command to their clipboard that isn't the one on the site they thought they checked.
I do agree that Windows is still pretty shit in this regard though. I just think we should seek to not emulate that as a requirement for users to edit certain settings if we can help it :)
The attack vector of convincing users to do stuff exists regardless of whether a niche GUI exists somewhere to do . The only proper defense against social engineering is a) training and b) following the least privilege principle (which neither Windows or traditional Linux desktop's permission model properly, as the current user in either case has full permissions to retrieve extremely sensitive credentials such as browser cookies without interaction).
Trying to defend against this from the perspective of de-normalizing the CLI is like defending against drunk driving by adding a bittering agent to Guiness beer exclusively.
As for clipboard highjacking, I am well aware, which is why any decent modern terminal emulator should a) strip escape codes by default and b) support bracketed-paste, to prevent immediate execution of a pasted command. If yours does not, please consider switching to a safer alternative (such as kitty).