0

Lets say that I have a badly-made file upload on a website. Someone uploads a zip file which contains a virus. Why would they do this? Surely the zip file is useless unless it is opened and the contents are executed?

  • Are you sure this was an actual human doing this? It's most likely a bot who just floods all file upload forms with zipper up malware, hoping that the form's files end up being processed by a stupid user who would unzip it and execute it. – André Borie Nov 07 '16 at 13:07
  • It could be anything, the question is hypothetical. – Josh Jackson Nov 08 '16 at 12:30

1 Answers1

0

Your assumption is correct. Why this happened? You can only speculate. Might not be a purposeful action at all. Maybe a malicious person hopes someone does exactly what you describe. The zip might have a name that motivates someone to do so like "your-bosses-private-emails.zip" or sth like this.

kaidentity
  • 2,634
  • 13
  • 30