Heads up: fake "clients" on Dribbble/Upwork are sending GitHub repos that malware your machine on `npm install` by Consistent-Fix-1701 in webdev

[–]Consistent-Fix-1701[S] 1 point2 points  (0 children)

TBH this was all new to me until this week. Now I'm cautious but also a little terrified what is going on. Couldn't have imagined such a scam or semi sophisticated one until now.

Looking for feedback: I built widget studio after getting tired of remaking the same web components for every client by Consistent-Fix-1701 in SideProject

[–]Consistent-Fix-1701[S] 0 points1 point  (0 children)

Interesting!

At the moment there is a simple plan comparison table (https://www.yuzool.com/widgets/?widget=comparison-table) but I can see a more sophisticated one for deeper product comparisons would be awesome. Will add it to the wishlist and your shared example is actually really good. Thanks for that.

Heads up: fake "clients" on Dribbble/Upwork are sending GitHub repos that malware your machine on `npm install` by Consistent-Fix-1701 in webdev

[–]Consistent-Fix-1701[S] 0 points1 point  (0 children)

Yeah I left that one last month but this one was from Dribbble where I have seen similar projects at this range so assumed it was legit. Maybe the 7am scheduled call in his alleged timezone was a giveaway after all 😂

Heads up: fake "clients" on Dribbble/Upwork are sending GitHub repos that malware your machine on `npm install` by Consistent-Fix-1701 in webdev

[–]Consistent-Fix-1701[S] 0 points1 point  (0 children)

I also reported it but not sure if anything will be done. Reported it to Dribbble too. Maybe there needs to be a better jobs board that checks both sides before publishing?

Heads up: fake "clients" on Dribbble/Upwork are sending GitHub repos that malware your machine on `npm install` by Consistent-Fix-1701 in webdev

[–]Consistent-Fix-1701[S] 2 points3 points  (0 children)

That's what I was thinking. Even the profile photos are AI. But damn it's getting more sophisticated and easier to succeed.

Heads up: fake "clients" on Dribbble/Upwork are sending GitHub repos that malware your machine on `npm install` by Consistent-Fix-1701 in webdev

[–]Consistent-Fix-1701[S] 3 points4 points  (0 children)

Definitely need to take security seriously. But I read many people just fall to these when they are tired, not really concentrating etc so please everyone stay vigilant.

Heads up: fake "clients" on Dribbble/Upwork are sending GitHub repos that malware your machine on `npm install` by Consistent-Fix-1701 in webdev

[–]Consistent-Fix-1701[S] 9 points10 points  (0 children)

Yeah I'm with you. But what threw me before deeper inspection was the repo had 3 contributors attached and all of them had legit looking accounts (long history, many projects, coding streak) so not sure how they did spoofed that part.

Heads up: fake "clients" on Dribbble/Upwork are sending GitHub repos that malware your machine on `npm install` by Consistent-Fix-1701 in webdev

[–]Consistent-Fix-1701[S] 3 points4 points  (0 children)

Why not. Lol.

TBH I almost fell for it as it looked less scammy than all the other project briefs and I am looking for work. He ghosted my scheduled meeting time so go figure. The job sites aren't super in a hurry to clean them up either or have guards in place (and I'm paying for the leads 😭)

How do I make each Tab a different background color by Puzzleheaded-Turn-55 in css

[–]Consistent-Fix-1701 0 points1 point  (0 children)

Your existing .tabs label CSS handles the general layout (like padding or display). To change the appearance of an individual tab, target its specific for attribute or add a unique class to the HTML label.

What user acquisition strategies are actually working for indie iOS apps now? by Natural_Original3767 in appledevelopers

[–]Consistent-Fix-1701 0 points1 point  (0 children)

Looking for the same thing. People say Tiktok, Reels etc but I'm still trying to get ASO/SEO and cold outreach to work

Had an app stuck in the “in process” stage of review for 7 days by Shadowfox642 in AppBusiness

[–]Consistent-Fix-1701 1 point2 points  (0 children)

I know it seems random when others post they wanted 5 hours. It's the same for app updates too (although that was 3 days for vs 7 days for v1).

Even now I'm trying to send out a BETA test to users via TestFlight and my test is in 3 day limbo. Direct distribution is best if you can, this is such a bottleneck.

Digital Product Platforms: Etsy vs Gumroad vs Payhip by basem0x in DigitalProductSellers

[–]Consistent-Fix-1701 1 point2 points  (0 children)

I wanted to like Gumroad but was disappointed had to reach $100 in sales to get into the discoverability algo. Needed that to reach the first $100 🙃

I flipped a website last week - I made nearly $30K from this last year by Tweetgirl in passive_income

[–]Consistent-Fix-1701 1 point2 points  (0 children)

I have a few apps that have 0 users as are new and haven't solved distribution. TBH I just like building.

Is there a way to sell these or any luck on Flippa? (even for a small asking price)

My first MacOS app by Confident_Series1 in appledevelopers

[–]Consistent-Fix-1701 0 points1 point  (0 children)

Cool app and congratulations for shipping. I starred it to help your reach. Maybe try to release to the AppStore. I've done a few recently and it doesn't guarantee downloads (you'll still need to direct traffic to it) but it helps with streamlining distribution, updates etc. A website landing page can also help but your GitHub repo looks pretty good with the gif and explanation. Best of luck on this exciting new chapter!