Telegram Has Been Hacked

Sdílet
Vložit
  • čas přidán 15. 04. 2024
  • Learn Cybersecurity - Name Your Price Training with John Hammond: nameyourpricetraining.com
    📧JOIN MY NEWSLETTER ➡ jh.live/email
    🙏SUPPORT THE CHANNEL ➡ jh.live/patreon
    🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
    🌎FOLLOW ME EVERYWHERE ➡ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/discord ↔ jh.live/instagram ↔ jh.live/tiktok
    💥 SEND ME MALWARE ➡ jh.live/malware
    🔥CZcams ALGORITHM ➡ Like, Comment, & Subscribe!

Komentáře • 341

  • @BhilBhil-tc8fy
    @BhilBhil-tc8fy Před 22 dny +350

    Yes please. I would love a video that does a deep dive on the *Metaspyclub* project

  • @ranjanekka85
    @ranjanekka85 Před 22 dny +439

    Metaspyclub gang in the house! Thanks for the analysis!

  • @milanjamod7469
    @milanjamod7469 Před 22 dny +327

    Metaspyclub anticipation is building to a fever pitch! 😥

  • @KvapuJanjalia
    @KvapuJanjalia Před měsícem +360

    I'm not afraid of a calculator! Bring it on!

    • @cringemaki
      @cringemaki Před měsícem +104

      Everybody gangsta till the calculator app starts to ask permissions for camera, microphone and location 💀

    • @yukiplaysFr
      @yukiplaysFr Před měsícem

      💀

    • @TobbeOakleaf
      @TobbeOakleaf Před měsícem

      Oh it will be problems! Count on it!

    • @BillAnt
      @BillAnt Před měsícem +1

      At 8:14 that evil laughter Muaahhh!! lol

    • @Raymi20-
      @Raymi20- Před měsícem +1

      ​@@yukiplaysFr**salutes to the therian**
      Ma'am how can I help you ma'am

  • @why1851
    @why1851 Před měsícem +277

    too much rce exploits bro 💀💀💀💀💀💀💀

    • @sunbleachedangel
      @sunbleachedangel Před měsícem +2

      What are others?

    • @amaankhan8436
      @amaankhan8436 Před měsícem +48

      Xz utils, rust, palo alto

    • @sunbleachedangel
      @sunbleachedangel Před měsícem

      @@amaankhan8436 Palo alto?? My company uses that lul

    • @why1851
      @why1851 Před měsícem

      @@sunbleachedangel there was a rust rce CVE-2024-24576, aint that effective though

    • @yureimenkishi4291
      @yureimenkishi4291 Před měsícem

      Rust already released a patch its java that said they ain't fixing it. Tbf .bat codes running aren't used anywhere so who really cares

  • @Spiderfffun
    @Spiderfffun Před měsícem +412

    RCE after RCE, I hope kids wont have to learn about the year of the vulnerabilities, 2024, in the future

    • @SLZeroArrow
      @SLZeroArrow Před měsícem +15

      Thy Digital Apocalypse is drawing nearer by the day

    • @atomgutan8064
      @atomgutan8064 Před měsícem +4

      This is literally cybersecurity history.

    • @TehPwnerer
      @TehPwnerer Před měsícem +3

      No it will be certainly eclipsed by the number of them in 2025

    • @Ph34rNoB33r
      @Ph34rNoB33r Před měsícem +6

      I wonder whether the whole AI hype will make even more RCEs show up. Either by improving exploit code or by reducing code quality in the attacked app because people trust AI code without questioning it.

    • @Shaggidelic69
      @Shaggidelic69 Před měsícem +3

      ​@@SLZeroArrow seriously. I dedicated my whole life to computers and now they looking like they wanna kill us (ai). Ai is phuggin everything up. Its kinda scary tbh

  • @ghoulbuster1
    @ghoulbuster1 Před měsícem +76

    TL;DR
    The exploit disguises as a fake video that when played executes python code, requires python to be installed for it to work.

    • @mushroommanny
      @mushroommanny Před měsícem

      saved me about 10 mins bro ty

    • @lucplayed
      @lucplayed Před 18 dny

      Me, an it student, got "hacked" like that...🤣

  • @DoorThief
    @DoorThief Před měsícem +73

    I just got a SNYK sponsored ad by John Hammond before his own video

  • @januzi2
    @januzi2 Před měsícem +28

    Wait ... we can hack those spammers that are sending us the messages to text them?

  • @AstralArchivists
    @AstralArchivists Před měsícem +59

    Bet the three later agencies are punching air rn. All their exploits getting found.

    • @BillAnt
      @BillAnt Před měsícem +4

      While reading your comment. lol

    • @MrCobalt
      @MrCobalt Před měsícem +2

      You think every exploit exists because of "three later agencies"? 😂

    • @ohmsohmsohms
      @ohmsohmsohms Před měsícem +5

      @@MrCobaltgiven the past of their involvement with 0days, I wouldn’t be surprised if they were aware of maybe 1 of the RCE vulnerabilities discovered this year

    • @v-y
      @v-y Před měsícem

      ​@@MrCobalt theres no way this was an unintended oversight

  • @osiristeam6959
    @osiristeam6959 Před měsícem +20

    They should have a list of trusted extensions instead of a list of untrusted ones.

    • @zeteya
      @zeteya Před měsícem

      Very bad idea

    • @rafayahmed6259
      @rafayahmed6259 Před měsícem

      ​@@zeteyawhy?

    • @zeteya
      @zeteya Před měsícem

      @@rafayahmed6259 Many reasons, one being a good extension can turn bad one day, but an extension that was bad to begin with will never turn good.

  • @cvl14
    @cvl14 Před měsícem +4

    This just shows how blacklist are ineffective as a security tool

  • @vladislavkaras491
    @vladislavkaras491 Před měsícem

    Thanks for the news!

  • @actng
    @actng Před měsícem +1

    Thanks John you explained that very well

  • @milanvucetic1292
    @milanvucetic1292 Před měsícem +2

    3:55 Not me watching the John Hammond video and getting an ad with John Hammond in it. Some may say it's a 2 for 1.

    • @BillAnt
      @BillAnt Před měsícem

      Taking it up the a** without lube. lol

  • @jabrowski_
    @jabrowski_ Před měsícem

    Interesting shiz John. Liked and subbed, stay safe

  • @cyber_space09
    @cyber_space09 Před měsícem +2

    Wow good job I want more info ❤

  • @acessor9899
    @acessor9899 Před měsícem +16

    This one RCE was indeed fun to use, gotta find more ;)

    • @1hw3
      @1hw3 Před měsícem

      hello vro

    • @Luzum
      @Luzum Před měsícem

      im gonna touch u vro ♥

  • @te-weikaigai1836
    @te-weikaigai1836 Před měsícem +25

    I'm glad that I migrated to Debian + KDE two months ago. I still have my Windows on my drive, but never want to boot it anymore.
    The KDE environment in Linux is just much better than Windows.

    • @HyBlock
      @HyBlock Před měsícem +13

      who asked?

    • @KLR-3
      @KLR-3 Před měsícem +4

      Welcome to the family.🐧

    • @te-weikaigai1836
      @te-weikaigai1836 Před měsícem +7

      @@HyBlock the implication was that I'm not affected by windows RCE anymore.

    • @freerice9595
      @freerice9595 Před měsícem +1

      I've tried making Ubuntu and Linux mint my daily driver many times. Can't do it.
      But for home labbing and running servers it's perfect.

    • @shiiy5131
      @shiiy5131 Před měsícem +2

      it's just so much more superior, once you try it you never go back lol

  • @yessintaktak9200
    @yessintaktak9200 Před měsícem

    Hello john . I am a big fan of your content can you make a roadmaps for us form when need to start 😅❤

  • @TheMAZZTer
    @TheMAZZTer Před měsícem +33

    Oof, this is why blacklists can be problematic, with a whitelist they would not have had this problem.

    • @BaggerPRO
      @BaggerPRO Před měsícem +6

      Except perhaps for the problem of naming this list as "white" 😁

    • @joshallen128
      @joshallen128 Před měsícem +3

      ​@@BaggerPROblock allow lists?

    • @BaggerPRO
      @BaggerPRO Před měsícem +4

      @@joshallen128 , Yeah, it looks like it's fashionable to call these lists that way now :)

    • @BillAnt
      @BillAnt Před měsícem

      A block list is usually shorter than a white list, but it's just a matter of decision.

    • @joshallen128
      @joshallen128 Před měsícem +3

      @@BillAnt Deny list because block sounds like black with an accent

  • @wiertgo
    @wiertgo Před měsícem

    I got an ad from you on this video

  • @kbabe3915
    @kbabe3915 Před měsícem +20

    The scrum meeting: "Yeah, an approve list is too short, let's write out every single extension that could execute code instead of just choosing some image and video formats that we support."

    • @user-hp2dr5qc8p
      @user-hp2dr5qc8p Před měsícem +1

      A whitelist can get annoying tbh.

    • @kbabe3915
      @kbabe3915 Před měsícem +1

      @@user-hp2dr5qc8p Ah yeah, you're right, much more annoying than a 0 day. Also a blacklist had to have been annoying from the very start.

  • @abandoninplace2751
    @abandoninplace2751 Před měsícem +3

    They are identifying files by extension. Nice.

  • @ThisIsJustADrillBit
    @ThisIsJustADrillBit Před měsícem +22

    The fuzzing begins ❤

    • @BillAnt
      @BillAnt Před měsícem +2

      LPL has entered the chat, fuzzing locks are fun. hehe

    • @AuxiliaryPanther
      @AuxiliaryPanther Před měsícem +3

      ​@@BillAnt...we're getting an SQL injection on three, oh it's binding. A little malware on four, and we're set. Going back to three, gained root access to run our query, annd now we're in.

    • @BillAnt
      @BillAnt Před měsícem +1

      ​@@AuxiliaryPanther lol that took like 30 seconds.... not a very secure lock. :D

  • @user-fp7fs9xl2t
    @user-fp7fs9xl2t Před měsícem

    Great Content ...

  • @SchooiYT
    @SchooiYT Před měsícem +1

    Nice Video!

  • @mrfoodarama
    @mrfoodarama Před měsícem

    Oooff... thank you John... cant believe im one of those 0.01% .. slackin

  • @planktonfun1
    @planktonfun1 Před měsícem

    every vulnerability whether or not its trivial, can and will be leveraged

  • @johndeaux8815
    @johndeaux8815 Před měsícem +4

    Hate the red border on the thumbnails, I assume I've already watched and scroll past half the time

  • @hackcode2240
    @hackcode2240 Před měsícem +1

    Amo tus videos

  • @sevuszeld5015
    @sevuszeld5015 Před měsícem +2

    the title of the video is not that nice because i thought it would be a vulnerability that accurs right now.
    anyways.
    Thanks for sharing.

  • @shadflur874
    @shadflur874 Před měsícem

    How do u register for that forum?

  • @runedust9875
    @runedust9875 Před měsícem +23

    Having a whitelist instead of a blacklist would prob. be more secure and reliable. Basic security not?

  • @higurashinerd
    @higurashinerd Před měsícem

    Part of whyI never share diagnostic data with devs.
    It’s so nosey now

  • @ToniMorton
    @ToniMorton Před měsícem +2

    calculator opens in my nightmares.

  • @oncetwice6366
    @oncetwice6366 Před měsícem +2

    Who's idea it was to hardcode bunch of files there. They'll just keep updating it every timea new file type that can execute code comes? Sounds like horrible idea.

  • @anthonymcevans8191
    @anthonymcevans8191 Před měsícem +1

    “It is not by default installed”
    **laughs in Linux**

  • @ShadowManceri
    @ShadowManceri Před měsícem +5

    I find it very bizarre that you can execute a file in the first place. That seems like a bad idea in many ways.

    • @user-hp2dr5qc8p
      @user-hp2dr5qc8p Před měsícem

      How do you suggest to open a .txt file?

    • @ShadowManceri
      @ShadowManceri Před měsícem

      @@user-hp2dr5qc8p .txt file should be read, not executed.

  • @mrhassell
    @mrhassell Před měsícem +3

    Requires Python to be installed in the local path as a global environment variable.

    • @sa1t938
      @sa1t938 Před 14 dny

      it requires the file extension to be registered to the python interpreter, not anything to do with environment variables

  • @Bromon655
    @Bromon655 Před měsícem +1

    3:28 lol. They backed themselves into a corner with that statement.

    • @allxrise
      @allxrise Před měsícem

      They might have been logging something like "There is no any program to open this file-type/mime-type" perhaps? Or they just RCE'd to everyone... Who knows?

    • @Bromon655
      @Bromon655 Před měsícem

      @@allxrise I’m more inclined to believe they were just fabricating a number as an attempt at damage control

  • @PasqualItizzz
    @PasqualItizzz Před měsícem

    Tis the season to find folly, tra la la la la, la la la lol

  • @fokyewtoob8835
    @fokyewtoob8835 Před měsícem

    Music to my ears

  • @paul-olof
    @paul-olof Před měsícem +1

    Haha so specific but I would've been at risk

  • @guilherme5094
    @guilherme5094 Před měsícem

    👍Nice.

  • @zheil9152
    @zheil9152 Před měsícem +2

    1:48 macOS has it installed by default, last I checked at least

    • @dom1310df
      @dom1310df Před měsícem

      Does mac have a similar concept of file extension associations as on windows, so a pyzw file will open with python by default?

    • @chiroyce
      @chiroyce Před měsícem

      Not anymore, used to have Python 2.x

  • @dimike96
    @dimike96 Před měsícem +3

    Surely some communities would have a very high hit rate for python being installed on a windows machine right?

    • @crism8868
      @crism8868 Před měsícem +2

      Yup. All data science and AI nerds.

    • @Bromon655
      @Bromon655 Před měsícem +3

      Anybody even slightly interested in programming has a decent chance of having it installed on their computer. I refuse to believe less than 0.01% of users were affected.

    • @paulwesley3862
      @paulwesley3862 Před měsícem

      ​@@Bromon655a) is the 6th most downloaded app - is your grandma programming?
      b) die this you must use it on your PC. how many people just have it on their phone?

  • @kuperrr6776
    @kuperrr6776 Před 16 dny

    Hey how can i get an xss is account? i tried and always the same when i create an account "Your account has been declined."

  • @sophisticatedserpent1512
    @sophisticatedserpent1512 Před měsícem +7

    The red bars in the thumbnail made me think I already watched this video.

  • @reijin999
    @reijin999 Před měsícem

    yeah but it updates every hour so it's chill

  • @kipchickensout
    @kipchickensout Před 24 dny

    "Google Photos would like to make Phone calls"

  • @Javv1721
    @Javv1721 Před měsícem +1

    Me as python developer and windows user💀

  • @commanderpaladin
    @commanderpaladin Před měsícem +12

    I like cats. Btw we can all be farmers. No tech no rce problems 😎

  • @r35p3ct00
    @r35p3ct00 Před měsícem +2

    Такое чувство, что на безопасность всем насрать, только ты можешь себя обезопасить, не кликая на всякое говно

    • @RebziSquad
      @RebziSquad Před měsícem

      Если человек наивный, то его никакая защита не спасет) Однажды мой знакомый запустил подозрительный tampermonkey скрипт в дискорде, говорит "2FA стоит же, чего бояться?". В конечном итоге украли его токен и смогли получить доступ к аккаунту.

  • @Mat2095
    @Mat2095 Před měsícem

    But, isn't pyzw supposed to be a zip-archive? That contains a __main__.py? I'm actually surprised this runs at all.

  • @momentum9319
    @momentum9319 Před měsícem

    what is "flair"

  • @Pem7
    @Pem7 Před měsícem +1

    2024 is on fire with RCEs🤞🏾

  • @legendarycuber9205
    @legendarycuber9205 Před měsícem

    I got a SYNK ad with John right before the video and was confused why there was a skip button 😂

  • @DoingFedTime
    @DoingFedTime Před měsícem

    Bad stuff for many. One of the reasons I always tell people to NOT use this medium.

  • @BreadGuy0
    @BreadGuy0 Před měsícem

    Everybody be acting gangsta until calculator auto launches

  • @BU5TER288
    @BU5TER288 Před měsícem

    oh no.. now i feel so dirty i cant wash it off

  • @aaronguerrero2003
    @aaronguerrero2003 Před měsícem

    There is always a way in😉

  • @benherbst3620
    @benherbst3620 Před měsícem +1

    CRAZY

  • @StealthSec-BugBounty
    @StealthSec-BugBounty Před měsícem

    Ohh no

  • @manasmahanand732
    @manasmahanand732 Před měsícem

    With a bit of social engineering this could have been pretty terrible

  • @Axodus
    @Axodus Před měsícem +1

    Good, they banned my account for no reason.

  • @kingoftheorient
    @kingoftheorient Před měsícem

    A lot of noodles will be leaked for sure.

  • @EnitinEnitin
    @EnitinEnitin Před 11 dny

    This is why you should use whitelists instead of blacklists.

  • @user-fe5mz9mq5o
    @user-fe5mz9mq5o Před měsícem

    i found this exploit 2 years ago... never posted anything about it

  • @FRITTY12348546
    @FRITTY12348546 Před měsícem

    But was it a typo :D

  • @lunaxquinn
    @lunaxquinn Před měsícem

    Linux users are way more likely to have python installed out of the box so i wouldn't call this a "very specific" exploit.

  • @impostorsyndrome1350
    @impostorsyndrome1350 Před měsícem

    I have Python installed on Windows computer... It helps with learning Python programming, idk why people are so against it.

    • @zombi1034
      @zombi1034 Před měsícem +1

      Yea, not sure why he made it seem like something extremely unusual. I think most people that do any kind of programming and use Windows will have python installed.

    • @Slada1
      @Slada1 Před měsícem

      Why would you learn python if you could not use it? :D

    • @impostorsyndrome1350
      @impostorsyndrome1350 Před měsícem

      @@Slada1 wdym not use it? You can use it to create various programs.

  • @rigsshiver823
    @rigsshiver823 Před měsícem +1

    tf is going on .. rce 💀

  • @LibraryOFSounds
    @LibraryOFSounds Před měsícem

    Yeah uae does not like private messaging.

    • @rafayahmed6259
      @rafayahmed6259 Před měsícem

      😅😅

    • @LibraryOFSounds
      @LibraryOFSounds Před měsícem

      @@rafayahmed6259 Do you know uae connection with then twitter ? Or the documentary about state hackers of usa training uae agents.
      That documentary is so interesting

  • @maktiki
    @maktiki Před měsícem

    I think the problem is Windows. It runs everything too fast without permission.

  • @furrygem5176
    @furrygem5176 Před měsícem +1

    "Certified rce moment" 💀

  • @user-mc8xt1iq7c
    @user-mc8xt1iq7c Před měsícem

    bro, youtube just showed me your ad, on your own video. theyre wasting your ad money

  • @IlIlIIlIlIlIlIlIl
    @IlIlIIlIlIlIlIlIl Před měsícem

    Good thing I run it in a vm on a vps

    • @Luzum
      @Luzum Před měsícem

      vm escape + pyzw = your vps gets owned

  • @ZaberfangX
    @ZaberfangX Před měsícem

    Is it safer just makes a user that is not admin user? So if code ran its needs admin user right as default user windows always user are admin?

  • @jamesciastko8861
    @jamesciastko8861 Před měsícem

    What is happening lately? 💀💀

  • @SimplyGamer605
    @SimplyGamer605 Před měsícem

    Hey, nice video, but just one thing. Your audio and video dosent seem to be perfectly in sync and its getting on my nerves

  • @kipchickensout
    @kipchickensout Před 24 dny

    python on windows, not that unnatural

  • @rodricbr
    @rodricbr Před měsícem

    this is such an interesting rce tho... lol

  • @definitelyno
    @definitelyno Před měsícem

    You can add an extra dot at the end. Windows -> Run -> 'calc.exe.' -> Enter opens calc. Does that work to bypass.

  • @KLR-3
    @KLR-3 Před měsícem +9

    Why do they blacklist file types they believe are unsafe. They should be whitelisting filetypes that are safe. If some new software comes along that belongs in the unsafe catagory they have to know about the related filetype and then add it to the blacklist...

    • @wafinashwan8242
      @wafinashwan8242 Před měsícem

      whitelist would take too long.

    • @erroroliver
      @erroroliver Před měsícem

      ​@@wafinashwan8242got any quote from a developer?

    • @johnsmith34
      @johnsmith34 Před měsícem +1

      "Reimplemeent file open confirmations" has a noWarning list, so I think that's done now.

    • @KLR-3
      @KLR-3 Před měsícem

      ​@@wafinashwan8242how so?

    • @johndoublew3060
      @johndoublew3060 Před měsícem

      @@wafinashwan8242 how come

  • @Aghnanster
    @Aghnanster Před měsícem

    Ive heard this is on discord also

    • @Luzum
      @Luzum Před měsícem

      it is not

  • @DavidFrankland
    @DavidFrankland Před měsícem

    echo y | format c:

  • @robotron1236
    @robotron1236 Před měsícem +4

    You should watch Telegrams owners interview with Tucker Carlson. They have like 30 employees and have never spent a dime on advertising. 😂

  • @christoferrian
    @christoferrian Před měsícem

    hello world

  • @YouTubeName-hw1uk
    @YouTubeName-hw1uk Před měsícem

    Anf i thought wiiu wansthe only thing that has rce 😂

  • @dkizilkaya6839
    @dkizilkaya6839 Před měsícem

    This was surely done by purpose. Believe me not.

  • @TheAwillz
    @TheAwillz Před měsícem

    Sometimes you guys are very clever with tech but not so clever with people…

  • @oracuda
    @oracuda Před měsícem

    how do RCEs still exist in 2024 bro 😭😭😭😭😭

    • @crlfff
      @crlfff Před měsícem

      They are found in everything

  • @Reelix
    @Reelix Před měsícem

    "Windows that has python installed" you claim is extremely odd.
    That... Is an extremely odd statement.

  • @ibrahimdevx
    @ibrahimdevx Před měsícem +1

    Less then 0.01%.... yeah idk why im having a hard time believing that 😂 its not that uncommon to have Python installed on ur system

  • @couldntgivafuk
    @couldntgivafuk Před měsícem +7

    I've never liked the idea of "allow" and "deny" list... just deny all and allow the user to specify.

  • @adenosinetp10
    @adenosinetp10 Před měsícem

    can you stop using the word "stupid" so frequently and often?

  • @luizzeroxis
    @luizzeroxis Před měsícem +2

    How is this RCE? It's just running the code that someone sent to you. There's no difference between that and opening an exe.

  • @imranapervez1886
    @imranapervez1886 Před měsícem

    😊

  • @Gawesh_Bro
    @Gawesh_Bro Před měsícem

    Code please