Insane iPhone Exploit & Zombie Cookies Hijack Google Accounts - ThreatWire

Sdílet
Vložit
  • čas přidán 30. 06. 2024
  • ⬇️ OPEN FOR LINKS TO ARTICLES TO LEARN MORE ⬇️
    Support ThreatWire → / threatwire
    @endingwithali →
    Twitch: / endingwithali
    Twitter: / endingwithali
    Everywhere else: links.ali.dev
    If you want to help Ali with her research project email her at endingwithaliresearch@gmail.com
    → Please include (1️⃣) the size of your company (2️⃣) what your role title is and (3️⃣) a little summary of what your job entails.
    [❗] ThreatWire Patreon has moved to → / threatwire
    00:00 Intro
    0:00 - Intro
    0:12 - Insane iPhone Exploit Revealed to the World
    1:42 - Zombie Cookies Hijack Google Accounts
    2:51 - Outro
    LINKS
    🔗 Story 1: Insane iPhone Exploit Revealed to the World
    arstechnica.com/security/2023...
    securelist.com/operation-tria...
    • Operation Triangulatio...
    🔗 Story 2: Zombie Cookies Hijack Google Accounts
    www.cloudsek.com/blog/comprom...
    www.hackread.com/malware-goog...
    www.bleepingcomputer.com/news...
    darktrace.com/blog/the-rise-o...
    • Hacker demonstrates Go...
    ____________________________________________
    Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community - where all hackers belong.
  • Věda a technologie

Komentáře • 158

  • @screamengine
    @screamengine Před 5 měsíci +40

    Phones are going to become more work than they are worth. As long as there are legal back doors there will be serious threats.

    • @MsHojat
      @MsHojat Před 5 měsíci +2

      Depends on the phone and a person's knowledge and caution. iPhones are a monoculture so there's no surprise that problems arise with it. Using a secure device like a Pixel with GrapheneOS makes for a highly secure and private system which may not have the best compatibility, but still is worth more than the bit of work to set up and use for those who care about security or privacy. Plus for those who also care about money DivestOS supports a lot of older devices quite well.

  • @mcraem77
    @mcraem77 Před 5 měsíci +2

    congrats on the books :) thanks for the update been wondering

  • @dreadedmonkey94
    @dreadedmonkey94 Před 5 měsíci +25

    Great work Ali. You're fitting in well! :)

    • @sardarasif1858
      @sardarasif1858 Před 5 měsíci

      She's good but what happen to Shannon ?

    • @alexmisko8780
      @alexmisko8780 Před 5 měsíci

      ​@@sardarasif1858 Shannon said, that she is "leaves the project " because at first - is health. So if u wana see Shannon - welcome to @ShannonMorse channel.

    • @electricsheep2305
      @electricsheep2305 Před 5 měsíci

      she retired@@sardarasif1858

    • @RAM_845
      @RAM_845 Před 5 měsíci

      @@sardarasif1858 Shannon has her own channel

    • @danielisaac7586
      @danielisaac7586 Před 5 měsíci

      Why did hak5 hire a valley girl influencer to do the show?

  • @DeynatheTaggerung
    @DeynatheTaggerung Před 5 měsíci +1

    Nice work! Just remember to relax cause you're doing great!

  • @orbitaljellyfish808
    @orbitaljellyfish808 Před 5 měsíci

    Great video thanks 👏👏

  • @mematron
    @mematron Před 5 měsíci +2

    I was able to create and complete an interactive illustration in the form of an commercial application. Ten thousand lines of code, animations, music, and hundreds of illustrations were made into something that's meant to redefine how we experience art. It's the fusion of art and science in an original way.

  • @dallaskappel1
    @dallaskappel1 Před 5 měsíci +9

    So basically everyone who has a phone now days has been hacked. Guaranteed the three lettered agencies are using this exploit with ease. And more. No doubt in my mind.

  • @vizualyse
    @vizualyse Před 5 měsíci +10

    Finally the not-so-short version XD

  • @Ricci0492
    @Ricci0492 Před 5 měsíci

    I achieved to do bugger all new years and loved it! Good work Ali

  • @tech1238
    @tech1238 Před 5 měsíci +1

    Good vid thanks

  • @TheRabidTech
    @TheRabidTech Před 5 měsíci +13

    ever since Ali started doing threatwire all the threats she's reported on directly affect me........I feel threatened

  • @ntegr8
    @ntegr8 Před 5 měsíci

    triangulation has been around since 2019, kaspersky detected this long ago, if you cannot update your iphone u may have it, delete all your imessages, deactivate your connectivity services, hard shutdown your phone, and update your phone, triangulation is removed upon reboot.

  • @mitchcoin7700
    @mitchcoin7700 Před 5 měsíci +1

    thank u

  • @ProblematicParag0n
    @ProblematicParag0n Před 5 měsíci +2

    My New Year’s resolution is quite simple this year. It’s 4k

  • @CurtHendzell
    @CurtHendzell Před 5 měsíci

    57 Books: nice. Well done. Trying to get my number up too.

  • @fatveganliberator
    @fatveganliberator Před 5 měsíci

    Hey Ali, I hope you're doing okay and I also hope you don't mind me giving some feedback.
    First of all I want to say that I really appreciated the information in the video, although one thing that did take me away from the news itself was the... I want to say timbre, but that's not right.
    But the fact that at times it was clear you were reading from a prompter, which is perfectly fine to do, but it didn't feel natural if that makes sense.
    One thing I'd like to make clear is what I'm saying here may even be relevant as the pauses that feel slightly too long will likely vanish, especially as your experience reading from a prompter improves.
    One final thing that might also be able to be improved (depending on your audience may not be needed) would be to add a brief explainer to why RCE is such a bad thing, or what Root access is. This is something you may not be able to do yourself if there's other people helping to write the shows, but even a small 1/2 sentence explainer in line with the attack being talked about could be beneficial for anyone new to the show or not as technically minded as many who do watch.
    Now, as mentioned the last point I made may not even be needed or may be deemed unnecessary due to there being very little or no one in the audience who needs or wants that. Although, doing so could broaden the audience if the algorithm shows the video to someone new.
    P.S Thank you once again for everything you and the team are doing.

  • @mikebusse6787
    @mikebusse6787 Před 5 měsíci +1

    cancer was my fight for 2023

  • @WilliamHaisch
    @WilliamHaisch Před 5 měsíci +2

    Congratulations on reading 56 books last year! I think I own 56 books. _Someday there will be enough time to read them… someday… someday…_ 😂

  • @mb00001
    @mb00001 Před 5 měsíci

    the Google account exploit, do they need data from the users session so that they can in or have they exploited the underlying framework and can get into any account they choose?

    • @SirNoLifer
      @SirNoLifer Před 5 měsíci +2

      That's a good question, I assumed zombie cookies ment like when I agreed to cookies on a website of random choosing that the zombified passwords may remain on those site to be added to a query. I must do some digging and if you find anything out please respond with a link or some information, any body.

  • @ssgtlaatz
    @ssgtlaatz Před 5 měsíci +1

    My new year's resolution is the same as always, 1920 x 1080.

  • @Emulation_Inflation
    @Emulation_Inflation Před 5 měsíci

    Got it! 👹

  • @OhBoy-zy5bc
    @OhBoy-zy5bc Před 5 měsíci

    I got out of prison without picking up a felony while I was locked up.

  • @danielognevchuk2375
    @danielognevchuk2375 Před 3 měsíci

    With all these exploits, when can we get jailbreak?

  • @blackbarry45
    @blackbarry45 Před 5 měsíci

    no worries, iOS 16.2 was released in Dec 13rd 2022 so you would have to have 1 yr old iOS

  • @bloodblitzowns11
    @bloodblitzowns11 Před 5 měsíci +2

    Can someone just shed some light. She said it was a zero interaction exploit, but would i not have to click the pdf on imessage? Or is just me receiving it in imessage is all it takes?

    • @GooogleGoglee
      @GooogleGoglee Před 5 měsíci +6

      As long as your device receives that file. No interaction.

    • @bloodblitzowns11
      @bloodblitzowns11 Před 5 měsíci

      @@GooogleGoglee wow

    • @maximillian666
      @maximillian666 Před 5 měsíci +2

      Just receiving it and it’s too late

    • @endingwithali
      @endingwithali Před 5 měsíci +4

      if you receive a pdf its too late, however apple has patched these potential holes in the latest versions of ios so if youre up to date youll be ok!

    • @cpuuk
      @cpuuk Před 5 měsíci +1

      pdf, the gift that keeps on giving... to hackers.

  • @Secret-Robot
    @Secret-Robot Před 5 měsíci +4

    A guess a good new year resolution would be: Not to take back my ex, who abandoned me and caused a lot of pain. She tried calling me today...

  • @eduellery
    @eduellery Před 5 měsíci +1

    Resolution: run every day this year. Every single day.

    • @endingwithali
      @endingwithali Před 5 měsíci +2

      omg! thats amazing! Good luck!

    • @-FAFO-
      @-FAFO- Před 5 měsíci +1

      Did this last year and feel amazing now, good luck my man

  • @NickDoddTV
    @NickDoddTV Před 5 měsíci +7

    Yay for early year Ali updates!

  • @imark7777777
    @imark7777777 Před 5 měsíci

    to Always have a contract and have a new beginning in 2024.
    during the 2022-2023 I was at working every darn day! And still managing to watch videos and then falling asleep. Seriously though contracts have them! Was hired to do this guys events and computer work, turned into a two-story edition construction project and I was there every day of the week. He was finding me at my other job/volunteer work on Sunday and asking me to come over where me and the other guy who worked for him would watch him break some thing and get paid. Then he would complain how much he had to pay, then the one guy left and we had a big speech about you don't just leave let's talk about things but then when I said I needed Fridays off for a while I ended up picking up more hours on Thursday and getting manipulated every Thursday for not being there on Friday. What I have my own business to attend to and not just work for you as an employee while getting paid as a contractor. CZcams was a haven because that was the only thing I could do.

  • @BlackLabelExpat
    @BlackLabelExpat Před 5 měsíci

    listen to audio books at 2x speed. Save yourself even more time

  • @kakishare9237
    @kakishare9237 Před 5 měsíci +1

    Wow

  • @manojkbfx
    @manojkbfx Před 5 měsíci

    The last 3 seconds!

  • @edwardfletcher7790
    @edwardfletcher7790 Před 5 měsíci +1

    Please send this woman back to Sesame street.....Urrrgghh.

  • @microsuxx
    @microsuxx Před 5 měsíci

    23 .. didnt go under
    new year : .. what ?

  • @repairstudio4940
    @repairstudio4940 Před 5 měsíci

    Ali 💎 for President 2024! 🇺🇲
    Hak5 approves this message 😎👍🏻

  • @Haze8277
    @Haze8277 Před 5 měsíci

    Should add some background audio to the intro..seems awkward without it..

  • @michaelhenze877
    @michaelhenze877 Před 5 měsíci +5

    Ali looked like she was holding back tears. Hoping everything is OK, and thanks for the security updates.

  • @bangdollarsign
    @bangdollarsign Před 5 měsíci

    haha holes in security _and_ a walled garden app store?

  • @GabrielJamesMusic
    @GabrielJamesMusic Před 5 měsíci +1

    I completed 28% of my bachelors degree in less than 10 months. These videos help me learn more about the field I’ll be entering this year

  • @glockmatics
    @glockmatics Před 5 měsíci +7

    Thanks Ali! Love the thumbnail! 🤘

    • @endingwithali
      @endingwithali Před 5 měsíci

      hahahahaha we're a/b testing some. which did you see :P

  • @lewcehjitl3282
    @lewcehjitl3282 Před 5 měsíci

    Babyyyy

  • @AnkitGupta-qz4ds
    @AnkitGupta-qz4ds Před 5 měsíci

    What's is link ? In discription

  • @Proxyone444
    @Proxyone444 Před 5 měsíci

  • @user-uz4ti5zs8z
    @user-uz4ti5zs8z Před 5 měsíci

    Helvetica Font? yeeey yay or nenen neh?

  • @technva3013
    @technva3013 Před 5 měsíci +1

    Woot Woot - 2024 :)

  • @Lordblanca
    @Lordblanca Před 5 měsíci +5

    What happened to Shannon 😢

  • @markr6141
    @markr6141 Před 5 měsíci +8

    Anyone else feels like she’s just reading a script and doesn’t get any of this? I miss Shannon…

    • @sanantohomie
      @sanantohomie Před 5 měsíci +3

      I think you be smoking something; Ali been in "the scene" for more than 3+ years that I know of and is 100 percent legit and can hold her own. She well on her way to 31337 K-Rad status and is well respected in the deepest depths of the underground. Get learned, dude

  • @user-dr5kb6fj3p
    @user-dr5kb6fj3p Před 5 měsíci

    KARMA ?? IYKYK

  • @RAM_845
    @RAM_845 Před 5 měsíci

    So much for safe and secure Apple phones huh?

  • @Diprotic
    @Diprotic Před 5 měsíci

    this shannon morse is TERRIBLE

  • @BD90..
    @BD90.. Před 5 měsíci +5

    Cookies are cancer

  • @_koronkowy
    @_koronkowy Před 5 měsíci +5

    Another great ThreatWire with Ali

  • @tntomega
    @tntomega Před 5 měsíci

    At medaberet ivrit ?

  • @ManyiMukama
    @ManyiMukama Před 5 měsíci +1

    ❤😂😂😂❤

  • @filipbarneman4510
    @filipbarneman4510 Před 5 měsíci +4

    Why re-upload?

    • @endingwithali
      @endingwithali Před 5 měsíci

      wrong file got uploaded, so we took it down really fast - we're still just humans on the other side of the computer, so we make mistakes sometimes. thanks for understanding

    • @intargc
      @intargc Před 5 měsíci

      Sounds like something a robot would say to trick us…

  • @claussanta2341
    @claussanta2341 Před 5 měsíci +4

    Proud of still being alive.

  • @SirNoLifer
    @SirNoLifer Před 5 měsíci +5

    Ali, I have to say this episode was very well done. I have to say the fashion the iPhone vulnerability was explained was pitch perfect in my opinion to Shannon. I only stated her name because others did and as a fan that has watched this show every week on andoff for a while I must say, you got the form down. In the event a Hak5 team member reads this my new years resolution is to make more resolutions, meaning to do what I can to live many more years thus making me make more resolutions. But this episode altho short got the form down in my opinion at least for the iPhone presentation.

    • @endingwithali
      @endingwithali Před 5 měsíci +1

      thank you so much for the feedback. TBH i feel like i could have gone more in depth. i wanted to give more detail about the iphone hack and really sit down to understand it but i was running on fumes writing this threatwire so processing was pretty low hahaha
      health is wealth! good luck on all your resolutions!

    • @SirNoLifer
      @SirNoLifer Před 5 měsíci

      Yeah, for this specific show you did prefect in terms of amount of information on the iPhone segment. That form for any topics of segments is the original form. The Google one seemed quick but was indepth on the parts you talked about. I bet your busy and I have very little knowledge of must of what you do outside of this show but you got it down in terms of the form on this one. I bet some people maybe interested in a little longer show like 3 to 5 segments but the technical language is the most important piece to most of the older viewers in my opinion based off the few comments I read on the posts. I subscribed to your main channel now, should have when you and kitchen did the live feed. I only give the feedback assuming you want feedback geared towards making the show more like how it was. We know your a the new show rep some will never be happy about that but once you get the majority to the Darkside you can do your own twist to it. At last that's the game plan I would use as approach. Not trying to give of the impression of being critical personally I'm just glad Hak5 Is still trying to do something over here on CZcams especially this show as I do not know any of the behind the scenes.

  • @katie.d0905
    @katie.d0905 Před 5 měsíci

    :3

  • @willstikken5619
    @willstikken5619 Před 5 měsíci +106

    I've started to realize how good Shannon really was at this. Ali is fine and may grow into the role but ThreatWire has taken on a decidedly "geared toward 12 year old boys" vibe.

    • @schassis_eddi
      @schassis_eddi Před 5 měsíci +12

      I feel like she doesn’t cover a lot of important news worthy headlines 😢

    • @willstikken5619
      @willstikken5619 Před 5 měsíci +14

      @@schassis_eddi My issue is less with the content than the presentation. I'm trying to give Ali a fair chance but her speech pattern can be difficult to follow and what I hope is artificial perkiness attempting to come across as charisma is off putting and makes me less inclined to watch these videos.

    • @PoRkch0p523
      @PoRkch0p523 Před 5 měsíci +25

      Dang quit raggin on her, there's room for growth and it is NOT that bad

    • @willstikken5619
      @willstikken5619 Před 5 měsíci +12

      @@PoRkch0p523 You must be one of those 12 year olds from the target audience. No one is 'raggin' on her but the fact that you had to qualify for your remark with 'it is NOT that bad' just goes to reinforce my point.
      For what it is worth I disagree with you, it IS that bad. I don't want her to fail but I would really like to see any signs of improvement. As it is she keeps slipping further into the "don't bother watching" category.
      Ali doesn't come across like she is displaying the personality of a real human. At least not one anyone wants to spend any time around. She needs to relax, be genuine and start acting as if she actually gets the content she is presenting rather than seeming like she's only here because her only fans didn't take off.

    • @omarakhtar3075
      @omarakhtar3075 Před 5 měsíci +13

      Threatwire used to be my favourite source of hacking news, and since Shannon left I've been searching for a replacement. The presentation skills and technical side of things are getting better, but dang nammit, this is an almost 1 million subscriber channel, they shouldn't be scraping the bottom of the barrel.
      Golly gosh darn it I'm also gonna put it out there that of the 50 ish channels i'm subscribed to this new presenter is one of my least favourite. I can't imagine 12 year old simps are going to be watching this channel so i really wish the people in charge would stop thinking with their dumb-sticks and get a reality check with their next cup of coffee

  • @bluntdocto2571
    @bluntdocto2571 Před 5 měsíci +2

    What happen to the last girl with the rainbow hair?

  • @David_998
    @David_998 Před 5 měsíci +1

    Thank you so much for the info beautiful 😍

    • @volvo09
      @volvo09 Před 5 měsíci +1

      Anytime sweetie 😙

  • @Phrackerylabs
    @Phrackerylabs Před 5 měsíci +7

    Getting better girly

  • @aryankulkarni8610
    @aryankulkarni8610 Před 5 měsíci

    First?

  • @hdammotowa9695
    @hdammotowa9695 Před 5 měsíci +1

    I like your dimples

  • @obscure2854
    @obscure2854 Před 5 měsíci

    We need a new host. :(

  • @camelotenglishtuition6394
    @camelotenglishtuition6394 Před 5 měsíci +3

    I just can't listen to presenters with severe vocal fry. Male or female. It's just this new trend, and i hope 2024 sees the end of it.

    • @InfluentialStudios
      @InfluentialStudios Před 5 měsíci +3

      Great thing about the iternet is you don't need to watch it. Go somewhere else and don't comment next time.

    • @saucymoon7134
      @saucymoon7134 Před 5 měsíci +2

      oops! your channel doesn't have any content. Please post your voice so we can critique your it.

    • @camelotenglishtuition6394
      @camelotenglishtuition6394 Před 5 měsíci

      Freedom of speech captain White knight ​@@InfluentialStudios

  • @tylerg6241
    @tylerg6241 Před 5 měsíci +3

    Get a new host I can't stand listening to this girl

    • @InfluentialStudios
      @InfluentialStudios Před 5 měsíci +4

      You need to chill. Go touch some grass and get some fresh air.

    • @-FAFO-
      @-FAFO- Před 5 měsíci

      Then stfu and go do all this research yourself. She's new and probably nervous as hell.