The Malware that hacked Linus Tech Tips

The Malware that hacked Linus Tech Tips

The PC Security Channel

1 год назад

1,536,374 Просмотров

Ссылки и html тэги не поддерживаются


Комментарии:

shashidhar reddy
shashidhar reddy - 24.09.2023 06:39

some companies don't allow the download of pdfs from emails in office PCs. Only option is to open in preview mode, click on print and save as pdf.

Ответить
HuntertheWolf
HuntertheWolf - 18.09.2023 11:41

wouldint it be smart to have a file virtualiser like binvis to see if theres a black void for any file you dont fully trust

Ответить
Pushing Arduino To The Limit.
Pushing Arduino To The Limit. - 07.09.2023 06:01

pdf viruses are scary. i was looking for a datasheet on a binary counter and while trying to see the datasheet the virus got downloaded. i tried to cansel but it ran a cmd and my computer was fcked. not my harddrive, my entire computer. i deleated everything and tried to reinstall windows but it was still there, changed to a compleately different hard drive but it was still there.

Ответить
alex xmb ratchev
alex xmb ratchev - 01.09.2023 08:14

thx , ++

Ответить
Yasir
Yasir - 31.08.2023 12:29

Wht security softwares & extensions do u use personally

Ответить
N/A
N/A - 30.08.2023 20:59

Protip, always have file extensions on.

Ответить
Shogun
Shogun - 28.08.2023 23:40

I don't want anyone to get hacked.
Except LTT. Linus is a scumbag.

Ответить
Mazurovec
Mazurovec - 25.08.2023 16:12

Wth, why there are like 4 of the fake emails made with a Czech mail service, like eh?? I'm from the czechia and it confuses me like crazy.

Ответить
Reubenツ
Reubenツ - 24.08.2023 15:09

Turns out malware wasn't needed for the downfall of this channel... (LTT)

Ответить
Azillia
Azillia - 24.08.2023 06:34

This is why i never select "remember me" on my computer

Just write down your passwords and emails down on paper, and if you need to log in, just do it manually

Also, if you want to be even more safe, just get a second computer

It could be a crumby laptop even

Or, you can use a virtual machine

So if you ever run into a sponsor email and you arent sure about if its legit

Use that other backup pc incase

Also, make sure your info isnt saved on it as well

Ответить
Fukik
Fukik - 22.08.2023 23:30

Why are theyr domain in czech?

Ответить
Michael Placzek
Michael Placzek - 21.08.2023 22:43

I know Windows can see full filenames, but I know it's disabled by default. Why on earth is it disabled!?

Ответить
iSamYT Backup
iSamYT Backup - 21.08.2023 04:10

i hoe it happens again after all the stuff happened

Ответить
ika
ika - 18.08.2023 06:47

this is why you dont use windows

Ответить
danny abouassaf
danny abouassaf - 17.08.2023 18:28

it will basically be a .save file stealer that is why u never install anything on ur pc or phone with unknown personell

Ответить
Haxx
Haxx - 11.08.2023 22:02

I think the same thing also happened to "Blenderguru" channel

Ответить
Biya Pore
Biya Pore - 11.08.2023 07:00

офигенный ролик

Ответить
ChatGPT
ChatGPT - 11.08.2023 00:33

Your videos are security education. Fully fledged bytes of security education that are dispersed, unorganized by topic. Just glad you exist bro

Ответить
Chase Jones
Chase Jones - 10.08.2023 22:29

Hiding file extensions is a very dumb default setting.

Ответить
EdgyTurd
EdgyTurd - 10.08.2023 02:08

What would happen if this PDF was opened on MacOS? Would it still work?

Ответить
Future Trunks
Future Trunks - 09.08.2023 22:11

I got a trojan by only drive by dow load not even exe file

Ответить
Lockee
Lockee - 09.08.2023 13:36

so tech related yet hires normies that click on this shit lmao

Ответить
Trooper
Trooper - 08.08.2023 22:19

In retrospect, my question is, why did the marketing person even need any form of channel access? Like you said, only senior level members of staff should have access. What reason someone who deals with marketing email would need any form of access to a channel with 15 million subs is beyond me.

Ответить
Bang Bang Bang
Bang Bang Bang - 08.08.2023 05:41

"not a lot of people may know...." and that's the problem. Not enough people know the basics and have jumped onto the Internet head first

Ответить
Bruno b.
Bruno b. - 07.08.2023 22:15

We need a resident shield that would deactivates all click process on the system level, untill the destination of the click or the execution had been tested to grant the execution won't cause any harm on the device. The first one who creates a program that does it. This guy will get rich as fuck

Ответить
Aung Thu Hein
Aung Thu Hein - 07.08.2023 17:34

You barely talked about it. Two websites? That's it? There's barely any actual, useful advice in this.

Ответить
James Avison
James Avison - 07.08.2023 16:17

does all of this stuff happen on MacOS ?

Ответить
Cody
Cody - 07.08.2023 09:33

What if you only browsed email on a VM? no web logins of any kind on the VM, just email. it wouldnt be possible for the malware to access data on the host machine

Ответить
Wassim
Wassim - 06.08.2023 22:30

fake

Ответить
Juli
Juli - 05.08.2023 11:22

you can literally rename a .exe to .src and it'll work

Ответить
--
-- - 04.08.2023 01:36

Lmao only an idiot would fall for a password protected zip archive 😂😂😂😂😂

Ответить
z0rr0
z0rr0 - 01.08.2023 13:15

You are looking for 100+ offers per day. Will you check all those attachments? I think they will now :D

Ответить
Nickwilde7755
Nickwilde7755 - 24.07.2023 18:42

I gotta be honest, I knew the trick was going to be in the extension but it didnt click for me that the videos was missing, I was looking for rcs or exe in the title

Ответить
James Neal
James Neal - 24.07.2023 16:21

For years the first thing I do when setting up a PC or re-imaging or restoring one, the first thing I do is to enable file extensions. And I agree with everyone that this and show hidden files should be enabled by default.

Ответить
Point Vector
Point Vector - 21.07.2023 22:01

Right away. "Big companies sometimes hire outside PR firms." That right there. If a PR firm can't figure out how to do their job right, by having the domain names match, that's gonna be a no go for me dawg. They should be forced to learn like everybody else. Another reason why that's stupid, is LTT is big enough not to need some BS sponsor, outsourced to some bs firm that can't figure out basic security measures. They should be held to the same standard as everyone else, and if they can't figure it out, let them die. Also, the marketing executive excuse is exactly that, an excuse. Why aren't marketing execs held to the same compusec as everyone else. SECURITY is everyone's responsibility. Fired...because you can't pay attention in compusec classes.

Ответить
nem tudom
nem tudom - 21.07.2023 02:17

I always have extensions on, so a .pdf.scr would immediately tip me off

Then again, im a power user who's not going to fall for low effort crap like this. Im only here for fun, plus the information on how they try to get into peoples accounts

Ответить
Julian King
Julian King - 11.07.2023 21:28

Oh come on! Not even forty seconds in, the email from G FUEL. Really? No red flags at, "we are sells energy drinks", or "if you are wondering in our offer". I am being wondering how bud must be English for alarming bells to be ringing?

Ответить
Vilmos Winkler
Vilmos Winkler - 11.07.2023 16:01

isn't there an automated process in any antimalware for deletimg the empty space in files?

Ответить
Shiv
Shiv - 10.07.2023 13:34

if this has happened what do you do to prevent it?

Ответить
inRisusVeritas
inRisusVeritas - 06.07.2023 13:05

why not scan any attachment before opening it? laziness?
(maybe use a different computer (and OS) only for emails and nothing else in his case)

Ответить
Tony Farley
Tony Farley - 04.07.2023 21:12

Are you building software on a unstable production floor or design a new products on a unstable production floor that comes from outside forces that sell to you

Ответить
Tony Farley
Tony Farley - 04.07.2023 21:11

Don't forget to ask the question was I hacked before I even produced the hardware

Ответить
John Smith
John Smith - 03.07.2023 03:27

You must have file extensions disabled. I would've never fell for something this stupid. File extensions should always be turned on, as all of my pc setups have this feature on. The problem is you have to manually toggle file extensions on, it's not default out of the box for windows.

Ответить
Sean Singh
Sean Singh - 01.07.2023 04:33

Thats why if I HAVE to use Windows, I disable file/script execution after installing all my apps and then maintain a Whitelist/Blacklist. Its a headache but then I dont have to be anxious all the time while using Windows. no such issues on my Mac or BSD desktop

Ответить
Sultan
Sultan - 29.06.2023 21:59

I don’t know anything about scr files but I assume it’s just an executable file. How can Windows allow an executable to read files and folders of another executable? That is the real issue. The "remember me" feature in most login pages just tell the browser to store the cookie even after the browser is closed by including an expiration date on the cookie key=value pair by the website to the browser. If no expiration date is set on the cookie key=value pair then the browser will delete it automatically after the tab is closed or the browser itself is closed. Also I know chrome has a cookie file per chrome profile and encrypts the cookie file on disk. Is Windows really that bad or did the infected machine have insecure configs? I'm not satisfied by the answer most people give.

Ответить
Shavershian
Shavershian - 28.06.2023 17:49

Just got hit by this. Got a client i had talked with for a while. He sent me a file with their marketing plan, zip file with two files inside. One of them a video, another an exe. Now i now this was stupid af, however i ran the exe since i couldn't see the extension(the name was too long), it had a word logo, and i didn't think anything about it. It ran some kind of batch file, and now i had a folder inside my %temp% with every of my password, session cookie, screenshot of pc and system information. I cleared everything in my browser, reset every password and then ran the "Tron Script". Fk this was a sofisticated piece of malware and a good social engineer behind it. Do you guys think im safe now?

Ответить
Conserpov
Conserpov - 26.06.2023 21:29

Why would anyone who's not a complete noob use Explorer as a file manager at all, let alone with hidden extensions?

Ответить
Gamer2000
Gamer2000 - 26.06.2023 20:07

so does that mean that if I had redline on my pc for over 1-2 years all of my passwords were stolen? Does it only steal browser info? Or does it go for several things? Also does it go for all kind of browsers or few exceptions? Like opera?

Ответить