Telegram Has Been Hacked

Поделиться
HTML-код
  • Опубликовано: 19 авг 2024
  • Learn Cybersecurity - Name Your Price Training with John Hammond: nameyourpricet...
    📧JOIN MY NEWSLETTER ➡ jh.live/email
    🙏SUPPORT THE CHANNEL ➡ jh.live/patreon
    🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
    🌎FOLLOW ME EVERYWHERE ➡ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/discord ↔ jh.live/instagram ↔ jh.live/tiktok
    💥 SEND ME MALWARE ➡ jh.live/malware
    🔥RUclips ALGORITHM ➡ Like, Comment, & Subscribe!

Комментарии • 346

  • @BhilBhil-tc8fy
    @BhilBhil-tc8fy 3 месяца назад +348

    Yes please. I would love a video that does a deep dive on the *Metaspyclub* project

  • @ranjanekka85
    @ranjanekka85 3 месяца назад +434

    Metaspyclub gang in the house! Thanks for the analysis!

  • @milanjamod7469
    @milanjamod7469 3 месяца назад +328

    Metaspyclub anticipation is building to a fever pitch! 😥

  • @KvapuJanjalia
    @KvapuJanjalia 4 месяца назад +361

    I'm not afraid of a calculator! Bring it on!

    • @cringemaki
      @cringemaki 4 месяца назад +104

      Everybody gangsta till the calculator app starts to ask permissions for camera, microphone and location 💀

    • @yukiplaysFr
      @yukiplaysFr 4 месяца назад

      💀

    • @TobbeOakleaf
      @TobbeOakleaf 4 месяца назад

      Oh it will be problems! Count on it!

    • @BillAnt
      @BillAnt 4 месяца назад +1

      At 8:14 that evil laughter Muaahhh!! lol

    • @Raymi20-
      @Raymi20- 4 месяца назад +1

      ​@@yukiplaysFr**salutes to the therian**
      Ma'am how can I help you ma'am

  • @Spiderfffun
    @Spiderfffun 4 месяца назад +412

    RCE after RCE, I hope kids wont have to learn about the year of the vulnerabilities, 2024, in the future

    • @SLZeroArrow
      @SLZeroArrow 4 месяца назад +15

      Thy Digital Apocalypse is drawing nearer by the day

    • @atomgutan8064
      @atomgutan8064 4 месяца назад +4

      This is literally cybersecurity history.

    • @TehPwnerer
      @TehPwnerer 4 месяца назад +3

      No it will be certainly eclipsed by the number of them in 2025

    • @Ph34rNoB33r
      @Ph34rNoB33r 4 месяца назад +6

      I wonder whether the whole AI hype will make even more RCEs show up. Either by improving exploit code or by reducing code quality in the attacked app because people trust AI code without questioning it.

    • @that.03gt
      @that.03gt 4 месяца назад +3

      ​@@SLZeroArrow seriously. I dedicated my whole life to computers and now they looking like they wanna kill us (ai). Ai is phuggin everything up. Its kinda scary tbh

  • @ghoulbuster1
    @ghoulbuster1 4 месяца назад +80

    TL;DR
    The exploit disguises as a fake video that when played executes python code, requires python to be installed for it to work.

    • @mushroommanny
      @mushroommanny 3 месяца назад +1

      saved me about 10 mins bro ty

    • @lucplayed
      @lucplayed 3 месяца назад +1

      Me, an it student, got "hacked" like that...🤣

  • @why1851
    @why1851 4 месяца назад +280

    too much rce exploits bro 💀💀💀💀💀💀💀

    • @sunbleachedangel
      @sunbleachedangel 4 месяца назад +3

      What are others?

    • @amaankhan8436
      @amaankhan8436 4 месяца назад +49

      Xz utils, rust, palo alto

    • @sunbleachedangel
      @sunbleachedangel 4 месяца назад

      @@amaankhan8436 Palo alto?? My company uses that lul

    • @why1851
      @why1851 4 месяца назад

      @@sunbleachedangel there was a rust rce CVE-2024-24576, aint that effective though

    • @yureimenkishi4291
      @yureimenkishi4291 4 месяца назад

      Rust already released a patch its java that said they ain't fixing it. Tbf .bat codes running aren't used anywhere so who really cares

  • @DoorThief
    @DoorThief 4 месяца назад +73

    I just got a SNYK sponsored ad by John Hammond before his own video

  • @januzi2
    @januzi2 4 месяца назад +28

    Wait ... we can hack those spammers that are sending us the messages to text them?

  • @AstralArchivists
    @AstralArchivists 4 месяца назад +60

    Bet the three later agencies are punching air rn. All their exploits getting found.

    • @BillAnt
      @BillAnt 4 месяца назад +4

      While reading your comment. lol

    • @MrCobalt
      @MrCobalt 4 месяца назад +2

      You think every exploit exists because of "three later agencies"? 😂

    • @ohmsohmsohms
      @ohmsohmsohms 4 месяца назад +5

      @@MrCobaltgiven the past of their involvement with 0days, I wouldn’t be surprised if they were aware of maybe 1 of the RCE vulnerabilities discovered this year

    • @v-y
      @v-y 4 месяца назад

      ​@@MrCobalt theres no way this was an unintended oversight

  • @osiristeam6959
    @osiristeam6959 4 месяца назад +20

    They should have a list of trusted extensions instead of a list of untrusted ones.

    • @zeteya
      @zeteya 3 месяца назад

      Very bad idea

    • @rafayahmed6259
      @rafayahmed6259 3 месяца назад

      ​@@zeteyawhy?

    • @zeteya
      @zeteya 3 месяца назад

      @@rafayahmed6259 Many reasons, one being a good extension can turn bad one day, but an extension that was bad to begin with will never turn good.

    • @Apple_Beshy
      @Apple_Beshy 2 месяца назад

      They have that so they can warn you, and it's much easier to read in the code, because you alreayd have the list of untrusted ext. You will not be confused if you missed some unt ext.

  • @kbabe3915
    @kbabe3915 4 месяца назад +20

    The scrum meeting: "Yeah, an approve list is too short, let's write out every single extension that could execute code instead of just choosing some image and video formats that we support."

    • @user-hp2dr5qc8p
      @user-hp2dr5qc8p 4 месяца назад +1

      A whitelist can get annoying tbh.

    • @kbabe3915
      @kbabe3915 3 месяца назад +1

      @@user-hp2dr5qc8p Ah yeah, you're right, much more annoying than a 0 day. Also a blacklist had to have been annoying from the very start.

  • @te-wei
    @te-wei 4 месяца назад +25

    I'm glad that I migrated to Debian + KDE two months ago. I still have my Windows on my drive, but never want to boot it anymore.
    The KDE environment in Linux is just much better than Windows.

    • @HyBlock
      @HyBlock 4 месяца назад +13

      who asked?

    • @KLR-3
      @KLR-3 4 месяца назад +4

      Welcome to the family.🐧

    • @te-wei
      @te-wei 4 месяца назад +7

      @@HyBlock the implication was that I'm not affected by windows RCE anymore.

    • @freerice9595
      @freerice9595 4 месяца назад +1

      I've tried making Ubuntu and Linux mint my daily driver many times. Can't do it.
      But for home labbing and running servers it's perfect.

    • @shiiy5131
      @shiiy5131 4 месяца назад +2

      it's just so much more superior, once you try it you never go back lol

  • @acessor9899
    @acessor9899 4 месяца назад +16

    This one RCE was indeed fun to use, gotta find more ;)

  • @cvl14
    @cvl14 4 месяца назад +4

    This just shows how blacklist are ineffective as a security tool

  • @ThisIsJustADrillBit
    @ThisIsJustADrillBit 4 месяца назад +22

    The fuzzing begins ❤

    • @BillAnt
      @BillAnt 4 месяца назад +2

      LPL has entered the chat, fuzzing locks are fun. hehe

    • @AuxiliaryPanther
      @AuxiliaryPanther 4 месяца назад +3

      ​@@BillAnt...we're getting an SQL injection on three, oh it's binding. A little malware on four, and we're set. Going back to three, gained root access to run our query, annd now we're in.

    • @BillAnt
      @BillAnt 4 месяца назад +1

      ​@@AuxiliaryPanther lol that took like 30 seconds.... not a very secure lock. :D

  • @anthonymcevans8191
    @anthonymcevans8191 4 месяца назад +1

    “It is not by default installed”
    **laughs in Linux**

  • @runedust9875
    @runedust9875 4 месяца назад +23

    Having a whitelist instead of a blacklist would prob. be more secure and reliable. Basic security not?

    • @tablettablete186
      @tablettablete186 4 месяца назад +3

      I was thinking the same

    • @xion637
      @xion637 4 месяца назад

      @@tablettablete186 governed by implicit deny. Also agree.

    • @user-mk3zz8zn9b
      @user-mk3zz8zn9b 4 месяца назад

      nah, its not think again

    • @rian0xFFF
      @rian0xFFF 4 месяца назад

      depends on size

  • @TheMAZZTer
    @TheMAZZTer 4 месяца назад +33

    Oof, this is why blacklists can be problematic, with a whitelist they would not have had this problem.

    • @BaggerPRO
      @BaggerPRO 4 месяца назад +6

      Except perhaps for the problem of naming this list as "white" 😁

    • @joshallen128
      @joshallen128 4 месяца назад +3

      ​@@BaggerPROblock allow lists?

    • @BaggerPRO
      @BaggerPRO 4 месяца назад +4

      @@joshallen128 , Yeah, it looks like it's fashionable to call these lists that way now :)

    • @BillAnt
      @BillAnt 4 месяца назад

      A block list is usually shorter than a white list, but it's just a matter of decision.

    • @joshallen128
      @joshallen128 4 месяца назад +3

      @@BillAnt Deny list because block sounds like black with an accent

  • @johndeaux8815
    @johndeaux8815 4 месяца назад +4

    Hate the red border on the thumbnails, I assume I've already watched and scroll past half the time

  • @milanvucetic1292
    @milanvucetic1292 4 месяца назад +2

    3:55 Not me watching the John Hammond video and getting an ad with John Hammond in it. Some may say it's a 2 for 1.

    • @BillAnt
      @BillAnt 4 месяца назад

      Taking it up the a** without lube. lol

  • @ShadowManceri
    @ShadowManceri 4 месяца назад +5

    I find it very bizarre that you can execute a file in the first place. That seems like a bad idea in many ways.

    • @user-hp2dr5qc8p
      @user-hp2dr5qc8p 4 месяца назад

      How do you suggest to open a .txt file?

    • @ShadowManceri
      @ShadowManceri 4 месяца назад

      @@user-hp2dr5qc8p .txt file should be read, not executed.

  • @ToniMorton
    @ToniMorton 4 месяца назад +3

    calculator opens in my nightmares.

  • @oncetwice6366
    @oncetwice6366 4 месяца назад +2

    Who's idea it was to hardcode bunch of files there. They'll just keep updating it every timea new file type that can execute code comes? Sounds like horrible idea.

  • @sophisticatedserpent1512
    @sophisticatedserpent1512 4 месяца назад +7

    The red bars in the thumbnail made me think I already watched this video.

  • @dimike96
    @dimike96 4 месяца назад +3

    Surely some communities would have a very high hit rate for python being installed on a windows machine right?

    • @crism8868
      @crism8868 4 месяца назад +2

      Yup. All data science and AI nerds.

    • @Bromon655
      @Bromon655 4 месяца назад +3

      Anybody even slightly interested in programming has a decent chance of having it installed on their computer. I refuse to believe less than 0.01% of users were affected.

    • @paulwesley3862
      @paulwesley3862 4 месяца назад

      ​@@Bromon655a) is the 6th most downloaded app - is your grandma programming?
      b) die this you must use it on your PC. how many people just have it on their phone?

  • @abandoninplace2751
    @abandoninplace2751 4 месяца назад +3

    They are identifying files by extension. Nice.

  • @planktonfun1
    @planktonfun1 4 месяца назад

    every vulnerability whether or not its trivial, can and will be leveraged

  • @kipchickensout
    @kipchickensout 3 месяца назад

    "Google Photos would like to make Phone calls"

  • @mrhassell
    @mrhassell 4 месяца назад +3

    Requires Python to be installed in the local path as a global environment variable.

    • @sa1t938
      @sa1t938 3 месяца назад

      it requires the file extension to be registered to the python interpreter, not anything to do with environment variables

  • @r35p3ct00
    @r35p3ct00 4 месяца назад +2

    Такое чувство, что на безопасность всем насрать, только ты можешь себя обезопасить, не кликая на всякое говно

    • @RebziSquad
      @RebziSquad 4 месяца назад

      Если человек наивный, то его никакая защита не спасет) Однажды мой знакомый запустил подозрительный tampermonkey скрипт в дискорде, говорит "2FA стоит же, чего бояться?". В конечном итоге украли его токен и смогли получить доступ к аккаунту.

  • @commanderpaladin
    @commanderpaladin 4 месяца назад +12

    I like cats. Btw we can all be farmers. No tech no rce problems 😎

  • @higurashinerd
    @higurashinerd 4 месяца назад

    Part of whyI never share diagnostic data with devs.
    It’s so nosey now

  • @KLR-3
    @KLR-3 4 месяца назад +9

    Why do they blacklist file types they believe are unsafe. They should be whitelisting filetypes that are safe. If some new software comes along that belongs in the unsafe catagory they have to know about the related filetype and then add it to the blacklist...

    • @wafinashwan8242
      @wafinashwan8242 4 месяца назад

      whitelist would take too long.

    • @erroroliver
      @erroroliver 4 месяца назад

      ​@@wafinashwan8242got any quote from a developer?

    • @johnsmith34
      @johnsmith34 4 месяца назад +1

      "Reimplemeent file open confirmations" has a noWarning list, so I think that's done now.

    • @KLR-3
      @KLR-3 4 месяца назад

      ​@@wafinashwan8242how so?

    • @johndoublew3060
      @johndoublew3060 4 месяца назад

      @@wafinashwan8242 how come

  • @sevuszeld5015
    @sevuszeld5015 4 месяца назад +1

    the title of the video is not that nice because i thought it would be a vulnerability that accurs right now.
    anyways.
    Thanks for sharing.

  • @Bromon655
    @Bromon655 4 месяца назад +1

    3:28 lol. They backed themselves into a corner with that statement.

    • @allxrise
      @allxrise 4 месяца назад

      They might have been logging something like "There is no any program to open this file-type/mime-type" perhaps? Or they just RCE'd to everyone... Who knows?

    • @Bromon655
      @Bromon655 4 месяца назад

      @@allxrise I’m more inclined to believe they were just fabricating a number as an attempt at damage control

  • @PasqualItizzz
    @PasqualItizzz 4 месяца назад

    Tis the season to find folly, tra la la la la, la la la lol

  • @Javv1721
    @Javv1721 3 месяца назад +1

    Me as python developer and windows user💀

  • @cyber_space09
    @cyber_space09 4 месяца назад +2

    Wow good job I want more info ❤

  • @vladislavkaras491
    @vladislavkaras491 4 месяца назад

    Thanks for the news!

  • @yessintaktak9200
    @yessintaktak9200 4 месяца назад

    Hello john . I am a big fan of your content can you make a roadmaps for us form when need to start 😅❤

  • @Axodus
    @Axodus 4 месяца назад +1

    Good, they banned my account for no reason.

  • @mrfoodarama
    @mrfoodarama 3 месяца назад

    Oooff... thank you John... cant believe im one of those 0.01% .. slackin

  • @actng
    @actng 4 месяца назад +1

    Thanks John you explained that very well

  • @cleetus1715
    @cleetus1715 4 месяца назад +11

    This is super sensationalised, I hate this form of clickbait content

    • @dill6827
      @dill6827 4 месяца назад +1

      gets attention, wasn't even searching for any exploiting related content but got this recommended

    • @Bromon655
      @Bromon655 4 месяца назад +3

      Meh, this channel isn't nearly as guilty of sensationalized clickbait as other channels. I felt the discussion in this video was pretty straightforward and no-nonsense.

    • @00killerix
      @00killerix 4 месяца назад

      Propose a title for this video.

  • @maktiki
    @maktiki 4 месяца назад

    I think the problem is Windows. It runs everything too fast without permission.

  • @couldntgivafuk
    @couldntgivafuk 4 месяца назад +7

    I've never liked the idea of "allow" and "deny" list... just deny all and allow the user to specify.

  • @robotron1236
    @robotron1236 4 месяца назад +4

    You should watch Telegrams owners interview with Tucker Carlson. They have like 30 employees and have never spent a dime on advertising. 😂

    • @entertain8648
      @entertain8648 4 месяца назад

      Why are you laughing though?

  • @jabrowski_
    @jabrowski_ 4 месяца назад

    Interesting shiz John. Liked and subbed, stay safe

  • @DoingFedTime
    @DoingFedTime 4 месяца назад

    Bad stuff for many. One of the reasons I always tell people to NOT use this medium.

  • @kuperrr6776
    @kuperrr6776 3 месяца назад

    Hey how can i get an xss is account? i tried and always the same when i create an account "Your account has been declined."

  • @manasmahanand732
    @manasmahanand732 4 месяца назад

    With a bit of social engineering this could have been pretty terrible

  • @bob_kazamakis
    @bob_kazamakis 4 месяца назад +2

    1:48 macOS has it installed by default, last I checked at least

    • @dom1310df
      @dom1310df 4 месяца назад

      Does mac have a similar concept of file extension associations as on windows, so a pyzw file will open with python by default?

    • @chiroyce
      @chiroyce 4 месяца назад

      Not anymore, used to have Python 2.x

  • @BreadGuy0
    @BreadGuy0 4 месяца назад

    Everybody be acting gangsta until calculator auto launches

  • @luizzeroxis
    @luizzeroxis 4 месяца назад +2

    How is this RCE? It's just running the code that someone sent to you. There's no difference between that and opening an exe.

  • @SchooiYT
    @SchooiYT 4 месяца назад +1

    Nice Video!

  • @EnitinEnitin
    @EnitinEnitin 3 месяца назад

    This is why you should use whitelists instead of blacklists.

  • @user-cb2xo9ey8r
    @user-cb2xo9ey8r 2 месяца назад

    What email do you need to sign up for flare I can’t sign up

  • @wiertgo
    @wiertgo 4 месяца назад

    I got an ad from you on this video

  • @d4ysi404
    @d4ysi404 4 месяца назад +1

    Amo tus videos

  • @SimplyGamer605
    @SimplyGamer605 4 месяца назад

    Hey, nice video, but just one thing. Your audio and video dosent seem to be perfectly in sync and its getting on my nerves

  • @paul-olof
    @paul-olof 4 месяца назад +1

    Haha so specific but I would've been at risk

  • @Mat2095
    @Mat2095 4 месяца назад

    But, isn't pyzw supposed to be a zip-archive? That contains a __main__.py? I'm actually surprised this runs at all.

  • @kingoftheorient
    @kingoftheorient 4 месяца назад

    A lot of noodles will be leaked for sure.

  • @jayFairOklama
    @jayFairOklama 22 дня назад

    i better uninstall python on my machineto prevent such kinds, since i have wsl2 i dont need it in win

  • @BU5TER288
    @BU5TER288 4 месяца назад

    oh no.. now i feel so dirty i cant wash it off

  • @shadflur874
    @shadflur874 4 месяца назад

    How do u register for that forum?

  • @user-fp7fs9xl2t
    @user-fp7fs9xl2t 4 месяца назад

    Great Content ...

  • @definitelyno
    @definitelyno 4 месяца назад

    You can add an extra dot at the end. Windows -> Run -> 'calc.exe.' -> Enter opens calc. Does that work to bypass.

  • @rigsshiver823
    @rigsshiver823 4 месяца назад +1

    tf is going on .. rce 💀

  • @furrygem5176
    @furrygem5176 4 месяца назад +1

    "Certified rce moment" 💀

  • @user-mc8xt1iq7c
    @user-mc8xt1iq7c 4 месяца назад

    bro, youtube just showed me your ad, on your own video. theyre wasting your ad money

  • @FRITTY12348546
    @FRITTY12348546 4 месяца назад

    But was it a typo :D

  • @impostorsyndrome1350
    @impostorsyndrome1350 4 месяца назад

    I have Python installed on Windows computer... It helps with learning Python programming, idk why people are so against it.

    • @zombi1034
      @zombi1034 4 месяца назад +1

      Yea, not sure why he made it seem like something extremely unusual. I think most people that do any kind of programming and use Windows will have python installed.

    • @Slada1
      @Slada1 4 месяца назад

      Why would you learn python if you could not use it? :D

    • @impostorsyndrome1350
      @impostorsyndrome1350 4 месяца назад

      @@Slada1 wdym not use it? You can use it to create various programs.

  • @reijin999
    @reijin999 4 месяца назад

    yeah but it updates every hour so it's chill

  • @rodricbr
    @rodricbr 4 месяца назад

    this is such an interesting rce tho... lol

  • @Pem7
    @Pem7 4 месяца назад +1

    2024 is on fire with RCEs🤞🏾

    • @threeMetreJim
      @threeMetreJim 15 дней назад

      All the old programmers have retired and the new generation are having to re-learn everything it seems.

  • @momentum9319
    @momentum9319 4 месяца назад

    what is "flair"

  • @fokyewtoob8835
    @fokyewtoob8835 4 месяца назад

    Music to my ears

  • @adenosinetp10
    @adenosinetp10 4 месяца назад

    can you stop using the word "stupid" so frequently and often?

  • @TheAwillz
    @TheAwillz 4 месяца назад

    Sometimes you guys are very clever with tech but not so clever with people…

  • @dkizilkaya6839
    @dkizilkaya6839 4 месяца назад

    This was surely done by purpose. Believe me not.

  • @aaronguerrero2003
    @aaronguerrero2003 4 месяца назад

    There is always a way in😉

  • @TheRealJohnJokes
    @TheRealJohnJokes 3 месяца назад

    I edited my comment so no one knows what I said!

  • @legendarycuber9205
    @legendarycuber9205 4 месяца назад

    I got a SYNK ad with John right before the video and was confused why there was a skip button 😂

  • @kipchickensout
    @kipchickensout 3 месяца назад

    python on windows, not that unnatural

  • @ourdazakaria4182
    @ourdazakaria4182 4 месяца назад

    Please sir all my devices is hacked my phone my laptop what can i do for this problem there is someone above me every step i make on my laptop or my phone knock the roof like if there know everything im doing .
    THANK YOU FOR HELP 🚨🆘

  • @Gawesh_Bro
    @Gawesh_Bro 4 месяца назад

    Code please

  • @delarosomccay
    @delarosomccay 4 месяца назад +1

    It sounds like a group of cowboys. No unit testing. No code reviews. Obviously. A simple typo like that should NEVER get to production in an org with a healthy product lifecycle. The fact that they came from mobile development says a lot. Phones are very locked down gardens. Your PC - not so much. Regardless, this was a simple rookie mistake that should have been caught long before it ever went to production. The fact that they have a lackadaisical attitude about it tells you a lot - they are egotistic and can't accept improvement. In my 30 years in this industry I have seen it all.

  • @Reelix
    @Reelix 4 месяца назад

    "Windows that has python installed" you claim is extremely odd.
    That... Is an extremely odd statement.

  • @velo1337
    @velo1337 4 месяца назад +1

    isnt that note more like a trojan horse than a RCE

  • @guilherme5094
    @guilherme5094 4 месяца назад

    👍Nice.

  • @DavidFrankland
    @DavidFrankland 4 месяца назад

    echo y | format c:

  • @LibraryOFSounds
    @LibraryOFSounds 4 месяца назад

    Yeah uae does not like private messaging.

    • @rafayahmed6259
      @rafayahmed6259 3 месяца назад

      😅😅

    • @LibraryOFSounds
      @LibraryOFSounds 3 месяца назад

      @@rafayahmed6259 Do you know uae connection with then twitter ? Or the documentary about state hackers of usa training uae agents.
      That documentary is so interesting

  • @YouTubeName-hw1uk
    @YouTubeName-hw1uk 4 месяца назад

    Anf i thought wiiu wansthe only thing that has rce 😂

  • @ibrahimdevx
    @ibrahimdevx 4 месяца назад +1

    Less then 0.01%.... yeah idk why im having a hard time believing that 😂 its not that uncommon to have Python installed on ur system

  • @IlIlIIlIlIlIlIlIl
    @IlIlIIlIlIlIlIlIl 4 месяца назад

    Good thing I run it in a vm on a vps

    • @Luzum
      @Luzum 4 месяца назад

      vm escape + pyzw = your vps gets owned

  • @oracuda
    @oracuda 4 месяца назад

    how do RCEs still exist in 2024 bro 😭😭😭😭😭

    • @crlfff
      @crlfff 4 месяца назад

      They are found in everything

  • @JNET_Reloaded
    @JNET_Reloaded 4 месяца назад +1

    ironic how you mention x as x has same fkin vulns as t look into clicking vid links on x on some accounts it will open up links and do stuff etc!

    • @Sinstyson
      @Sinstyson 4 месяца назад +1

      Can you provide examples of that?

    • @user-qbxjwxumr
      @user-qbxjwxumr 4 месяца назад

      Some bots post links that have a picture that looks like a video as the thumbnail of the preview card. It's very hard to explain

    • @Sinstyson
      @Sinstyson 4 месяца назад

      @@user-qbxjwxumr i mean like, i want a link

    • @user-qbxjwxumr
      @user-qbxjwxumr 4 месяца назад

      @@Sinstyson There's really no documentation for it; you just have to see it for yourself. It's a link preview that tricks you into thinking it's a playable video with a thumbnail designed to deceive. With closer inspection, it displays the site title, link, and description below the thumbnail. It's easy to be fooled by this if you're not tech-savvy or have poor vision. Mainly this is used by adult content bots to lure people to their websites. It's not a security vulnerability, but rather a case of OP being oblivious no offense

    • @threeMetreJim
      @threeMetreJim 15 дней назад

      @@user-qbxjwxumr lol, adult content sites and poor vision. I guess they go hand-in-hand. 😄

  • @aluraonline
    @aluraonline 4 месяца назад +2

    I GOT AN AD ON THIS GUYS VIDEO, OF LITTERALLY THE SAME MAN?? TALKING ABOUT CFT?? it just fucked me up for a second