Hackers Abuse Zero-Day Exploit for CrushFTP

Поделиться
HTML-код
  • Опубликовано: 21 авг 2024
  • jh.live/flare || You can track down shady sellers, hunt for cybercrime, or manage threat intelligence and your exposed attack surface with Flare! Try a free trial and see what info is out there: jh.live/flare
    Learn Cybersecurity - Name Your Price Training with John Hammond: nameyourpricet...
    Read The Hacker Mindset by Garret Gee: jh.live/hacker...
    📧JOIN MY NEWSLETTER ➡ jh.live/email
    🙏SUPPORT THE CHANNEL ➡ jh.live/patreon
    🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
    🌎FOLLOW ME EVERYWHERE ➡ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/discord ↔ jh.live/instagram ↔ jh.live/tiktok
    💥 SEND ME MALWARE ➡ jh.live/malware
    🔥RUclips ALGORITHM ➡ Like, Comment, & Subscribe!

Комментарии • 78

  • @mu11668B
    @mu11668B 3 месяца назад +47

    I still find it funny that quite often people goes for paid products with fancy presentations and unnecessary black-box automations. We use OpenSSH sftp with Linux access control and rarely do we have to worry about random 10/10 RCEs.

    • @CZghost
      @CZghost 3 месяца назад +9

      That's just Apple's ecosystem. All it is is just a shiny polished shit.

    • @mu11668B
      @mu11668B 3 месяца назад +5

      @@CZghost Microsoft has been doing it for years too.

    • @morgannelson5756
      @morgannelson5756 3 месяца назад

      Familiar with CVE-2024-33663?

    • @biigsmokee
      @biigsmokee 3 месяца назад

      @@CZghost macos has ssh and built-in nfsd

  • @Napert
    @Napert 3 месяца назад +49

    can we like calm the fuck down with all the vulnerabilities this year?

    • @fokyewtoob8835
      @fokyewtoob8835 3 месяца назад +2

      N O

    • @carsonjamesiv2512
      @carsonjamesiv2512 3 месяца назад +1

      🤣😂

    • @BillAnt
      @BillAnt 3 месяца назад +4

      Exploits and vuln are found almost every day. What's different lately, which has nothing to do with April in particular, is that more of them are being published on RUclips, so it seems like a whole lot of them all of a sudden. More and higher bug-bounties are also a factor. ;)

  • @HectorDiabolucus
    @HectorDiabolucus 3 месяца назад +54

    Having inside information on this one I can only laugh, and laugh, and laugh. There are more vulnerabilities. You just haven't found them yet. 😂

    • @mangodude-nq6su
      @mangodude-nq6su 3 месяца назад +14

      Classic closed-source tomfoolery

    • @skellybin
      @skellybin 3 месяца назад +2

      Chill, I was expecting you wise ahh comment

    • @HectorDiabolucus
      @HectorDiabolucus 3 месяца назад +2

      @@mangodude-nq6su well having seen that source, trust me, you’re better off.

    • @Daveychief23
      @Daveychief23 3 месяца назад +1

      Sec researcher here - any info you can drop without breaching NDAs?

    • @HectorDiabolucus
      @HectorDiabolucus 3 месяца назад +4

      @@Daveychief23 No NDA but common decency prevents me from trashing a former colleague. Plus I have a competing product that makes his look like a child’s toy.

  • @kettlestew
    @kettlestew 3 месяца назад +7

    Nice "enterprise grade" software you got there.

    • @xenostim
      @xenostim 3 месяца назад

      shodilly reinventing the wheel?

  • @juandig
    @juandig 3 месяца назад +4

    Flare doesn't show their pricing on their website... I hate that

    • @crashtfa
      @crashtfa 3 месяца назад +1

      They charge based on identifiers, we pay for flare and we get 1000 identifiers and pay 36k a year

  • @Palmit_
    @Palmit_ 3 месяца назад +4

    Flare looks very interesting. however, the pricing is elite and well crafted 0-day. I ain't buyin to something even for a trial to find out it's extortionate pricing. the FREE trial is not free. They should be open with their pricing.

  • @TheMAZZTer
    @TheMAZZTer 3 месяца назад +3

    This is nuts. It seems like they don't have a proper security model in place if it's just that easy.
    Also the CrushFTP desktop UI doesn't instill me with confidence lol. At least the web UI looks decent.

  • @pixl_xip
    @pixl_xip 3 месяца назад +27

    *another* vulnerability this april‽‽

    • @pepesreal
      @pepesreal 3 месяца назад +5

      i swear theres a vulnerability every day now XD

    • @xCheddarB0b42x
      @xCheddarB0b42x 3 месяца назад +1

      A lot more than one!

  • @RichardinSA
    @RichardinSA 3 месяца назад +6

    Can we all agree that JH is the goat?

  • @trisnguyen4625
    @trisnguyen4625 3 месяца назад

    Thanks for the demonstration. Very helpful !!!

  • @BakersBuilds23
    @BakersBuilds23 3 месяца назад

    Great Vid!

  • @goodthingforall8973
    @goodthingforall8973 3 месяца назад +1

    April and its vulnerabilities 😂

  • @kintag4459
    @kintag4459 3 месяца назад

    Thank you

  • @dukeofwelington
    @dukeofwelington 3 месяца назад

    John are you going to be in the people's call center this year?

  • @nickcarnevalino7462
    @nickcarnevalino7462 3 месяца назад

    cant stand places that have a "start free trial" button with no price given for full ver

  • @harald4game
    @harald4game 3 месяца назад +1

    Die sitzen in ihrer Ideologieblase und sind anderem gegenüber Beratungsresistent.
    Selbst wenn der jemand gefragt hätte aus seiner Umgebung hätte er keine Kritik bekommenm

  • @㘭
    @㘭 3 месяца назад

    another zero day.... im not even surprised at this point

  • @BurkenProductions
    @BurkenProductions 3 месяца назад

    But no one is using crushftp whats wrong with people

  • @hamzarashid7579
    @hamzarashid7579 3 месяца назад

    I'm surprised that you didn't talked about Linux XZ malware.

  • @guilhermeAK9
    @guilhermeAK9 3 месяца назад

    Nice video, thanks for that.
    Allow me to do a question: how can the ssh_host_rsa_key can be useful in some way for hacking once its not related to any user?

  • @CesSanchez
    @CesSanchez 3 месяца назад

    Hi, I don't know how to send this to you, but are you aware of the Sabrent situation? They're apparently hosting malware as legitimate firmware updates in their web. Maybe a video could help people not to fall on this and make the company finally solve the issue. Thanks a lot, and please excuse me if this is not the right way to reach you.

  • @userou-ig1ze
    @userou-ig1ze 3 месяца назад

    So why would anyone use crushFTP?

  • @HwSystems
    @HwSystems 3 месяца назад +3

    I do not understand enterprise using app developed in Java. It is like using an NES emulator to do your presentation.

  • @akashaki11
    @akashaki11 3 месяца назад

    Hello @john hammond, recently my Discord was hacked by someone who used it to send phishing links in the NahamSec general discussion group. I’ve resolved the issue, but now I’m unable to rejoin your Discord. Could you please allow me back in?

  • @wafinashwan8242
    @wafinashwan8242 3 месяца назад +1

    15 min gang

  • @hgvhjfcjdudrsxhxj
    @hgvhjfcjdudrsxhxj 3 месяца назад

    hey i have a question Jhon, what virtual machine manager u use Vb or vmware?

  • @carsonjamesiv2512
    @carsonjamesiv2512 3 месяца назад

    COOL!

  • @Rachaelshaw7
    @Rachaelshaw7 3 месяца назад

    Hi! If you can please create a video on the brokewell malware thx 😊

  • @ArsalanRamazan-zx1ux
    @ArsalanRamazan-zx1ux 3 месяца назад

    ‏‪4:56‬‏

  • @mrdkaaa
    @mrdkaaa 3 месяца назад

    24:25 "almost in a sense server side template injection sort of"
    Almost sort of. That's exactly what it is!

  • @SuperWabo
    @SuperWabo 3 месяца назад

    08:53

  • @dirkthomas1042
    @dirkthomas1042 3 месяца назад

    There is no cloud. It's just someone else's computer.

  • @xTwistCinema
    @xTwistCinema 3 месяца назад

    hell yea

  • @TituDas-pl2ch
    @TituDas-pl2ch 3 месяца назад

    help me sir

  • @WakiwakiJayson-rw4lc
    @WakiwakiJayson-rw4lc 3 месяца назад

    should i be worried haha i dont even know that software lolz

  • @technicalkalilinux
    @technicalkalilinux 3 месяца назад

    make video on CVE-2023-24059 sir if its exploit is free

  • @LazyPlays_
    @LazyPlays_ 3 месяца назад +1

    am i dumb or did you just not realize that u were able to pretty much do %hostname% which is effectively a command execution? lol

    • @_JohnHammond
      @_JohnHammond  3 месяца назад +3

      %hostname% isn't getting passed to cmd.exe as if it were an environment variable, it is being specifically handled within the application with their custom processing-- so per your question, no, it isn't command execution, and you are dumb. (You said it, not me)

  • @dyna.
    @dyna. 3 месяца назад

    Never heard of this software before... Enterprise ready? The vulnerability info on the download page looks like it's written by a kid and the linux installation instructions are just a joke. Custom start scripts? Then scrolling down i see a systemd service file and at first i thought like oh maybe it's not that bad, but then i look at the actual content and they are not just wrapping their script in a systemd service, no it's wrapped in rc.local and the systemd service is to call rc.local...with a "start" argument that is not used, and without a shebang while it's called directly??? Suprised that even works tbh.
    I was gonna say, what is this 1995? But heck even in 1995 things weren't this amateuristic.

  • @sweetshit4931
    @sweetshit4931 3 месяца назад +2

    Hell of month.

  • @fimdy6530
    @fimdy6530 3 месяца назад +1

    i just pissed on my wall

    • @Olflix
      @Olflix 3 месяца назад

      good for you

  • @ExplosiveAnyThing
    @ExplosiveAnyThing 3 месяца назад

    Can somebody explain? I dont really understand how it can read a file outside of the virtual machine?

  • @itsnee
    @itsnee 3 месяца назад +1

    abit too early i guess lmao

  • @psyonix_2829
    @psyonix_2829 3 месяца назад

    27th

  • @davidlu1003
    @davidlu1003 3 месяца назад

    😁😁😁

  • @ishanpatel597
    @ishanpatel597 3 месяца назад

    😁😁🙌🙌

  • @estersone
    @estersone 3 месяца назад

    Most liked comment 👍

  • @sunilgaikwad6335
    @sunilgaikwad6335 3 месяца назад

    Sir please next video social media authentication bypass make this video please 🥲😭

  • @gojo99998
    @gojo99998 3 месяца назад

    First !❤

  • @xCheddarB0b42x
    @xCheddarB0b42x 3 месяца назад

    PRO-see-yohn
    Thanks for the info dude!