The Secret Message Hackers Left Deep Inside Their Malware🎙Darknet Diaries Ep. 103: Cloud Hopper
ฝัง
- เผยแพร่เมื่อ 19 ก.ย. 2024
- When a large corporation with thousands of computers was breached, Fabio was called in to investigate. But he quickly found a cryptic note lurking inside the malware, and realized the company that hired him wasn't the true target after all.
Visit darknetdiaries... for a list of sources, full transcripts, and to listen to all episodes.
As a overnight janitor who knows a little about security and cleans a building I know I could easily exploit I'm excited how this episode is gonna turn out I've seen plenty of passwords on sticky notes , I've noticed several doors installed incorrectly including the server room the locks are those basic badge locks and mine opens pretty much every door except the server room and I know an office that has a badge that opens the server room it's labeled and just sits out in the open
Lol don’t post if you gonna do anything
I want an update on this for sure😂
How much do you want for that badge? Lol .
Well, whatcha waiting for? 😉
Wow !! May I say, u should contact Jack n be on the pod. Though not a cyber incident yet, this still is a security mishap waiting to happen.
So I started out life as a gamer and IT dude from around 1998(12yrs old) went through heaps of health bs and ended up as an accountant for 16 years. Thanks to your podcast Jack, I am finally going back to my IT roots as of next week. 37 years old and changing careers back to IT as tech support... gotta start somewhere, been doing certs and ctf's like mad and could not be happier! Thanks dude! Thanks to you and shawn ryan I am starting to do what I love!
Wish you the best in the career swap!
I've a feeling your experience as an accountant is going to be useful. Hope your new job gives you a lot of satisfaction and lucre. Good luck, sir!
Hell yeah!
I’m changing careers too! I been tattooing for 15 years and applied for school and have been learning a lot so I can hopefully be a pen tester or work in network security! Good luck to u!
How exciting!! Wishing you the best with your transition back into IT.
You know it's a good episode when it just zips by, and then it's over . Keep the episodes coming Jack !!!!
You know it's a good channel egrn you don't want the video to end lol newer to Jack's channel but I've binged his podcasts, fascinating stories.
Thanks for the Thanksgiving, special Jack, nothing like taking a walk in the morning, and the fresh brisk air listened to a favorite TH-cam show. Happy Thanksgiving my friend.
Yay new episode! At 4am? Time for my Darknet bedtime story 😌
I’m with u no more 3 little pigs
@@beattiefamily9739 Yeah! I just subscribed & got access to the 10 bonus episodes😁 I mustn’t listen to them all back-to-back!!😅
SÄPO = Säkerhetspolisen = Swedish Security Service. That’s a really smooth move when removing Police from the name. 😂
I appreciate the midnight uploads. Jack knows we’re all still up
Fantastic story, fantastic narrative. This is the kind of stuff that keeps me motivated to learn and keep on learning. Thanks to you both for a story that I just couldn't stop and had to hear through all the way to the end!
I Love that you named it “Cloud Hopper” I have had a hacker/gangstalkers leave a picture attached to a weird file and it it a lady in a Navy Uniform and her name is Grace Hopper - along with the exact same DLL side injections and CSS attacks. I know who is doing this.
Start with your meth dealer.
Thank you again mr Rhysider, I truly and thoroughly love your stories and interviews. 5 stars of journalism awarded to you !
Great stuff per usual Jack, thanks. 👌🏻
Top 5 YT channel.
Top 3 story teller on YT
Now I wonder who are the other 6...
@scorpiohr it could be only 4, or 5, and same. #overlap
@@SexyThyme Well, there should be 4 top YT channels and 2 top story tellers, which is 6 in total.
I understand it could be an overlap, but who says that the top story tellers have the top TH-cam channels?
Top story teller might as well be a sidekick in an, otherwise, shitty show..
I can't get enough of these episodes!
This podcast should be on the top 10 ....
This has got to be my personal favourite artwork that has been used for this podcast!
Look up " brute " . He did artwork for kmfdm
Thank you for making my day better.
10 out of 10, but it's not just MSPs. When I was an SA at a software company, I could jump into dozens of telcos worldwide with proper login creds. Can't talk about things I found, but ... yeah.
Ha! The janitors at my office have more building access than the physical security guards!
I'm a general maintenance tech, and I'm given as few tools and access they can get away with, but I don't tell them that I have the tools that I basically AM the building.
Jack doesnt txt "you up?" at midnight... no, he tells you you're up at midnight.
I am so freaking excited every time you upload Jack! Thank you!
He wont date you lil bro
@@paulpietschinski3282 - I had to try!
Ah yes, the "Shared Security Model" of 'the cloud' and the set of troubles that implies.
Over 1k views and only 110 likes guys??come on like the video as this guy deserves it.
Just don‘t like it twice! 😛
When I login I always hit "like" first. I've tried to setup a website and it's hard work. I respect that. Only if there's crap do I go back and change it to "dislike".
Oooh learned a new one, dll sideloading. I'm here for the education and the interesting stories ❤
.dll are the magic keys to many Windows-specific doors. Welcome.
@@JeremyAndersonBoise interesting! MacOS and Linux don't use .dll?
@@lenaeospeixinhos they use .so, but yeah, now I want to know what exactly made unix shared libraries more secure then the windows counterpart?
@@lenaeospeixinhos nope.
Very good video! Pretty sure I did some work for the company that conpromised the Navy as a contactor, not far from where I live. Small world!
The intro made me think of the IT guy in Jurassic Park 😂
The real criminal geniuses never get caught while pulling off their crimes for years and then stop when they don't need to live a criminal life anymore
This autoplayed and I was hooked from the start. Great video!
It's actually the payroll system, nothing will make employees leave faster than messing with there $. 😂
Spotify is good way to listen to these episodes as well for those who have run out of episodes like me.
Question: So government A tells company B about a security issue, and
company A gets hired by company B to investigate their security issue which leads to something on company C’s computers, but company C is hired by company B as well as company D through who knows what letter, say company Z. Who pays company A once they start looking into company D,E,…., Z, considering company B only hired them to look into their own system? Perhaps company C since they are a security company in the first place? Or do all companies share it? Not to mention all the other entities involved.
With a little more skill you could have written a real "Who's on First" bit!
@@richarddevenezia8186 Lol. It’s a serious question though. How does the billing work? At a certain point they’re investigating outside what the original company should be paying for, so do they ask the other company to pay before they continue? Or do they use their personal ethics to keep pushing and hope that someone will want to pay? Or do they make the original company pay for it? Presumably if the other company is at fault they could be on the line anyways, or maybe they should split it. But just because they are at fault doesn’t necessarily mean that they did a bad job,either.
In my twenty years of professional experience working in tech, one hand rarely knows what another is doing in large companies, and coordination between 3rd-party vendors is not considered well, if at all. I assume the chaos you imply exists in many orgs, and I assume leadership is regularly ignorant of it. Just my honest take. 😅
Loving your content for about a year now and I saw I was the first view count so thought I would comment:)
Me as a janitor sometimes I see computers logged on in the office. Sometimes I thought should I go for it then I stop myself doing bad things. I have the master key of the building so there is lots I can do but here I am listening things happening.😂😂
I love to play their Pcs.
Janitor and his keys... Very cryptic.
I just realized you have a tons of additional content on your podcast!
I was wondering why your episode numbers we're out of sync on youtube!
Morning fellas, grab a seat, gonna be a good one.❤❤
What if I told you..... the overnight security guard was basically the "overnight janetor" with a gun and inner security knowledge of the location......
Hello.
A very very old
Oroborus.
Is what this made me think of.
Good luck.
Duck howls like a tired old man xD
👍 awesome content
I would put money on this being Azure cloud. (Azure security is not good, from what I have read) Not a lot of money, but a non-zero amount
I like the Jurassic Park quote at the end lol!
Your vids are great, is it true that TH-cam can restrict the flow of views / algorithm? Cause I like watching your vids and love listening to the exploits/skills by genius people
Wait, those big buissenes have camera in server/data room. Dont go there.
Nice Quote from Jurassic Park 👍
a great episode!
I want to know the difference between episodes that are numbered 100, 101 and 138, 139 ?!!
love your podcast so much
01:36 low pay, I'm there already.
That was a wild ride!
A Thanksgiving gift! Thanks Jack!
04:55 um today Fabio is the CTO of Truesce, back then a "technical lead of penetration test"
Very interesting and informative, thank you
Always put Remote Desktop behind a firewall yo.
Today's episode: The secret message that hackers hid deep inside, your mom.... 😎
Jack Rhysider shoved his di©k inside her... (At least he thought he did, it actually wasn't a "her" but was in fact a big hairy Burley transexual.... )☠️
DN
I admit it, you got me. 😂 use an ellipsis … instead of a comma
Everyone can debilitate a company in there position, including the janitor. Why are techi's so arrogant, or is it sandbox shit? The fact CIS absorbs in the 'power means it's good we have zero trust.
This is a good point. The best way to do this is through a union, not lone wolf that just destroys things for everyone. Everyone together makes work better, and change the system together, for everyone, including the company so _that lone wolf doesn't happen_ .
0:00 "You might think it's the CEO" after this weekend, I'm not so sure...
one time a janitor left outside of a chase the overnight key and I took it haha
Not gonna lie security is a sham, I worked in a fbi building somewhere in the world that didn’t have pick guards on their it room doors, if I needed the guy in charge of security was like just pop it with a screwdriver that’s how we get in 😂😂😂😂
2min in I’m hooked let’s go!!!!
Good job fabio. What a chad.
great episode, buddy
Such a good podcast.
You and lex fridman are my favorites.
There's actually no legal separation of the private sector and the us government in fact a few years ago there was a bill passed that dissolved what little separation did exist
Source? My sister works in public finance and I can assure everyone this is not true.
I seriously have a question where do I start if I want to learn to be a hacker? pls answerQAQ
Step 1: Learn to google.
Step 2: Ask my Uncle Google. He knows. 😊
Seriously, it would behoove you to learn how to Google effectively. Try "Google advanced cheatsheat". With no idea of your skill level.. idk. Free code camp is one idea..
I’m still stuck and trapped living with the asshole.
Wait was this attack on Saab?
That's the only Swedish company I can think of having connections to the US DOD.
great ep ma dude
I know where this was going. It was a message in a readme file, and it said, leave me. Right?
His name is Fabio Vaginie)
Solarwinds or Kaseya
Im guessing solarwinds
THE PEOPLE NEVER REMEMBER THE GOOD EMAILS and were you go a other side the pleople not remember the other people
Is this the solar winds hack?
The next script for the oceans 11 franchise
Yep, SolarWinds.
we tried, we failed, wipro
lol i just now realized the name "lulzsec" hence the word "sec" and "lulz"
The navy and it's backdoor
Sys admins have less privilege than me in my organization
1 min club!
Us DOD SIMPLY CREATES STICKY TRAPS AT THEIR VULNERABLE PORTS...HMMMM
Lord almighty .. mind blown.
The irony of american officials being pissed about spying/hacking 😂😂😂
I hope it wasn’t nettrix… 😮
My boy
PUFF PUFF MAGIC DRAGON
Yall seen all the bs with cyberlink ¿
Winnie-the-poo strikes again 🐻🍯
So true 😆
never ever zone a mi life o tieme excesive
So far Hackers 1. The Ai New World Order 0.
What about the hacker AI
SSS 😊
Classic..
That's not how you pronounce 'meme' loool.
How on earth do you not know this bro? Seriously? (pronounced meem not me-me).
And what when the attacker is an AI that does all this, but operates _as an account_ , by the keyboard, mouse and screen displayed?
Welcome to _Self-Operating Computer AI_
Git it now, YT it for it working by AI testers, brand new, it's amazing in good ways, and equally in not. One to watch, those that watch here.
Let’s gooo
woohoo, 30th like!
100000 date of birth records. um ok. facebook has data on 4 billion people. and tik tok... pfff