2022 Uber Breach Explained | How did Uber get hacked by an 18 year old?

แชร์
ฝัง
  • เผยแพร่เมื่อ 9 ม.ค. 2025

ความคิดเห็น • 30

  • @saradhakannan
    @saradhakannan 2 ปีที่แล้ว +3

    After the multiple push notification, was the victim accepted it?

  • @MrBitviper
    @MrBitviper 2 ปีที่แล้ว +1

    awesome breakdown. thanks for this

  • @hobzzr8598
    @hobzzr8598 2 ปีที่แล้ว +2

    Great video, Great explanation. Annoying sound of marker on board.

    • @SideChannel
      @SideChannel  2 ปีที่แล้ว +2

      Thanks! Sorry about the marker.

  • @gurneemsaini1
    @gurneemsaini1 2 ปีที่แล้ว +1

    What device they VPN from? And if it was the hacker’s device was there any VPN vulnerability.. I thought we needed a cert or some kind of vpn control.

  • @Z3kyTw0
    @Z3kyTw0 2 ปีที่แล้ว

    Has there been any discussion on how the attacker got the users credentials to start the MFA push ?
    \

  • @EMR-DESIGN
    @EMR-DESIGN 2 ปีที่แล้ว +3

    Good breakdown. Hopefully others will learn from it.

  • @howdarylrolls
    @howdarylrolls 2 ปีที่แล้ว +2

    Wait, are you just really good at writing backwards? Or did you just flip the video? Either way it’s a very unique way to do this video, despite ppl complaining about marker noises. Lol.
    That said, a lapel mic would probably isolate your voice better.

    • @SideChannel
      @SideChannel  2 ปีที่แล้ว +2

      Thanks! We just upgraded the studio mic to a Shure MV7

  • @johnabel5722
    @johnabel5722 2 ปีที่แล้ว +1

    Good explanation. How did the attacker get a good password to authenticate with in order to generate a push for the sms second factor?

    • @SideChannel
      @SideChannel  2 ปีที่แล้ว

      We don't have info on that, some sources report it was from a previous leak or database of usernames/passwords

    • @zafmafattack
      @zafmafattack 2 ปีที่แล้ว

      He got the employee credentials from an access broker online, and the brokers get them from breaches and the occasional employee selling access

  • @matt3316
    @matt3316 2 ปีที่แล้ว +1

    That was very well explained but as far as like the drivers for them what effect does it have on them because I am one of their drivers and because of this breach I'm not even sure if I want to hop online as they call it

    • @SideChannel
      @SideChannel  2 ปีที่แล้ว

      Doesn't seem to effect drivers that we know of.

  • @arnezedwards5560
    @arnezedwards5560 2 ปีที่แล้ว +1

    How did the attacker get the employees contact?

    • @SideChannel
      @SideChannel  2 ปีที่แล้ว

      That's not known at this time

  • @Cyberplex
    @Cyberplex 2 ปีที่แล้ว +1

    Awesome thank you for sharing.

    • @SideChannel
      @SideChannel  2 ปีที่แล้ว

      Thanks for watching!

  • @sarujanview
    @sarujanview 2 ปีที่แล้ว +2

    Well explained that

  • @MelCraft10
    @MelCraft10 2 ปีที่แล้ว +1

    This was an amazing video. Great beginner breakdown. Subbed for future content!

  • @jessloke7544
    @jessloke7544 2 ปีที่แล้ว

    so uber never do VA?? a clear text password store for such sensitive platform..

  • @Gripengamer
    @Gripengamer 2 ปีที่แล้ว +1

    Great video and that, but please get a better mic and/or a better studio. It sounds like your in a aquarium xD

    • @SideChannel
      @SideChannel  2 ปีที่แล้ว +1

      Thanks, it's always a work in progress!