Another Discord Bot Nuked People's Servers, Again...

แชร์
ฝัง
  • เผยแพร่เมื่อ 4 ก.ค. 2024
  • I sometimes question if people ever learn. Thankfully the Reverb Discord bot, a music bot, answered that question for me. It's no!
    When you set up a Discord bot, you give it permissions to do a wack ton of stuff, and if you aren't careful. You could be exposing yourself to the risk of having your whole Discord server get nuked. All those precious memories / nonsense messages flushed down the drain. So maybe do a bit of reading on what Discord permissions do and STOP ADDING OBSCURE DISCORD BOTS IF YOU DON'T HAVE TO. As you can tell, a bit upset all of this was caused by a silly music bot. Just use youtube or something.
    SOCIALS
    -----------------------------------------------------------------------------
    Discord Server
    / discord
    Twitter
    / notexttospeech
    MUSIC
    -----------------------------------------------------------------------------
    chillhop.com
    Tesk - makemesee
    El Train, Marc Mathias - Snap Back
    Aso - Sidewalks
    Plusma, Ben Bada Boom - Cabriolet
    TIMESTAMPS
    -----------------------------------------------------------------------------
    00:00 - The Hack
    01:54 - Reverb Team's Awful Response
    04:26 - Server Safety
  • บันเทิง

ความคิดเห็น • 691

  • @NoTextToSpeech
    @NoTextToSpeech  ปีที่แล้ว +794

    Yeah so I talked to the owner of the bot. They are pinning the blame on one of the devs. From what I can see, it seems like a huge lack of permissions management both from people adding the bot all the way to the bot management itself.
    Like always, don't join the support server to harass the devs.
    Finally, I would definitely steer clear from bots made by these fellas (unless you keep them trapped in a box with very little perms). Just like stick to the big and popular bots if you want stability and security OR selfhost your own!

  • @baronbacku9984
    @baronbacku9984 ปีที่แล้ว +1680

    i'd rather have someone tell me a genuine "sorry for the loss" rather than an artificial 2000 word apology, full of fake promises and other lies

    • @bakamedia8285
      @bakamedia8285 ปีที่แล้ว +189

      "I am sorry for being so naive and getting my bot hacked. I should have done better. I will be going to therapy from now on and try to become a better person" x)

    • @whoagainwastaken32times
      @whoagainwastaken32times ปีที่แล้ว +5

      tru

    • @Tired_Kye
      @Tired_Kye ปีที่แล้ว +25

      @@bakamedia8285 💀💀

    • @LilacMonarch
      @LilacMonarch ปีที่แล้ว +69

      True, but in this case the rest of the guy's messages definitely don't make it look genuine. Red flags all over

    • @erikkonstas
      @erikkonstas ปีที่แล้ว +8

      Yes, that's what NTTS said too; too sad the other red flags falsify it themselves in this case...

  • @Sariasun
    @Sariasun ปีที่แล้ว +1285

    This is why it’s very important to only give bots the necessary permission instead of just giving every bot admin permissions

    • @kepler6873
      @kepler6873 ปีที่แล้ว +109

      This. It’s infuriating to see every single bot ask for admin

    • @jakelindor7984
      @jakelindor7984 ปีที่แล้ว +1

      ​@@kepler6873 ok not really infuriating but alr

    • @erikkonstas
      @erikkonstas ปีที่แล้ว +40

      @@CZghost "I don't want the bot to nuke servers in case the bot token somehow gets out" - this is NOT within your control! What is within your control is keeping the token secure.

    • @kepler6873
      @kepler6873 ปีที่แล้ว +39

      I think they were trying to say they want to minimize what permissions the bot needs, so that if someone else runs hacked code through the token the scope of damage is limited, in contrast to music bots asking for admin and having unlimited scope.
      Keeping the token secure is still the #1 solution, but failsafes never hurt

    • @erikkonstas
      @erikkonstas ปีที่แล้ว +2

      @@kepler6873 I believe they resort to that because Admin is more powerful than channel overrides; I suppose that sometimes people forget about overrides and then what is their first step after the bot doesn't work in a specific channel? Go cry to support, obviously, because they can't just check their own server's perms!!! Well, the staff get tired and whoops, the invite link now has the 0x8 bit flipped on...

  • @donttakemyeyebrow
    @donttakemyeyebrow ปีที่แล้ว +306

    Man, the sheer audacity to call those people "haters" knowing full well the bot has been compromised and has deleted years of work is just friggin amazing

    • @jeffsmith3422
      @jeffsmith3422 ปีที่แล้ว +14

      Yeah, that developer was out of line

    • @DigitalHandle
      @DigitalHandle ปีที่แล้ว +9

      Just a theory: what if *they* were the one who hijacked the bot

    • @Cleenishere
      @Cleenishere ปีที่แล้ว +1

      “Years or work” lmfaooo what???

    • @3_pancakes767
      @3_pancakes767 ปีที่แล้ว +1

      Work may have been an odd way of saying but not untrue

    • @6Shots_ofEspresso
      @6Shots_ofEspresso 7 หลายเดือนก่อน +1

      @@Cleenishere years of conversations with friends, some of which may not be around anymore, artwork thats inaccessible now, stories that can no longer be read (all things that i have on my friends server). years of work, deleted forever

  • @Sayeed1601butmunchesoncurry
    @Sayeed1601butmunchesoncurry ปีที่แล้ว +384

    Bro became a discord kitten at the end

    • @SkepCakes
      @SkepCakes ปีที่แล้ว +4

      He got Dream-ed

    • @叵
      @叵 ปีที่แล้ว +26

      @@SkepCakes now replace D with C

    • @DionDPR
      @DionDPR ปีที่แล้ว +38

      @@叵 he got Cream-ec

    • @beamwh
      @beamwh ปีที่แล้ว +4

      ​@@DionDPR damn you were faster than me

    • @1_43
      @1_43 ปีที่แล้ว +2

      @@DionDPR replace the first "D" with "c".

  • @EnBunk
    @EnBunk ปีที่แล้ว +511

    A naked man fears no pickpocket.

    • @lordtitangod552
      @lordtitangod552 ปีที่แล้ว +3

      yes

    • @kingdomoftransylvania5744
      @kingdomoftransylvania5744 ปีที่แล้ว +1

      You shove the phone and keys into the ass and when you need them you just shit them out, great solution.

    • @A7mad3109
      @A7mad3109 ปีที่แล้ว +49

      yeah but they fear dropping the soap

    • @thecreature456
      @thecreature456 ปีที่แล้ว +39

      But they'll fear me.

    • @kirdow
      @kirdow ปีที่แล้ว +6

      This is why reddit gold should be a thing for youtube comments.

  • @Aspharon
    @Aspharon ปีที่แล้ว +151

    In my server, it luckily didn't delete any channels, but it did type "@everyone bitch" 1.5K times in 4 different channels for a total of 6K pings. That was fun to wake up to / clean up. Lesson learned about bot permissions.

    • @nardalis4832
      @nardalis4832 ปีที่แล้ว +16

      oh god-

    • @Zant582
      @Zant582 ปีที่แล้ว +24

      That's just the average discord server

    • @jeffsmith3422
      @jeffsmith3422 ปีที่แล้ว +3

      ​@@Zant582 certified Discord moment

    • @ilikeobbies7442
      @ilikeobbies7442 ปีที่แล้ว +2

      just use mee6 and /clear it, you can specify the user so it is better

    • @isthisnametaken978
      @isthisnametaken978 ปีที่แล้ว +15

      ​@@ilikeobbies7442 promoting using mee6? In an ntts video? Heresy!

  • @TheMAZZTer
    @TheMAZZTer ปีที่แล้ว +320

    Software developer here.
    Sounds like the dev did not take permissions seriously and did not bother to only request the ones the bot needs. Also users of the bot took permissions even less seriously. Hopefully this will be a good learning experience for them at least. They should be thankful they did not add this bot to their bank account.
    OR he intentionally nuked all the channels himself.

    • @aneima
      @aneima ปีที่แล้ว +6

      “Software developer here”
      Yeah and I’m Elon Musk.

    • @orionalbeniz9945
      @orionalbeniz9945 ปีที่แล้ว +62

      ​@@aneima huh?

    • @circle4106
      @circle4106 ปีที่แล้ว +49

      ​@@aneimaedgy

    • @fitmotheyap
      @fitmotheyap ปีที่แล้ว +46

      ​@@aneima what were you trying to do lol? Anyone can become a software dev, not everyone can exploit everyone and act like they did nothing wrong

    • @bovas.
      @bovas. ปีที่แล้ว +29

      ​@@aneima What are you trying to achive here?😢

  •  ปีที่แล้ว +679

    Odd how the official Reverb discord support server wasn't messed with.

    • @faceboy1392
      @faceboy1392 ปีที่แล้ว +31

      🤨

    • @Hietakissa
      @Hietakissa ปีที่แล้ว +215

      Prob doesn't have admin permissions, like it shouldn't

    • @Blackhomeking12
      @Blackhomeking12 ปีที่แล้ว +54

      Any dev with a single IQ would not make a bot that is not self hosted admin to be able to nuke

    • @Just-aGuy
      @Just-aGuy ปีที่แล้ว +1

      bot

    • @sovuchkin5093
      @sovuchkin5093 ปีที่แล้ว +1

      That’s what I was thinking too

  • @seitheach
    @seitheach ปีที่แล้ว +49

    Worth adding about the idea of a token leak at 1:55 that discord is pretty good at handling this stuff. One of the devs on the bot I’m working on accidentally pushed a commit to github with the live token. Discord detected it and actually automatically reset the token and I got a very scary pop up on my discord client.

  • @sadpluslonely2775
    @sadpluslonely2775 ปีที่แล้ว +218

    "Don't get hacked bro EZ"
    A wise lesson from a wise man

    • @Palexite
      @Palexite ปีที่แล้ว +9

      > gets hacked
      > 👁️👄👁️

  • @CheezyTopqz
    @CheezyTopqz ปีที่แล้ว +92

    Someone sent the link to this vid in the support server and a dev said “that’s shit” 💀

    • @Quackra
      @Quackra ปีที่แล้ว +1

      That dev is a dick

    • @Tired_Kye
      @Tired_Kye ปีที่แล้ว +5

      gasp, how dare they 💀💀

    • @CheezyTopqz
      @CheezyTopqz ปีที่แล้ว +8

      @@Tired_Kye it was funny ash 😭

    • @Tired_Kye
      @Tired_Kye ปีที่แล้ว +1

      @@CheezyTopqz I want to join but I don't want my acc to 💀

    • @CheezyTopqz
      @CheezyTopqz ปีที่แล้ว +9

      @@Tired_Kye I recommend joining. Just a ton of kids arguing with kids. Make an alt if you’ve gotta. A good portion of the server members are in a damn vc 😂

  • @davidstaffen6783
    @davidstaffen6783 ปีที่แล้ว +54

    Music bots are like having a public jukebox. It's fun sharing music with your friends

    • @HobkinBoi
      @HobkinBoi ปีที่แล้ว +11

      all without the obnoxious ads that you get with watch together too.

    • @Momofan69
      @Momofan69 ปีที่แล้ว +3

      no it's not fun at all, all of my friends have trash taste, and I to them have trash taste so no one is ever having a good time

    • @UmiZoomR
      @UmiZoomR ปีที่แล้ว

      There really is no point using it though

    • @davidstaffen6783
      @davidstaffen6783 ปีที่แล้ว +10

      @@UmiZoomR what do you mean? It's like having a speaker set up In a room with your friends.
      Imagine you want to set the mood of a dnd campaign. That's a great reason to use it.
      But me and my friends used it to make little playlists for our games nights. And anyone who didn't like it just shut it off.
      What would the alternative be if you just wanted some background music?
      You could listen to it on your own PC but then you can't share it. And on a public server that's annoying but on a server with a few friends it's qyite fun to have.

    • @Cleenishere
      @Cleenishere ปีที่แล้ว

      *its fun sharing the same music you guys like from your friends fixed it for you

  • @dylanharding5720
    @dylanharding5720 ปีที่แล้ว +80

    If you're giving a *music* bot the ability to do this, that's a problem.

    • @Liggliluff
      @Liggliluff ปีที่แล้ว +17

      Like when people give the calculator the permission to make and manage phone calls ...

    • @Cleenishere
      @Cleenishere ปีที่แล้ว

      @@dk14929blah blah blah

  • @vaarallinen_
    @vaarallinen_ ปีที่แล้ว +49

    ”Just don’t get scammed” -No Text To Speech

  • @MicahTheManiac
    @MicahTheManiac ปีที่แล้ว +19

    A bot having all those permissions is ridiculous. Have these devs never heard of the Principle of Least Privilege? It is a common practice in the IT World to prevent stuff like this from happening.

  • @_Hamster
    @_Hamster ปีที่แล้ว +428

    Its honestly disgraceful how the owner cares more about their account than the thousands of Discord servers and channels the bot deleted

    • @r_olawg
      @r_olawg ปีที่แล้ว +66

      bros got main character syndrome

    • @priitpiirisild2796
      @priitpiirisild2796 ปีที่แล้ว +15

      Bro its just discord servers who cares he probably had important dms

    • @DevV1ktor
      @DevV1ktor ปีที่แล้ว +11

      who gives a damn about the discord servers?

    • @chelseachang8155
      @chelseachang8155 ปีที่แล้ว +49

      @@priitpiirisild2796 yeah but versus some people who had thousands of messages that were sent years ago and memories deleted? i think the owner is being disrespectful

    • @Solixe.r
      @Solixe.r ปีที่แล้ว +7

      @@chelseachang8155 thats why u backup everything and screenshot just in case lmfao

  • @Nightcaat
    @Nightcaat ปีที่แล้ว +54

    This is why permission control and self-hosting open source bots is very important

  • @epics-rag953
    @epics-rag953 ปีที่แล้ว +9

    "I don't understand why people us discord music bots"
    Also him: tutorial for making your own music bot

    • @ThatNoobKing
      @ThatNoobKing ปีที่แล้ว +2

      Doing what people want will bring in the ad revenue ¯\_(ツ)_/¯

    • @Cleenishere
      @Cleenishere ปีที่แล้ว

      Money

  • @babou4947
    @babou4947 ปีที่แล้ว +4

    5:03 When you hold D&D sessions in discord, it's much easier to play the ambience through these music boxes, main reason I use it :(

  • @chronesthesia
    @chronesthesia ปีที่แล้ว +19

    Life would be better if Discord had a safe backup feature

    • @yellowtapes
      @yellowtapes ปีที่แล้ว

      They literally do. It's a template. If your talking about contents like images, messages, so on. Discord can't do that because it breaches users privacy and the privacy policy.

    • @chronesthesia
      @chronesthesia ปีที่แล้ว

      @@yellowtapes oh yeah i didnt think about that

    • @Cleenishere
      @Cleenishere ปีที่แล้ว

      Its called a template moron

  • @smol_lil_demon
    @smol_lil_demon ปีที่แล้ว +2

    this is why I want Discord permissions to be more specific, like you can manage if it can delete channels or not
    like, currently, the permission "Manage Channel" lets the person control everything about the channel, i think i forgot
    i want them to make most of the channels more specific, like "Delete Channel", "Manage Channel Name", "Manage Channel Permission" and more
    i always wanted Discord to have this feature

  • @nikkifawkes6776
    @nikkifawkes6776 ปีที่แล้ว

    God I love you dude, this is the second video I watched after the spotify godness you are a blessing subscribe well earned

  • @nidgithm
    @nidgithm ปีที่แล้ว +2

    this is exactly why i always give bots as little perms as possible
    and why its especially annoying when other people give all bots they invite admin permissions lmao

    • @Liggliluff
      @Liggliluff ปีที่แล้ว +3

      Especially if you're a group of admins on a server, and you're the only sensible one who removes admin, and the other admins add admins back to bots.

    • @nidgithm
      @nidgithm ปีที่แล้ว

      @@Liggliluff yeah exactly

  • @Janna13011
    @Janna13011 ปีที่แล้ว +4

    Well I moderate a server- I wont say the name. But someone got rid of Probot by accident and I remember the dev telling the admin to only give the bot the perms it needs and to remove the rest. And now I realise that was smart. It was a public server. personally, ive been more than happy to grant bots random permissions but ill be more careful in the future.

  • @Toxin_UwU
    @Toxin_UwU ปีที่แล้ว +1

    I honestly don't even watch the videos for the Discord content. I watch to hear No Text To Speech talk about Discord and make funny jokes along the way. Honestly any upload I see, I watch almost instantly.

  • @bankaihampter2802
    @bankaihampter2802 ปีที่แล้ว +5

    I'm in the process of developing discord bot that I expect to be big and this makes me scared. The fact that even developers don't know how it happen, doesn't give me idea what I should do to protect against this

    • @joebidenofficialpotus
      @joebidenofficialpotus ปีที่แล้ว +2

      Just don't explicitly state sensitive data like token in code

  • @CheezyTopqz
    @CheezyTopqz ปีที่แล้ว +12

    “my wife left me” broke me tbh 😭 caught me so off guard bc it’s the beginning LMAO

  • @ethanoverwatch407
    @ethanoverwatch407 ปีที่แล้ว +4

    Thanks for the heads up on checking bot perms. I have a bot that I trust BUT It had all sorts of permissions I wasn't willing to let it do like delete channels. I have now made this impossible to happen to me (P.S I see ProBot)

  • @iqeyial
    @iqeyial ปีที่แล้ว +4

    2:59 BRUH

  • @totaloof
    @totaloof ปีที่แล้ว +24

    No cost too great, no mind to think, no will to break, no voice to cry suffering. Born of God and Void, you shall seal the blinding light that plagues their dreams. You are the Vessel. You are the Hollow Knight.

    • @silverrath
      @silverrath ปีที่แล้ว +3

      i love hollow knight as much as the next guy, but what?

    • @gmdtungsten
      @gmdtungsten ปีที่แล้ว +1

      Nice

    • @huaweiproX54
      @huaweiproX54 ปีที่แล้ว

      No but why💀

    • @gmdtungsten
      @gmdtungsten ปีที่แล้ว +2

      @@huaweiproX54 why not

    • @XENOWOLFI
      @XENOWOLFI ปีที่แล้ว +2

      Get this to top comment

  • @HobkinBoi
    @HobkinBoi ปีที่แล้ว +5

    Also if you're making a bot, if you're testing it on your own server, it should be fine to use admin privileges for testing, but if you're rolling out to other servers, only use permissions that are absolutely required by said bot in the event it ever becomes compromised.

  • @garrytehbest
    @garrytehbest ปีที่แล้ว

    Thank you for making these PSAs i went to both of my servers and check yagpdb and nero to make sure they didnt have the administrator privileges, i also double checked that yagpdb didnt need it either

  • @Larchy
    @Larchy ปีที่แล้ว +3

    Fun fact, if you remove all permissions that the bot asks for, when the bot joins the server, it isn't given a bot role.

  • @capn
    @capn ปีที่แล้ว +10

    Remember: when you give permissions to a bot, you're giving them to the owner and his friends. Don't give them to a random teenager who has no security and doesn't care

  • @gabrielarrhenius6252
    @gabrielarrhenius6252 ปีที่แล้ว +3

    This is why when I make bots (for fun and to use by myself (on my own on a private server)) to only need the required permissions.

  • @nanopi
    @nanopi ปีที่แล้ว +5

    Something that could be done is give all bots minimum permissions to function. Music bot shouldn't be able to do anything outside the designated music bot channel.

    • @Liggliluff
      @Liggliluff ปีที่แล้ว +1

      That is also a good idea. On a server I got to manage, every bot had their own designated role as they get when you add them with permissions, and each being and admin ... because of course. So for the music bot, I removed it to get rid of the permission, re-added it without a single permission so it doesn't create that automatic role. Then I created a "music bot" role, and assigned the permissions specifically to the music channel only. Now this bot can't even spy on users outside this channel.
      But after being an admin for a long time, I stepped down, and then it was back to the usual. The music bot was again an admin.

  • @GaymingForFun
    @GaymingForFun ปีที่แล้ว

    That "meow" at the end was so cute :3

  • @meowmrawmeow
    @meowmrawmeow วันที่ผ่านมา

    no text to speech meowing was all I needed in life

  • @wilddemur9796
    @wilddemur9796 ปีที่แล้ว +2

    This is exactly why I only give bots the channel specific perms they need to function and completely avoid giving them any role based perms, and especially not Administrator lol

  • @SirDubstep
    @SirDubstep ปีที่แล้ว +2

    imagine being staff on a discord server and actually doing your job, couldn't be the entirely of discord admins

  • @Liggliluff
    @Liggliluff ปีที่แล้ว +1

    It reminds me of when apps on Android asks for the permission to make and manage phone calls. Suspicious red flag. A weather app, calculator, or even that one game doesn't need permission to manage your phone calls.
    People try to make excuses such as: _"but it needs to let a phone call through if you get one when the app is running",_ no, that is done by the system and not the app. Apps without this permission won't prevent phone calls to go through. Or: _"but it needs to save your progress when you get a phone call and it's put in the background",_ no again. Regardless if you change app, go to the home screen, get a call on Facebook Messenger (which isn't a phone call) or an actual phone call, the app is placed in the background. It doesn't know why, but it does know it was put in the background, and it will handle that regardless. It doesn't need a specific permission just for phone calls. Phone calls aren't different. Don't get scammed.
    Most apps don't have this permission and work perfectly fine regardless.

  • @sbytenl
    @sbytenl ปีที่แล้ว +1

    That’s why I create my own bots and when I can’t I only give minimum channel permissions. Never role permissions. Some bots refuse to work without admin perms and what I do in that case is:
    - kick the bot
    - find another one

  • @nuggetva23006
    @nuggetva23006 ปีที่แล้ว

    Another baller goodbye kiss from NTTS. Thank you

  • @Randomaccountiswear
    @Randomaccountiswear ปีที่แล้ว +3

    Not the owner presenting main character syndrome instead of giving a damn about the mass amount of channels and messages permanently gone from their ignorance 💀

    • @jeffsmith3422
      @jeffsmith3422 ปีที่แล้ว +1

      Me after reading all that ignorance you just wrote 💀

  • @somethingcoolgoeshere
    @somethingcoolgoeshere ปีที่แล้ว +1

    I suspect they just ask for Administrator permissions because it's easier to code knowing your bot should be capable of joining every channel

    • @somethingcoolgoeshere
      @somethingcoolgoeshere ปีที่แล้ว

      But this is a terrible way of doing things for security reasons as you just saw

  • @riojones9959
    @riojones9959 ปีที่แล้ว +3

    It was either the owner of the bot, one of the dev team (if they have access to the machine/host) or a vulnerability within the code. It is surprising how dumb some people are when it comes to eval functions.

  • @notgaben
    @notgaben ปีที่แล้ว +2

    Already know it's a red flag when a Lead Developer starts every word in his sentence with a capital.

  • @ThePringels09
    @ThePringels09 ปีที่แล้ว +26

    I like how most people don't pay a single cent for their discord server, but want the most professional software

    • @brendanberger8137
      @brendanberger8137 ปีที่แล้ว

      Yeah, they dont get payed a cent for this. If you want a professional quality bot, pay or make it yourself

  • @likuor_
    @likuor_ ปีที่แล้ว +2

    ending scared the shit out of me i almost chocked to death

  • @fauchsil
    @fauchsil ปีที่แล้ว +1

    This is like the random mobile game wanting to have permission to make and manage phone calls

  • @cheekykieran_2006
    @cheekykieran_2006 ปีที่แล้ว

    You are just epic TH-camr, also you should see the secret UI on mobile discord by holding the ✨ emoji for a few seconds when you are on the emojis information screen

  • @tally9121
    @tally9121 ปีที่แล้ว

    What a awesome channel subbed

  • @Aci_yt
    @Aci_yt ปีที่แล้ว +1

    Discord should just store deleted channels and servers for a week before they're _actually_ deleted so you can restore it
    But noo that would be a good feature and we can't have an actually good update, can we?

  • @zxibs3645
    @zxibs3645 ปีที่แล้ว +2

    0:16 bro i thought that was mickey mouse for a sec 💀

  • @gr3ndy
    @gr3ndy ปีที่แล้ว +4

    I developed a discord bot 4 years ago for my friend's server on discord and the token got leaked and kicked everyone from the server it was a small server 300-400 members i apologized to the owner and he forgives me but I still feel bad till this day.

  • @kombuchamooch
    @kombuchamooch ปีที่แล้ว +14

    Imagine giving a music bot Administrator permissions 🤡

  • @teghanshaer2005
    @teghanshaer2005 ปีที่แล้ว

    The “bye-bye love yooooouuuu” at the end is so uncanny

  • @hermi1-kenobi455
    @hermi1-kenobi455 ปีที่แล้ว

    Bro really meowed for us. What a lad.

  • @virtual2288
    @virtual2288 ปีที่แล้ว +1

    We need more of those meows.

  • @arbitervildred8999
    @arbitervildred8999 ปีที่แล้ว +2

    you have no time to go change the token in time it happened to me too, the second your token is in production, there are thousands of bots that lurk Git Hub, Replit, and other public places, it basically finds your token in 0.01 seconds the moment you push it, and instantly logs in to nuke everything
    even discord scans these places and github copilot too, they usually automatically change the token when you push it to production but during that split second the bots already connect and keep the session
    also for the people complaining that an entire movie scene is required for an apology they just have to go outside at that point and touch some grass
    they deliberately choose to use someone else services and bots for free knowing all about the risks and token stealing that is happening and yet gets mad when they are surprised that their dream has finally ended

  • @canalalgt6040
    @canalalgt6040 ปีที่แล้ว +3

    Something even better to protect the bots, don't link them to your main account, have an secret secondary accounts only people you trust know it exists

  • @spookyweeb5563
    @spookyweeb5563 ปีที่แล้ว +1

    it is tragic that so many servers are deleted but this is just passage of time. you eventually lose stuff and thats just how life is. if you really wanted you could have archived it. even with human memories you forget stuff and if youve got a 4 year old server you wont be looking closely enough at anything to remember things youve forgotten.

    • @jeffsmith3422
      @jeffsmith3422 ปีที่แล้ว +1

      They're just not thinking that way yet. They're not at the end of their development arc

    • @Cleenishere
      @Cleenishere ปีที่แล้ว

      Its just a discord server bro

  • @That_0ne_Dev
    @That_0ne_Dev ปีที่แล้ว

    I had a bot in a few hundred servers when my account got hacked, first thing I did was run my failsafe function that makes my bot leave every server its in. Always nice to have a function like that. Your account got compromised? Slam open the bots code and run the command before they change the token. And by run I mean execute the function in the discords 'ready' listener

  • @kirkbaranowski4996
    @kirkbaranowski4996 ปีที่แล้ว +1

    I own a semi popular sever with around ~500 members and active chat channels and I use a containment channel where every user that gets let in must be verified by a mod to access the whole sever. It has stopped 100% of scams bots and raids so far but I don’t think this would be a great choice for larger servers though

    • @sebasty6111
      @sebasty6111 ปีที่แล้ว

      i'm a helper in one with nearly 10k users that also has that kind of containment channel. just needs to have a team of decent people with specific above-normal-user permissions to run one command.
      the new users are a step below normal users, which makes it possible for the team to run the command, and once that role is removed, they are equal and the command no longer works.

  • @sirplancake
    @sirplancake ปีที่แล้ว +1

    Usually some people are just lazy to set up permissions so the bot can join private vcs so they give it administrator instead.

  • @astonishinglyastrid
    @astonishinglyastrid ปีที่แล้ว

    ntts you need to stop rizzing us at the end of your videos im so flustered

  • @duckymouth
    @duckymouth ปีที่แล้ว +1

    Discord should add a feature for server owners to be able to undo changes from the audit log

  • @95DreadLord
    @95DreadLord ปีที่แล้ว

    That one guy saying "stop saying don't use bot" is clearly unaware of the situation

  • @vizzysfizzys
    @vizzysfizzys ปีที่แล้ว +1

    this just happened to a server i mod, the bot was nebula and another mod on purpose added another nuke bot 💀

  • @boas_
    @boas_ ปีที่แล้ว +1

    3:42 In Dutch there is the saying "een kip zonder kop" (some sort of alliteration), and it means a chicken without a head

  • @PeeperSnail
    @PeeperSnail ปีที่แล้ว +1

    At the end of the day Discord desperately needs a way to backup deleted channels. Also a way to instantly ban any bot that suddenly does shit like this.

  • @Lottiee_What
    @Lottiee_What ปีที่แล้ว +1

    The best part of the video (not that all of it wasn't great and informative) is the ~meow~ at the end. You can't change my mind.

  • @somethinglurking
    @somethinglurking ปีที่แล้ว

    Thank you for this video, I realized a bot we had in a personal server had admin rights when it shouldn't be :x Was able to fix that easily.

  • @arthurbruel5545
    @arthurbruel5545 5 หลายเดือนก่อน

    This really seems like the dev just added all the permissions so he wouldn't get any permission errors when developing the bot. Truly a professional.

  • @elliejohnson2786
    @elliejohnson2786 ปีที่แล้ว

    I never understood why so many bots ask for administrator, ESPECIALLY music bots. Aaaages ago, maybe 2018 or before, I tried to add one, saw it asked for admin, and just... didn't.

  • @gamingwithmahirofficial2489
    @gamingwithmahirofficial2489 ปีที่แล้ว

    that meow sounded like real life bored cat looll

  • @ZaHandle
    @ZaHandle ปีที่แล้ว

    This is why you only give a bot just enough to do what you want it to do
    Music bots don’t need to make their own VCs (if they did you can still revoke that permission yourself if you don’t need it)

  • @CD4VirtualTests
    @CD4VirtualTests ปีที่แล้ว

    There's also another bot named "Nebula" it generally deletes all the channels (except rules) then adds multiple channels by the name of "join-trident" and megapings everyone 1k times

  • @Letsmakeitloud
    @Letsmakeitloud ปีที่แล้ว

    amazing video!❤️❤️

  • @corrompu98
    @corrompu98 ปีที่แล้ว

    Sadly lot of popular discord bot are make by not so experimented develloper. And many user doesn't know how that's work behind and add so many bot with too many permissions they need.

  • @VisxciousYT
    @VisxciousYT ปีที่แล้ว

    Thanks ntts you saved my server that was going to destroy because I think that many music bots can be hacked so I removed them

  • @Clip_It1
    @Clip_It1 ปีที่แล้ว +1

    Thats why i use the backup bot (i forgot the name) but if anything bad happens to your server, then just use /backup load and done your server is back

    • @zeda1568
      @zeda1568 ปีที่แล้ว

      Messages are not back

    • @Clip_It1
      @Clip_It1 ปีที่แล้ว

      @@zeda1568 if you buy the premium version they are, but I would rather lose all the messages in the server rather than all the messages and channels

    • @azraewolfina
      @azraewolfina ปีที่แล้ว +1

      Backing up server is easy, backing up all the memories is a different story.

  • @Azn9
    @Azn9 ปีที่แล้ว +1

    protip: you can add the bot application to a "team" and keep access to it from another account

  • @Cuprite1024
    @Cuprite1024 ปีที่แล้ว

    This got me to check the bots on my two (Currently (And possibly permanently) completely private) servers, and turned off administrator permissions to any that had them on. Two of three were music bots (Granted, both dead ones due to C&D's that I just never removed). *Why?*

  • @mehdi-9999
    @mehdi-9999 ปีที่แล้ว

    The bot is also braking TH-cam's ToS, using youtube libary to bypass advertizement from music videos to stream to discord.

  • @HorizonHead
    @HorizonHead ปีที่แล้ว

    they responded JUST NOW they said they were gonna "learn from their mistakes" after watching your video im not gonna add their bots ever but im willing to give trusting them a chance

  • @Torontoball
    @Torontoball ปีที่แล้ว +1

    this is chaos, THIS IS FUCKING CHAOS

  • @justreport
    @justreport ปีที่แล้ว +1

    now i know why my server that ive put my blood and sweat just gone right around today... thanks dad😔😔

  • @Jamie-qf5ly
    @Jamie-qf5ly ปีที่แล้ว

    Thanks for the tips bby

  • @zeke7100
    @zeke7100 ปีที่แล้ว

    yeah I was gonna say if you are a person on the dev team saying "it's not a big deal, just use the bot anyways", then that seems like one of the devs is purposely doing this.

  • @LouisPlaysDrums
    @LouisPlaysDrums ปีที่แล้ว +1

    Honestly, I side with the owner here. I know it's annoying but it *is* just a server at the end of the day. You can rebuild it, recreate it, hell - do whatever. I know it's annoying but so what?
    Sure, it's preventable, but if I were the owner of Reverb, I'd probably care more about the account than the servers too. Just reset the token or delete the bot entirely as soon as the first report comes in.
    As a server owner, you should check permissions that your bots have access to, and if you give a music bot access to admin or edit/remove channels - maybe check with the bot developers on their server first: "Hey, is this needed or is it an oversight?"

  • @TheIvy._star
    @TheIvy._star ปีที่แล้ว

    You meowed!! (Why the hell did you decide to give in due to popular demand?? We still love you though!)

  • @MrGermandeutsch
    @MrGermandeutsch ปีที่แล้ว

    Incompetent Developers, a classic.

  • @discussions.
    @discussions. ปีที่แล้ว

    I don’t understand why people give all the bots all permissions. Like each and every bot literally has its own separate role that you can use to give each bot what permissions they need, and then you can just have an overall bot role with no permissions. Makes perfect sense.

  • @shxdeemoon
    @shxdeemoon ปีที่แล้ว

    pretty sure the only point of the administrator perm so the bot can still join even if the channels full

  • @dem0nclaw
    @dem0nclaw ปีที่แล้ว

    No bot ever NEEDS admin power... I literally NEVER give them that

  • @MatSki
    @MatSki ปีที่แล้ว

    Some people give the music bot admin permissions so that it can join private offices or channels that are restricted to the everyone roles.

  • @emokidvirgil
    @emokidvirgil ปีที่แล้ว +1

    good rule to help avoid scams are if you dont know them dont accept the message and if it seems too good to be true assume it is

  • @jclgaming34
    @jclgaming34 ปีที่แล้ว

    and yet its still down to day rip bot