Zero Day Exploits Explained | Nicole Perlroth and Lex Fridman

แชร์
ฝัง
  • เผยแพร่เมื่อ 14 พ.ย. 2024

ความคิดเห็น • 66

  • @dendrok1
    @dendrok1 2 ปีที่แล้ว +68

    pretty much what the NSA does all day

    • @RobVollat
      @RobVollat 2 ปีที่แล้ว +2

      Not true - but cool story.

    • @watercolourmark
      @watercolourmark 2 ปีที่แล้ว +9

      Mossad doesn't stop at the end of the day, they do this day and night.

    • @Th3Mag1c1an
      @Th3Mag1c1an ปีที่แล้ว

      🤣🤣Yupp that's what they do

    • @oahts5906
      @oahts5906 7 หลายเดือนก่อน

      Ghidra

  • @quell2911
    @quell2911 2 ปีที่แล้ว +23

    I give every Lex Fridman video a 'like' but I would give this particular video even two 'likes' if I could for his "Because I'm a man of the people" remark! Loved it! 💪🏼😎

    • @SimplicityForGood
      @SimplicityForGood ปีที่แล้ว +1

      how on earth is he a man of the people??? he is a spoiled millionaire bachelorette in the top of American academia living a life you will never even come close to ... give us all a break with your fanboy likes...

  • @MygenteTV
    @MygenteTV 9 หลายเดือนก่อน +2

    So basically zero days are cve before you communicate them to Mitre and companies?

  • @dougbillbeaver
    @dougbillbeaver 2 ปีที่แล้ว +8

    When did everyone start answering their questions with "So, " ?

    • @HoldFastFilms
      @HoldFastFilms 2 ปีที่แล้ว +12

      So, that’s been like that for a while.

    • @judiabimarshall39
      @judiabimarshall39 2 ปีที่แล้ว +3

      So its been used for ever

    • @badhombre4942
      @badhombre4942 2 ปีที่แล้ว +1

      So, what's your problem?

    • @mike13891
      @mike13891 2 ปีที่แล้ว

      So, when did the Berenstein Bears start getting spelled as Berenstain Bears?

  • @badhombre4942
    @badhombre4942 2 ปีที่แล้ว +5

    Wonder how many zeroes they pay a programmer at Apple or Google, to inject the exploit in the codebase?

    • @coffeehousephilosopher7936
      @coffeehousephilosopher7936 8 หลายเดือนก่อน

      That's specifically known as a "backdoor" something which both an attacker or insider would develop.

  • @raginald7mars408
    @raginald7mars408 2 ปีที่แล้ว +2

    ... as a German Biologist and Pythagorean - this is about Mono Culture Vulnerability. We are in a synthetic Techno Sphere without any possible Awareness waht is going in a micro Second. There is no protection possible. It is the education to be strictly Essential in our doings. Down to ways like writing and drawing on paper - doing recordings with classical technology ...to connect to the Inter Net ONLY with ONE device - that is never linked to any other. So a parasite can only infect this ONE only - and the damage done will be only the time to restore this ONE system with basically the Operating System and essential Software - never any personal Data.Discipline and Impulse Control
    We may be too far in the Techno Sphere to survive.

    • @watercolourmark
      @watercolourmark 2 ปีที่แล้ว +2

      You talk of ONE (yes, in CAPS) system. I'd go along with that if I could run an iOS app on Android. We are a far way away from ONE system. We do have real issues that you could put your time and attention towards resolving today. Rather than making others aware of a fantasy in your head.

    • @raginald7mars408
      @raginald7mars408 2 ปีที่แล้ว

      @@watercolourmark right

  • @thechunkiestmonkey6887
    @thechunkiestmonkey6887 2 ปีที่แล้ว +3

    Strange future we have ahead

  • @4kMovieTrailers9
    @4kMovieTrailers9 4 หลายเดือนก่อน

    Zeroday bugs are 99% of the time planted into the software by the company itself, then they act surprised when they find zeroday bugs in the software... Great Actors...

  • @root3434
    @root3434 2 ปีที่แล้ว +4

    the twist is that there are 2-3 zero days exploits looped into the NSA and they have no clue

    • @JamesTrower-b3b
      @JamesTrower-b3b 11 หลายเดือนก่อน

      There is no way on Earth you could know that.

    • @root3434
      @root3434 11 หลายเดือนก่อน

      😂 you’re right…..maybe

    • @JamesTrower-b3b
      @JamesTrower-b3b 11 หลายเดือนก่อน

      @root3434 I am right. You cannot know that.

    • @root3434
      @root3434 11 หลายเดือนก่อน

      Haha ok whatever makes you feel better

    • @JamesTrower-b3b
      @JamesTrower-b3b 11 หลายเดือนก่อน

      @root3434 just makes you wrong. Simple. Easy. Like your mother.

  • @Johnsmith-ko9yj
    @Johnsmith-ko9yj 2 ปีที่แล้ว +10

    You mean the Pegasus spyware?

    • @sheva529
      @sheva529 ปีที่แล้ว

      Hahahahah

  • @samuelwilliams812
    @samuelwilliams812 ปีที่แล้ว +1

    Had a Homer Simpson moment at 5:13: Oh, you mean *Uighurs*.
    For a second there, I had images of Insane Clown Posse being one giant psyop.🤣

    • @pindofireworks1539
      @pindofireworks1539 10 หลายเดือนก่อน

      Bro, i thought she said wiggers lol!

  • @jazazzaza
    @jazazzaza 4 หลายเดือนก่อน

    5:22 that's f*cking horrendous

  • @semipunch857
    @semipunch857 2 ปีที่แล้ว +16

    Her voice got me bricked up lmao.

  • @joeystillpoppin1173
    @joeystillpoppin1173 2 ปีที่แล้ว +6

    Wow ! let's take it to the next level perhaps satellite AI will zap every one from the upper atmosphere to death on a zero day exploration.
    *A new hunt begins*

    • @no-won
      @no-won 2 ปีที่แล้ว

      Had that thought a few days ago

  • @ConnoisseurOfExistence
    @ConnoisseurOfExistence 2 ปีที่แล้ว

    Operation Ironhand from Bourne...

  • @no-won
    @no-won 2 ปีที่แล้ว

    Zero day is come and gone

  • @jonnyh5858
    @jonnyh5858 2 ปีที่แล้ว +1

    No-click 0day sells for millions $ on the black market, or Apple/google/Microsoft bounty programs will pay you a paltry $100,000ish. What do you think happens more often? Of course these are software based rather than hardware exploits such as intel’s recent debacle that allowed permanent unpatchable exploits via the physical chip silicon

    • @RobVollat
      @RobVollat 2 ปีที่แล้ว +1

      True - bounties need to be exponentially increased.

  • @felixchien1664
    @felixchien1664 ปีที่แล้ว +1

    Did I miss when Zero Day exploits were explained? I mean, all I heard was what you can do with a Zero Day exploit...well...duh, yea you can do a lot of stuff. So what...I want to know what it IS.

    • @MR-mp9mm
      @MR-mp9mm ปีที่แล้ว +1

      It's explained within the 1st minute of the video.

    • @felixchien1664
      @felixchien1664 ปีที่แล้ว

      @@MR-mp9mm All she says is it's a "bug that no one knows about especially Apple. It's zero day because the moment it's discovered...engineers have had zero days to fix it".
      That seems like a redundant and banal explanation of what it is. Why not just call it a bug or vulnerability? Like what bug wouldn't be "Zero Day"? Because would not all bugs literally be "Zero Day" the moment they've been discovered? of course engineers would have had zero days to fix it. Genuinely...either I'm missing the language or that's just a banal explanation that-leaves-much-to-be-desired (and I hate using that phrase but this video made me do it!)
      If that is the definition of "Zero Day" exploit...then aren't all hacks pretty much "Zero Day" exploits? What makes something specifically "Zero Day"?

    • @felixchien1664
      @felixchien1664 ปีที่แล้ว +1

      @@MR-mp9mm by far the least informative explanation of "zero day" I've seen.
      Oh hey...thieves broke into a house. That house had a "zero day" exploit to their doorlocks...because the home owners had "zero days" to fix it before the thieves broke in.
      Oh wow...my car broke down in the middle of the road. it must be a "zero day" defect because engineers had "zero days" to fix it before it became a defect...

    • @nikwieneke8744
      @nikwieneke8744 ปีที่แล้ว +1

      well its clear that you now understand the term zero-day!

    • @felixchien1664
      @felixchien1664 ปีที่แล้ว +1

      @@nikwieneke8744 well thank you! Indeed, this was a "zero day" knowledge for me! Because there were exactly zero days that I knew about "zero day" before I heard about "zero day". And you are now my "zero day" friend since it's been "zero days" ive known u before u became friend

  • @jdogg0075
    @jdogg0075 2 ปีที่แล้ว +2

    Please look into talking to a real hacker about these topics.

    • @bdo7915
      @bdo7915 2 ปีที่แล้ว +1

      Isn't this gummo? 🤷‍♂️😅

    • @JohnDoe-lt5fq
      @JohnDoe-lt5fq ปีที่แล้ว

      see, its different because the hacker used something that wasnt patched yet and they didnt tell the developer or a gov agency. Usually hackers do these things.

  • @JohnDoe-lt5fq
    @JohnDoe-lt5fq ปีที่แล้ว

    "for ios the dream is that you craft a zero day exploit ..." wait isn't that like saying ios dreams of creating malware? I'm confused

  • @bearwolffish
    @bearwolffish 2 ปีที่แล้ว +4

    Android, cus I'm a man of the people. Amen.

  • @davidhughes2960
    @davidhughes2960 2 ปีที่แล้ว +2

    Hmmmm

  • @xxstfubmx
    @xxstfubmx 2 ปีที่แล้ว +1

    o you mean pegasus?

    • @xxstfubmx
      @xxstfubmx 2 ปีที่แล้ว

      which is currently targeting independent media as public 1 en.wikipedia.org/wiki/Pegasus_(spyware)

  • @treyday5200
    @treyday5200 2 ปีที่แล้ว +1

    Learn to code

  • @lennomenno
    @lennomenno 2 ปีที่แล้ว +2

    I’m a Peon with an IPhone. Now I feel like I’m out of my league.

  • @207_Rome
    @207_Rome 2 ปีที่แล้ว

    This has been going on for years ….hence updates

  • @SkunkCity_RC
    @SkunkCity_RC 2 ปีที่แล้ว +1

    Weegers

  • @isyt1
    @isyt1 ปีที่แล้ว

    Why does she say the last few words in her sentences in a really deep growl like a wolf or something. How strange

  • @JarJarBinkz68
    @JarJarBinkz68 2 ปีที่แล้ว

    Her voice 🤮🤮🤮