How a Teenager Hacked Uber

แชร์
ฝัง
  • เผยแพร่เมื่อ 21 ก.ย. 2024

ความคิดเห็น • 122

  • @margaret__todd
    @margaret__todd 2 ปีที่แล้ว +72

    Completely agree with you that a breach of one person should NOT be the end of a company that large. But I also find it very ironic how it essentially very often comes down to the audacity of a teenager vs. probably an employee who just want their notifications to stop spamming. It's like, "I'm IT, click it" - source: trust me bro.

    • @mirko7389
      @mirko7389 ปีที่แล้ว +1

      anyway those thiefs should be ended.

  • @shaneofgames3825
    @shaneofgames3825 2 ปีที่แล้ว +17

    You get a lot of praise and you deserve it. Yesterday I had too much screen time, again, TH-cam and Twitter, and I start to feel sick and almost everyone is acting inauthentic. Your videos never feel like a waste of time, for one because they are educational, but mostly for me because you are a real person and among everyone acting like a ‘content created’ it really stands out, it’s refreshing and real. Thank you

  • @renio1092
    @renio1092 2 ปีที่แล้ว +10

    Please post more, you could 100% become a prominent figure in the cybersecurity space on TH-cam. Love the content, would love to see more.

  • @gothparadigm
    @gothparadigm 2 ปีที่แล้ว +1

    i love that you're way more active on youtube these days!! thank you for existing!!

  • @AndyKraken
    @AndyKraken 2 ปีที่แล้ว +34

    Your initial Tweet on this was posted on an internal chat where I work shortly after you posted it. I could almost hear the facepalms from the security department that's on another floor. The attack was so simple. Just spam a user for an hour before texting them basically "Hey accept and it goes away, I am from the IT department", and by sheer luck you find privileged credentials. Massive fail from Uber on that one. I do wonder if this will have legal ramifications for them (either regulatory or lawsuits)

    • @Abishek_Muthian
      @Abishek_Muthian 2 ปีที่แล้ว +4

      Forget the ramifications of Uber, The amount of data Uber has on us means we'd be facing ramifications for years.
      Visit hospital regularly? Get ready for insurance scam ads (or) worse, insurance premium increase on your current policy.
      Edit: Added example.

  • @RobbertsTravelGuides
    @RobbertsTravelGuides ปีที่แล้ว +1

    Cant beleve you are the hero of millions of people to stop WannaCry

  • @akhilrajkumar894
    @akhilrajkumar894 2 ปีที่แล้ว +1

    Uber: Why did you do this?
    The boy: I just wanted to make my resume colorful.

  • @Aarrax
    @Aarrax 2 ปีที่แล้ว +4

    Honestly if you only have social engineering skills you can be a very dangerous hacker, especially if you know psychology and the like.

  • @vinepoik
    @vinepoik 2 ปีที่แล้ว

    What a legend only one ad in the beginning . Your so damn underrated

  • @TheRich464
    @TheRich464 2 ปีที่แล้ว +2

    Been looking forward to this video since last night! Very interesting Uber breach. It's not a matter of if but when. Crazy place to have admin credentials on a server. Makes me suspect there has been a lot more breaches. If this person never said anything they could have been in the system for year's.

  • @christenw.1726
    @christenw.1726 2 ปีที่แล้ว +3

    The human element is usually the weakest point...

  • @zyxwvutsrqponmlkh
    @zyxwvutsrqponmlkh 7 หลายเดือนก่อน

    You see, that first hack wasn't really a hack, Uber just gave the gray hat a very generous bug bounty.

  • @Kaldunaa
    @Kaldunaa 2 ปีที่แล้ว +3

    This guy just hacked Rockstar bruh

  • @itz_Raed
    @itz_Raed 2 ปีที่แล้ว +27

    LOL! Uber security is a joke at this point

    • @T404-i9w
      @T404-i9w 2 ปีที่แล้ว +4

      @@ViolentbyDesign Doesn't change the fact that their security is dogshit

    • @selvynallotey8739
      @selvynallotey8739 2 ปีที่แล้ว +2

      @@T404-i9w -Guy who knows absolutely nothing about security

    • @shaneofgames3825
      @shaneofgames3825 2 ปีที่แล้ว

      Hmm yes, but their practices are pretty standard across most businesses, so it goes to show how vulnerable things are

    • @v380riMz
      @v380riMz 2 ปีที่แล้ว +2

      @@ViolentbyDesign what’s so talented about buying stolen user creds, SE someone into clicking a button and scanning the network with tools everyone can use finding a file that had hardcoded ADMIN credentials? Just takes the balls to do it.

    • @ivasivancic2355
      @ivasivancic2355 2 ปีที่แล้ว

      @@v380riMz where he bought stolen credentials

  • @LlnusTechTips.
    @LlnusTechTips. 2 ปีที่แล้ว +4

    He just leaked gta 6 footage from rockstar 😂

  • @Cools2009
    @Cools2009 2 ปีที่แล้ว +1

    Hey man I just learned you have a TH-cam channel, super glad. AND I see you've got some beginner tutorials. Definitely gonna check those out to see where I'm at with my beginner chops.

  • @macktheripper7454
    @macktheripper7454 2 ปีที่แล้ว +2

    Marcus is so chill I feel like he should do asmr …

  • @Moxeeee
    @Moxeeee 2 ปีที่แล้ว

    Mr. Dr. Prof. Patrick appreciate it man

  • @myothercarisadelorean8957
    @myothercarisadelorean8957 2 ปีที่แล้ว +2

    Shady company ethics, treat drivers like crap, their still trying to figure out how to turn profit and now data hacked. Is there any positive news about this company?

  • @ericesev
    @ericesev 2 ปีที่แล้ว +7

    This would not have worked if Uber used phishing resistant 2FA, like security keys. This is going to keep happening to companies until they make the switch. Relying on every employee to never make a mistake, when there is a solution that is phishing resistant, isn't good security.

    • @shaneofgames3825
      @shaneofgames3825 2 ปีที่แล้ว

      My employer just switch to 2FA last year and they gave everyone a choice of tokens, app, or both. I have both. But to be clear both are not required for access, just one. You make a good point, I suppose the more sensitive the job the more they should think about going to something better

  • @sisu007
    @sisu007 2 ปีที่แล้ว +1

    I'm watching this with my Uber driver, he's smiling

  • @root317
    @root317 2 ปีที่แล้ว +7

    Here before marcus fixed the title

    • @jamess3159
      @jamess3159 2 ปีที่แล้ว +4

      Lol what was it before?

    • @root317
      @root317 2 ปีที่แล้ว +6

      @@jamess3159 just a typo lol. Hacker instead of Hacked

    • @jamess3159
      @jamess3159 2 ปีที่แล้ว +4

      @@root317 haha nice. 😄

  • @TechnologicalPower
    @TechnologicalPower ปีที่แล้ว

    This guy gonna be second networkchuck in youtube world

  • @nsla_darkness409
    @nsla_darkness409 2 ปีที่แล้ว

    Thank you, glad to see same content here!

  • @soufianeelanhari5316
    @soufianeelanhari5316 2 ปีที่แล้ว

    lovely video with in depth explanation but 1 question. How does one do the importings

  • @Researcher_YouTube
    @Researcher_YouTube 2 ปีที่แล้ว +1

    @Marcus Hutchins. Good overview video. You have a nice desk setup. Would you mind listing your equipment?
    1. Lighting (including location and which components) for items like the blue light behind your monitors?
    2. Hexagon tiles? Do they light up?
    3. Microphone and boom?
    4. Camera?
    5. Wall paint color / sheen (matte?) etc?
    6. Black desk?

  • @carloslozano2047
    @carloslozano2047 2 ปีที่แล้ว +1

    And this guy is leaking GTA VI right now 💀

  • @john_says_hi
    @john_says_hi 4 หลายเดือนก่อน

    enjoying your videos! good info

  • @rivhaaken9763
    @rivhaaken9763 2 ปีที่แล้ว

    Always a pleasure to watch!

  • @sherwynwilliams904
    @sherwynwilliams904 2 ปีที่แล้ว +1

    Great information and once again credentials reuse and social engineering did it again.

  • @habez8575
    @habez8575 2 ปีที่แล้ว

    How did rockstar get hacked? It would mean the world to us if you could give us your technical analysis of the Rockstar hacking process!! I can’t find any now and my only hope is you

  • @lux4163
    @lux4163 2 ปีที่แล้ว +1

    Why did I move here?

    • @ryangoslingx
      @ryangoslingx 2 ปีที่แล้ว

      I guess it was the weather.

  • @pyroishere
    @pyroishere ปีที่แล้ว

    I love your stories and insight, but your background needs some touchup...you have dark paint on your white wall (which clearly was spread over the paint tape) an on the other side, the line is messy..I'm a former custodian, jus giving my input😁

  • @Eagle2.0I
    @Eagle2.0I 5 หลายเดือนก่อน

    you're hero bro

  • @dtvfan24
    @dtvfan24 2 ปีที่แล้ว

    OMG, a Poweshell script with admim login baked in . Why why why. Just keep a powe shell script on a drive and lock if down with no login info baked in . What a breach

  • @jneville
    @jneville 2 ปีที่แล้ว

    enjoy and appreciate your vids !

  • @AbuubakarCaddowCali
    @AbuubakarCaddowCali 2 ปีที่แล้ว

    u see that little cog option button on the bottom near the fullscreen button? if u click on that u can chose to slow it down or speed it up. i

  • @Scipio_Icebearus
    @Scipio_Icebearus ปีที่แล้ว

    Good analysis!

  • @emmanuelboakye1124
    @emmanuelboakye1124 2 ปีที่แล้ว

    Thanks for the advice👍👍

  • @joz4738
    @joz4738 2 ปีที่แล้ว

    Where can I read articles about stuff like this? If anyone could tell me I would very much appreciate it.

  • @hvher
    @hvher 2 ปีที่แล้ว +1

    i dont even care bout the topic (heard it a lot of times already)
    imma just sleep to this Video 💀

  • @anirudhragupta8502
    @anirudhragupta8502 2 ปีที่แล้ว

    I don't know how come the PAM admin/password didn't have MFA?

  • @benigunawan8048
    @benigunawan8048 2 ปีที่แล้ว

    what do you think about bjorka from Indonesia. can you tell who he is

  • @B1DJES
    @B1DJES 2 ปีที่แล้ว +1

    How a Teenager Hacked ROCKSTAR???

    • @B1DJES
      @B1DJES 2 ปีที่แล้ว

      we need video about this

  • @PumpiPie
    @PumpiPie ปีที่แล้ว +1

    How did he hack R*??

  • @dancan4949
    @dancan4949 2 ปีที่แล้ว

    GTA 6 leaked development build next?

  • @ahmedmaro9863
    @ahmedmaro9863 2 ปีที่แล้ว

    Can you talk about rockstar, please ❤❤

  • @Lupinicus1664
    @Lupinicus1664 2 ปีที่แล้ว

    Very similar to the BA breach a few years ago. A file with admin credentials just lying around on a networked drive

  • @codenameuniccorn2412
    @codenameuniccorn2412 2 ปีที่แล้ว

    This dude has a brain

  • @_BangDroid_
    @_BangDroid_ 2 ปีที่แล้ว

    Thoughts on Uber's statement that they have "no evidence sensitive user information was accessed" ?

    • @everyhandletaken
      @everyhandletaken 2 ปีที่แล้ว

      I’m going to go with… untruthful statement!

  • @MinhTran-mt3yj
    @MinhTran-mt3yj 2 ปีที่แล้ว +1

    wow uber. smh. security is garbage.

  • @rinansundiang1928
    @rinansundiang1928 2 ปีที่แล้ว

    nice tuto Thank you!

  • @popeyehacks
    @popeyehacks 2 ปีที่แล้ว

    I have only hacked it!! They can't find me

  • @gamingtsunami6928
    @gamingtsunami6928 2 ปีที่แล้ว

    Bro i love your,videos bro thanks please make tutorial videos about Kali Linux.

    • @Howtodo41922
      @Howtodo41922 2 ปีที่แล้ว +1

      I have a full course of kali

  • @merism5752
    @merism5752 2 ปีที่แล้ว

    This hacker did same for gta ?

  • @rngmaster-0
    @rngmaster-0 2 ปีที่แล้ว

    the biggest issue is each employee is a point of failure. security needs to be hardened internally, this is a great learning point for Uber.

  • @guilherme5094
    @guilherme5094 2 ปีที่แล้ว

    Thanks 👍

  • @savernastemper569
    @savernastemper569 2 ปีที่แล้ว

    Lol ..,, peep this .., sometimes hacking a simple employee’s data can lead to a downfall of a company. Depending who is the man in the dark

  • @umeshbasnet1763
    @umeshbasnet1763 ปีที่แล้ว

    hello ,
    my pc has been attacket by uyit ransomware ,plz help me

  • @Meta0Riot
    @Meta0Riot 2 ปีที่แล้ว

    What a facepalm! Great vid as always.

  • @danthedrivingman6415
    @danthedrivingman6415 2 ปีที่แล้ว

    Prison... Will be great
    Without a key board

  • @LexlutherVII
    @LexlutherVII ปีที่แล้ว

    it's always a Teenager😂

  • @Cueteman
    @Cueteman 2 ปีที่แล้ว +1

    low class hacking an uber driver!

  • @user-cv3uq2ho3x
    @user-cv3uq2ho3x 2 ปีที่แล้ว

    "Welco-"

  • @TopSpeedKertus
    @TopSpeedKertus 2 ปีที่แล้ว

    I can’t even.

  • @kjthreehundred8911
    @kjthreehundred8911 2 ปีที่แล้ว +1

    *hacked

  • @DeepakPandey-mf9ue
    @DeepakPandey-mf9ue 2 ปีที่แล้ว +2

    Make longer videos mark

    • @shaneofgames3825
      @shaneofgames3825 2 ปีที่แล้ว

      I wouldn’t complain about that, but that sounds a bit demanding haha

    • @DeepakPandey-mf9ue
      @DeepakPandey-mf9ue 2 ปีที่แล้ว +1

      @@shaneofgames3825 Love is demanding. Big Fan of this guy.

  • @Engravewetrust
    @Engravewetrust 2 ปีที่แล้ว

    I had uber rides that I got 100% of what the passenger paid I wonder if that was part of the hack

  • @utensilapparatus8692
    @utensilapparatus8692 2 ปีที่แล้ว

    thanks ya

  • @prajwalkulkarni3866
    @prajwalkulkarni3866 2 ปีที่แล้ว

    Access control !!!!!

  • @kimguldberg5676
    @kimguldberg5676 2 ปีที่แล้ว +2

    I am not sure I would call the attacker a "hacker" but I guess that is down to how you define a hacker

    • @brettsmith6298
      @brettsmith6298 2 ปีที่แล้ว +1

      While I understand your sentiment, SE is definitely hacking, but rather than exploiting a computer bug you're exploiting a human error

    • @kimguldberg5676
      @kimguldberg5676 2 ปีที่แล้ว +2

      @@brettsmith6298 My problem is that these days everything is hacking and everybody is a hacker and for me that renders the terms hacker and hacking useless and valueless and in reality describes nothing. In which case we might as well not use it

  • @TheBlackstarrt
    @TheBlackstarrt 2 ปีที่แล้ว

    Good video. This was clear to understand.

  • @wisteela
    @wisteela 2 ปีที่แล้ว

    Amazing

  • @strawberriesandcum
    @strawberriesandcum 2 ปีที่แล้ว

    This is funny i love it, hacking things is just to easy these days lmao, especialy with social engeering

  • @ettahadpanto3363
    @ettahadpanto3363 2 ปีที่แล้ว

    Great

  • @FabioTavano
    @FabioTavano 2 ปีที่แล้ว +1

    It seems so unbelievable that a major company has done so much mistakes in their CS posture, maybe it's just a canary token that got triggered?! 😉

  • @JRocLaHey
    @JRocLaHey 2 ปีที่แล้ว

    goat

  • @someyounggamer
    @someyounggamer 2 ปีที่แล้ว

    Senpai

  • @jamesmcmasters9392
    @jamesmcmasters9392 ปีที่แล้ว

    And Russia can't win a war this teenager need to work for Ukraine

  • @_SudarshanParase_N
    @_SudarshanParase_N 2 ปีที่แล้ว

    Sir wants help from you about ethical hacking ... Free way to learn ethical hacking... We can't afford a ProTV, hack the box, try hack me, CTF like this paid method .... Sir please make a video for a free road map of ethical hacking... Lots of people quit because of a money problem... Sir please sir you can understand what I am saying...

  • @drakusorz2007
    @drakusorz2007 2 ปีที่แล้ว

    wannacry hero, jonathan data.

  • @seanm3644
    @seanm3644 2 ปีที่แล้ว

    I wanna know who's spending 410k a year on T&E at uber lol

  • @burekhacks
    @burekhacks 2 ปีที่แล้ว

    Telegram the new dark web lmao

  • @Zenith343
    @Zenith343 2 ปีที่แล้ว

    1:03 I love the TryHackMe reference my dude xD

  • @myzel394
    @myzel394 2 ปีที่แล้ว

    Can you please sync your channel to Odysee ❤

  • @PenAce
    @PenAce 2 ปีที่แล้ว

    Would love to do a team-up on cyber news @Marcus

  • @EatSleepSkrrt
    @EatSleepSkrrt 2 ปีที่แล้ว

    Uber rockstar take 2 and 2k all by the same 16 year old

  • @sk0r
    @sk0r 2 ปีที่แล้ว +3

    Woohoo! 1st 😂😂

  • @vigvaryb
    @vigvaryb 2 ปีที่แล้ว +2

    My guy i like your videos, but youre so soft spoken. I know its genuinely hard to hit the perfect loudness/calm voice ratio and all but this is definitely an area you can improve upon

    • @gbubemia
      @gbubemia 2 ปีที่แล้ว +12

      Stop it! You are being greedy. Accept him as he is!!!

    • @potheadfromthefuture2450
      @potheadfromthefuture2450 2 ปีที่แล้ว +10

      I see the soft voice as a plus not a minus at all

    • @bonkekunene5910
      @bonkekunene5910 2 ปีที่แล้ว +2

      I think it's perfect as I find it calming

  • @age7753
    @age7753 2 ปีที่แล้ว

    So UBER EMPLOYEE login via onelogin??

  • @iota347
    @iota347 2 ปีที่แล้ว

    hello im uber employee please send me your crenditals plz

  • @TyrellJoanna
    @TyrellJoanna 2 ปีที่แล้ว

    Probably the 18-year-old did too much "hack the box" and "tryhackme".