Finding WEIRD Phishing Websites
ฝัง
- เผยแพร่เมื่อ 16 พ.ค. 2024
- jh.live/censys || Get started with the leading Internet Intelligence Platform for threat hunting and attack surface management -- find what is exposed out on the open Internet with Censys! jh.live/censys
Learn Cybersecurity - Name Your Price Training with John Hammond: nameyourpricetraining.com
WATCH MORE:
Dark Web & Cybercrime Investigations: • Tracking Cybercrime on...
Malware & Hacker Tradecraft: • Malware Analysis & Thr...
📧JOIN MY NEWSLETTER ➡ jh.live/email
🙏SUPPORT THE CHANNEL ➡ jh.live/patreon
🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
🌎FOLLOW ME EVERYWHERE ➡ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/discord ↔ jh.live/instagram ↔ jh.live/tiktok
💥 SEND ME MALWARE ➡ jh.live/malware
🔥TH-cam ALGORITHM ➡ Like, Comment, & Subscribe!
yup, thats Dynmap, a web Minecraft map.
Gotta love going down rabbit holes... hehe
And Railway System Map is from Minecraft Transit Railway
I often get spam mails with links to those pages.
One of the actors fails to protect their backdoor, so i can just walk in open the file manager they keep exposed.
Then i rename the index files to break the landing pages.
Really want to automate it, but *legal* is evil.
You know, all the information you should never share with a stranger on the internet.
A certain shrimp applauds your knowledge
You constrained by the sponsorship: cannot use "screw you" as an email address
Me, a free individual: deleting their databases with SQL injection
you're a hero to some bro
YOU'RE A HERO
based
How could you tease us like that with the exe file! Follow up vid?!
I've been getting spam texts for months telling me my USPS package has arrived at the warehouse but can't be delivered due to incomplete address information. It then asks me to confirm my address at an obviously fake link.
That's a real Minecraft server
Live overflow will absolutely love it 🤣
hey, you found my Minecraft server!
I hope you are joking 🤣
Is it for serious?
lmao
😂
Yy🎉🎉y🎉@@BendaCZ❤
Truth be told, i just love you exploring the internet and see what happens :P Hope these will show up more in the future. Sure, phishing was in focus, but you ended up going in all other different directions and even cracking the password for the zipfile xD Love it!
The Minecraft server looks interesting! That map view you opened seemed to be Dynmap, which is a mod/plugin to create a Google maps like view of your server, definitely someone with quite the world and those color blocks on the maps were likely player claims within the game using another mod/plugin!
Green spotlight makes that background foam look good
it's so fun to write scripts to fill their databases with garbage bro
Never been so excited for front desk information
The Minecraft Map is a plugin called DynMap, which uses an open port to process and host that live map you were interacting with. It can be configured to show players, mobs, waypoints and more
I've gotten a bunch of these as well as the "Thank you for your payment" with a transaction number that is a link and, of course, a downloadable file. They are usually sent from a Gmail address with a person's name and the sender's name is different.
17:50 that colab would be so cool
How much does Censys cost??
There’s a free version that gives you 250 searches a month with 10 pages worth of results. Tbh not bad for basic usage. To go up to 500 searches tho, you gotta pay $69 US. That right there’s a ripoff
Super fun video! Thanks for making this. :)
Hey John I was wondering when you send requests to these actual *bad* websites (not some CTF challenge), do you use a VPN? If no then if the guys behind the website check their logs and see your IP has made some weird requests to their server then won't they target you?
IP address is worthless
also I am like 99% certain that he would be using a vpn
17:45 that almost sounds like Owen Wilson's "wow"
I love how you said “hosted in Ohio apparently”
Well it could be located on a server just about anywhere.
censys not for usual user :P
Today I learned that there is an open source phising tool... interesting.
this work?
is brave browser safer than chrome?
if you are smart, every browser is the same
Nos all the same
Just don't use chrome, edge, opera or safari. Those are basically spyware.
@@linux_for_noobs how? Can you pls explain? I am using chrome rn.
@@linux_for_noobs Can you explain how? btw I am using Chrome
11:27 xD
On eBay s3
Dude seriously, why are all your sponsors pretty expensive? If I'm to assume beginners, and people just learning Cybersecurity to gain information to pass a cert or get a job, are they really going to be interested in purchasing these tools, services, etc? I mean, I won't say scammy but it is SURE looking like you're here for the money if I'm to be honest.
Hmm🫠 you found Minecraft server 😂
I get this all the time lol
finds sites like this and writes code to send bogus info ;)~
Jesus loves you John
Its a real dynamap lol
Here before viral
first! i love ur videos
Bro got the angy discord pfp
4th
Correct!!! (Yeah!!)
1st
Nope
3rd
Correct!!