DEF CON 31 War Stories - Tracking the Worlds Dumbest Cyber Mercenaries - Cooper Quintin

แชร์
ฝัง
  • เผยแพร่เมื่อ 28 ก.ย. 2024
  • For the last 6 years my colleagues and I have been tracking the activities of the cyber-mercenaries we call Dark Caracal. In this time we have observed them make a number of hilarious mistakes which have allowed us to gain crucial insights into their activities and victims. In this talk we will discuss the story of Dark Caracal, the mistakes they have made, and how they have managed to remain effective despite quite possibly being the dumbest APT to ever exist.

ความคิดเห็น • 120

  • @Chiberia
    @Chiberia 7 หลายเดือนก่อน +179

    Audio guy has his gain slider to "mcdonalds drivethrough"

    • @theflowpowa42oshow
      @theflowpowa42oshow 4 หลายเดือนก่อน +12

      This comment didn't make me laugh but it did make me hungry.

    • @TheTylrBllmn
      @TheTylrBllmn 7 วันที่ผ่านมา +2

      Where d'ya get a gain slider?! All they gave me were knobs 😢

    • @josephschaefer9163
      @josephschaefer9163 วันที่ผ่านมา

      At least it's not set to taco bell

  • @xplinux22
    @xplinux22 ปีที่แล้ว +148

    I was waiting so eagerly for this one to be posted. Ever since I saw the EFF deeplinks post about it, the title had amused me so much that I knew I wanted to learn more. Was not disappointed, I enjoyed the ride!

    • @rjbrake
      @rjbrake ปีที่แล้ว

      Dude sounds like he's got a mouth full of marbles and jello

  • @adrianalexandrov7730
    @adrianalexandrov7730 10 หลายเดือนก่อน +32

    in Russian "bandook" means racketeer, mugger, hooligan, etc. Basically a criminal prone to violent crimes.
    Would be written as "бандюк"

    • @DavidUrulski-wq9de
      @DavidUrulski-wq9de 7 หลายเดือนก่อน +1

      True, also backwards it spells koodnab, which almost sounds like koolnab, cool nab, cool noob. Bit rude.

  • @magicponyrides
    @magicponyrides 7 หลายเดือนก่อน +5

    Jesus Christ this talk was incredible. I had no idea what I was in for.

  • @-r-495
    @-r-495 ปีที่แล้ว +56

    thank you for giving Jack a shoutout.
    great guy, great podcast!

    • @sagebrushrepair
      @sagebrushrepair ปีที่แล้ว +5

      Jackery Sider!

    • @olommentes
      @olommentes ปีที่แล้ว +9

      although every time I say this, another mic will clip into infinity at defcon, but this is Darknet Diaries

  • @brujua7
    @brujua7 ปีที่แล้ว +9

    Super insteresting. Much love to EFF!

  • @pietrolux
    @pietrolux ปีที่แล้ว +12

    Easy on that Gain button next time please. Cool talk!

    • @n_sweep
      @n_sweep 11 หลายเดือนก่อน +5

      deaf con

  • @I_hu85ghjo
    @I_hu85ghjo 5 หลายเดือนก่อน +6

    2:50 the irony of the crowd while same shit happened to Assange. Hypocrisy makes humans blind

  • @dakoderii4221
    @dakoderii4221 3 หลายเดือนก่อน +2

    Kazakhstan has some crazy "monuments" consisting of phallic symbols and a 5 pointed star with a barbecue joint inside. They serve barbecue ala "Fried Green Tomatoes" style.

  • @Sk0lzky
    @Sk0lzky 11 หลายเดือนก่อน +6

    Pallas cat (manul) and caracal are entirely different species. Someone must've gotten confused :v

  • @raretapes8057
    @raretapes8057 11 หลายเดือนก่อน +2

    What the hell was that left-handed cross-handshake?

  • @Hukkinen
    @Hukkinen ปีที่แล้ว +7

    I think they rather sell subcontracting for Conti ransomware than aim primarily for using Conti against political targets..

  • @jscheunemann
    @jscheunemann ปีที่แล้ว +11

    Irina needs to have a news person like the great Borat to help with Kazakh government

  • @andreyns89
    @andreyns89 ปีที่แล้ว

    2:46 - Wow. What a twist. 😯😯😯

  • @JohnDoe-bd5sz
    @JohnDoe-bd5sz 11 หลายเดือนก่อน +2

    I love these videos but please please please fire those in charge of sound for these videos, the sound part is terrible

  • @kalmarnagyandras
    @kalmarnagyandras ปีที่แล้ว +8

    Shouty audio hurts

  • @sassycat77
    @sassycat77 10 หลายเดือนก่อน

    what a great talk,

  • @katanasteel
    @katanasteel 11 หลายเดือนก่อน

    Banduke and dark caracal are today's cdc backoffice

  • @radattk3145
    @radattk3145 13 วันที่ผ่านมา

    whatsapp definitely has a backdoor for the US gov

  • @chidaruma_
    @chidaruma_ 11 หลายเดือนก่อน

    Amazing talk 😂

  • @motionthings
    @motionthings ปีที่แล้ว +9

    I hear you hired the "NASL sound guy" :p

    • @talphazero1036
      @talphazero1036 ปีที่แล้ว +6

      Dude was outta breath from standing and talking. I'm asthmatic myself and go through it ever so often, but seeing it from the other side is reallllyyyyyyy off-putting. Good CON regardless

  • @jeffbrownstain
    @jeffbrownstain ปีที่แล้ว +1

    If Rache Bartmoss was a corpo skid 😂

  • @74KU
    @74KU 10 หลายเดือนก่อน +1

    Ah shit, this dude is tracking me
    Also, take a drink of water the lip smacking is intense.

  • @alch3myau
    @alch3myau 27 วันที่ผ่านมา

    2022 video, 1963 audio.

  • @purestench9263
    @purestench9263 6 หลายเดือนก่อน

    Pallas and caracal cats are completely different. I think he meant pallas' are relatee to manuls or some shit

  • @lalanotlistening
    @lalanotlistening 10 หลายเดือนก่อน +1

    mic’s too hot 😖

  • @douglasknapp4059
    @douglasknapp4059 ปีที่แล้ว +5

    UK trying to stop End-to-End encryption. Just enacted a law requiring Messaging services like WhatsApp and Signal to back door their apps.

    • @plebius
      @plebius ปีที่แล้ว +6

      Technically correct but misses one point. They admitted the software does not exist and will not enforce it. Not that it matters, it's there in law now so you can bet that it will come into force the next big news story when they can enforce it without backlash.

  • @emd2837
    @emd2837 6 หลายเดือนก่อน

    well that was interesting in a unintentional kind of way. eff really? oh dear

  • @tuskiomisham
    @tuskiomisham ปีที่แล้ว +12

    Lol a caracal is not a pallas cat but ok

    • @artej11
      @artej11 ปีที่แล้ว +5

      Big Floppa :3

    • @OwO-.
      @OwO-. ปีที่แล้ว +12

      probably switched it up with manul, because pallas cat is another name for the manul. also they are both adorable :3

    • @JeremyAndersonBoise
      @JeremyAndersonBoise ปีที่แล้ว +2

      Is this a cat talk?

    • @jamestaylor3805
      @jamestaylor3805 11 หลายเดือนก่อน

      Maybe as a joke... intentional slight twist. US students grow in an environment where they ridicule the mascot of rival schools. And black p$**y may not have made it past committee, and shadow cat is trademarked.

  • @repairstudio4940
    @repairstudio4940 ปีที่แล้ว +1

    Haha stupor effective. 😁

  • @erikschiegg68
    @erikschiegg68 ปีที่แล้ว

    Is Irina Petroushova a cover name for Russel Brand?

  • @huckleberryfinn8795
    @huckleberryfinn8795 11 หลายเดือนก่อน +5

    He's acting like we can speak freely in America. They destroy yojr life when you speak out against the establishment here too.

    • @Blackgriffonphoenixg
      @Blackgriffonphoenixg 11 หลายเดือนก่อน +6

      no they don't, don't be such a schizo.

  • @beni8ification
    @beni8ification 11 หลายเดือนก่อน +1

    This reeks glowies, yikes

  • @djzio
    @djzio 10 หลายเดือนก่อน

    You'd think someone there knew something about how to record live audio

  • @tartas1995
    @tartas1995 11 หลายเดือนก่อน +93

    Honestly the best compliment for a podcast like darknet Diaries is that real it experts listen to it

  • @ZincLeadAlloy
    @ZincLeadAlloy ปีที่แล้ว +109

    It’s interesting to see the whole cybersecurity ecosystem that involves real pros, malicious actors and intelligent TH-camrs haha!

    • @sativagirl1885
      @sativagirl1885 11 หลายเดือนก่อน +3

      *Imagine* this world's power structure not as a pyramid but a hypercube, resting in the palm of your hand. You're made in God's image. Create!

  • @prostytroll
    @prostytroll 11 หลายเดือนก่อน +5

    2:44 "...escaping to Russia to get a little bit more freedom - ha,ha,ha" - I wonder if Snowden and Assange would find it funny...

  • @CYB3Rsynth
    @CYB3Rsynth ปีที่แล้ว +22

    I'm having a freaky Mandela effect type moment right now because I feel like I've watched this all the way through before but it was posted 10 days ago and I have not watched any defcon content in the past month

    • @wraithfvcker
      @wraithfvcker ปีที่แล้ว +10

      You appear to be a user of psychedelic drugs, basing this off of the mocking clown avatar (which is a common DMT entity) and synth being in your name.
      If this is the case, I experienced something similar with a music video the first time I saw it. It was unmistakable that I had not seen it, yet because I was on LSD I had the most potent deja vu I have ever experienced while watching it, and I also because I felt had seen it before, I thought the video was designed to look like things look to someone on LSD. Then when I watched it the second time, it was not like I remembered.
      You may have triggered something similar by having used psychedelics recently, basically a feeling of deja vu.
      Don't do kids, drugs. 😊🎉

    • @Truth_Unleashed
      @Truth_Unleashed ปีที่แล้ว +7

      Nope, but darknet diaries will likely do a story on this. He does mention the conti ransomware group from a darknet diaries episode.

    • @dannydetonator
      @dannydetonator ปีที่แล้ว

      This happens not only to some drug users. You might have watched a different presentation on cybersecurity or ransomware attacks (could be TEDx or the same Darknet Diaries. It has similar vibe and memory is not reliable. Yeah, i do dope periodically..

    • @chriscerne7095
      @chriscerne7095 ปีที่แล้ว +8

      Same. I got deja vu when he was talking about tracking down the building from the WiFi hotspot. But after doing some Googling, I realized that some of the info was in the Darknet Diaries Dark Caracal episode.

    • @CYB3Rsynth
      @CYB3Rsynth 11 หลายเดือนก่อน

      @@chriscerne7095 that's it!

  • @4Nanook
    @4Nanook 2 หลายเดือนก่อน +5

    Pallas Cat is NOT another name for a Caracal, they are ENTIRELY different cats, in territory, in appearance, and in behavior.

    • @izd4
      @izd4 3 วันที่ผ่านมา

      Furthermore, manuls are cooler than caracals

  • @JeremyAndersonBoise
    @JeremyAndersonBoise ปีที่แล้ว +6

    Xampp for the fail 😂

  • @capability-snob
    @capability-snob ปีที่แล้ว +25

    The next battle may be secure operating systems and hardware. Capability systems that allow for easy control and auditing of security decisions need to find their way into the mainstream.

    • @sativagirl1885
      @sativagirl1885 11 หลายเดือนก่อน

      #RFC 420, secure smoke signals are available for take out or in!

    • @jamestaylor3805
      @jamestaylor3805 11 หลายเดือนก่อน +1

      Self surviving systems that have extremely limited connectivity periods IMHO

  • @I_hu85ghjo
    @I_hu85ghjo 5 หลายเดือนก่อน +1

    6:23

  • @chessdominos
    @chessdominos ปีที่แล้ว +3

    Who is the hecker?

  • @AndreeaCe
    @AndreeaCe วันที่ผ่านมา

    So I end up at G2E Asia, I request it on the last call after refusing something else, they agree. Near the time to get ready for the delegation, I get very mentally beaten up. In the end I went. I managed to find my way in that situation as they didn't manage to give me an Exhibitor badge since the changes were made on short call. Yeah...Welp...what else?

  • @Studio23Media
    @Studio23Media ปีที่แล้ว +11

    "Escaping to Russia to get a little more freedom" Oh the irony... 🥴🤣

    • @radattk3145
      @radattk3145 13 วันที่ผ่านมา

      like you aren't censored on all platforms unless you go 100% along with this regime

    • @Studio23Media
      @Studio23Media 13 วันที่ผ่านมา

      @@radattk3145 LMAO no. I'm not 🤡

  • @tonygardner4077
    @tonygardner4077 ปีที่แล้ว +18

    distorted mic.... ekk

  • @andrewferguson6901
    @andrewferguson6901 ปีที่แล้ว +12

    This story seems familiar, did someone else publish about these events in the past year or two?

    • @jamestaylor3805
      @jamestaylor3805 11 หลายเดือนก่อน +2

      Dark Caracal episodes on other shows.

  • @Milkman76
    @Milkman76 9 หลายเดือนก่อน +1

    Heyyyyy it's COPS for the hacker crowd. 🤣 I wonder where most of these cyber mercenaries come from.

  • @eyezikandexploits
    @eyezikandexploits 15 วันที่ผ่านมา

    Shoutout darknet diaries

  • @Theabstractblu
    @Theabstractblu 5 หลายเดือนก่อน +1

    shoutout #DarknetDiaries

  • @barmooj
    @barmooj ปีที่แล้ว +1

    Banduke means bastard in Lebanese 😂

  • @majdps995
    @majdps995 ปีที่แล้ว +8

    Interesting story. Seems like the threat actor never heard of opsec.

    • @HsvgamingFreak
      @HsvgamingFreak หลายเดือนก่อน

      אל תחשוב על זה מוחמד אנחנו 20 צעדים לפניך

  • @mariarahelvarnhagen2729
    @mariarahelvarnhagen2729 ปีที่แล้ว

    Is It The Band Glass Animals & Their Record Label & Family ?

  • @joaobino9431
    @joaobino9431 10 หลายเดือนก่อน

    12:18 Nazaré Tedesco. This Brazilian meme is just everywhere huehuehuehue....

  • @BGodsVoice
    @BGodsVoice 26 วันที่ผ่านมา

    Good stuff. Very insightful

  • @Auth_Zero_
    @Auth_Zero_ 11 หลายเดือนก่อน

    Is PrinceAli Prince Roni fom DX-143?

  • @emd2837
    @emd2837 6 หลายเดือนก่อน

    the vocal fry is telling

  • @Theabstractblu
    @Theabstractblu 5 หลายเดือนก่อน

    Man took me on a journey great job

  • @NeostormXLMAX
    @NeostormXLMAX 23 วันที่ผ่านมา +2

    But the fact that she moved to russia and was not arrested debunks the idea about the west saying everything is censored, same with snowden going to hong kong first

  • @JuliaYamYam
    @JuliaYamYam 11 หลายเดือนก่อน

    great talk, thank you!

  • @MikeHunt-rw4gf
    @MikeHunt-rw4gf 10 หลายเดือนก่อน

    Algorithm.

  • @157-40_T
    @157-40_T ปีที่แล้ว

  • @7_of_9
    @7_of_9 ปีที่แล้ว

    Great stuff!

  • @sativagirl1885
    @sativagirl1885 11 หลายเดือนก่อน +1

    #MoooooooooooooooooooooooooooooooooooooooooooooooooonLighting by government authorities is a real kosher cash cow.

  • @frosty1433
    @frosty1433 ปีที่แล้ว

    What the movie Fat Pizza and then listen to their response: 11:44

  • @goldnutter412
    @goldnutter412 ปีที่แล้ว

    🤣

  • @TheAndjelika
    @TheAndjelika ปีที่แล้ว +53

    It is still fascinating to me how Americans laugh at Russia when they talk about freedom. I guess it's a remnant of the Cold War, but they don't seem to realize that the "land of the free" is just a brand, and that the USA today doesn't even rank in the top 10 among countries that can be considered free at all, in fact, it's right up there with Russia. Here are the first 10 (Switzerland, New Zealand, Ireland, Norway, Denmark, Sweden, Finland, Netherlands, Luxembourg ) ... Yes, there is at least one hacker who had to flee the USA and seek asylum in Russia.

    • @fifthfangofmetsudo
      @fifthfangofmetsudo ปีที่แล้ว +23

      Yes, nothing free about America... apart from the cost of living in your head as it seems from this comment

    • @Nitidus
      @Nitidus ปีที่แล้ว

      Such a stupid, ignorant comparison can only come from someone who has never had to live in Russia nor got to know anyone who faced persecution there. Also, let me tell you that the freedom index does not represent an objective truth. Trying to make it look lit it was is actively deceiving. God, I never thought I'd have to defend the fuc|king US one day...

    • @thelatearthurmorgan6158
      @thelatearthurmorgan6158 ปีที่แล้ว

      The people of New Zealand are prisoners in their own country.

    • @davidkamaunu7887
      @davidkamaunu7887 ปีที่แล้ว +6

      Yes the USSR fought the Cold War to keep Germany divided and maintain a buffer against future invasion after WW2…
      The US fought the Cold War only to become as autocratic and oppressive as the USSR was. 😢

    • @plebius
      @plebius ปีที่แล้ว

      Man this comment thread is a s*** show. Comparing the US to Russia. Really, where you mysteriously fall out of windows for being critical. Where everyone accepts that the courts are rigged and the ballot boxes too. Is that what we are comparing. I also can't believe I am defending the US on this one, but wtf is that comparison.

  • @0xbitbybit
    @0xbitbybit ปีที่แล้ว +2

    Why does he have different colored arms/hands? 🤔😂

  • @girl4632
    @girl4632 11 หลายเดือนก่อน

    But in no sense opening pdf install malware.
    It's not some kind of magic.
    Tell exactly what it was.
    I don't think it was based on any vulnerability in pdf opener, not pdf could be executed.
    It must be fooled by extension.

    • @stubstunner
      @stubstunner 11 หลายเดือนก่อน

      Fake version of pdf opener.

  • @yomajo
    @yomajo 11 หลายเดือนก่อน +1

    For full record, current Kazakhstan president Tolkayev is awesome!

  • @mingmang713
    @mingmang713 11 หลายเดือนก่อน +2

    Seems like an interesting presentation just a shame it's presented by this guy