Jump to content

Linus Tech Tips, Tech Quickie, Tech Linked channels hacked

betav17
Message added by Spotty,

The Linus Tech Tips, TechLinked, and TechQuickie Youtube channels have been restored.

A video explaining what happened is now up:

 

 

12 minutes ago, TheTripleDeuce said:

y'all need to realize it was a social engineering attack, the signs are EVERYWHERE

The majority of hacks are typically social engineering.  Now if people were saying YouTube were hacked, then it would be overblown, but LTT was hacked.

 

25 minutes ago, n3ptune_cpu said:

i think this is what happened

 

- a manager or employee in LTT was searching to downlaod something 
- a google ad was placed on top of the search results with “the download link”
- this “download link” claims to be legit however it’s actually redline stealer
- they copy the site and also abuse discord cdn to distribute the links
- probably that person downloaded it and ran it
- which then now LTT has redline on one of their systems which allows access to the entire channels and accounts 

There actually some unique ways of doing things now.  Like what ThioJoe did in one of his videos, you could have an "exe" that uses the unicode character to invert it...so you even with file extensions on it looks like "LegitDocaexe.docx" (and it uses a Word Icon).  It's actually something that if someone isn't paying attention could easily miss.  So it's not even as often as finding the wrong exe, and could easily come from a targeted email attack, from a spoofed address of a sponsor.

 

I've actually seen a similar type of attack before (spoofed email), pretending to be an owner asking for a wire (mixed in with the correct wording and timing of the owner being abroad and making a similar request and it nearly worked)

3735928559 - Beware of the dead beef

Link to comment
Share on other sites

Link to post
Share on other sites

This is just terrible, though. I checked, all the videos that were "unlisted" are now actually gone. It could be that YouTube is still working on it, or maybe the channel was flagged so many times that its just gone...I am hoping this gets fixed really soon

I am an A/V Event Technician. My Computer Specs: Intel Core i5-6600K | Gigabyte GA-H110M-A | 32GB Corsair Vengeance DDR4-2400 | MSI Gaming x4 DDR4-2400 | Thermaltake S100 | Samsung 860 Evo 500GB | Cooler Master MW550 | Acer K243Y | Cooler Master ML240R ARGB | Corsair K55 | Corsair Harpoon RGB | Windows 11 Pro

Link to comment
Share on other sites

Link to post
Share on other sites

4 minutes ago, Moortu said:

They actually make the files huge so that they can't be uploaded to totalvirus scan and it takes a while to scan by a virus scanner.

It can even go as far as to not have any bad code at first, but it downloads it later. so when it is first scanned the virus scan will not find anything

Yeah but even if it downloads it, behaviour analysis should catch that once it executes... Redline is not exactly the newest in the world after all...

Link to comment
Share on other sites

Link to post
Share on other sites

23 minutes ago, Moortu said:

Perhaps not

I doubt just anyone can log in and upload videos.

So they can narrow it down to computers of people that are able to log in

I don't know LMGs architecture IT-Wise, but worst case would be that the malware infected the Domain Controller (if they have one) and is basically on every PC... And server... Unlikely though I think...

Link to comment
Share on other sites

Link to post
Share on other sites

2 minutes ago, TechXplore said:

This is just terrible, though. I checked, all the videos that were "unlisted" are now actually gone. It could be that YouTube is still working on it, or maybe the channel was flagged so many times that its just gone...I am hoping this gets fixed really soon

YouTube nuked the channels to finally get them out of the hijackers' hands. I'm sure they'll put them back once the fire's out.

 

2 minutes ago, Wolves of the West said:

Considering the outage event, you think we could stream techtips on floatplane without paying?

There's always ShortCircuit and Channel Super Fun.

 

 

I bet they could stream evergreen content to Twitch if they had the streaming PC set up for it, but I don't think they'd open up Floatplane for free unless it really hit the fan.

 

I sold my soul for ProSupport.

Link to comment
Share on other sites

Link to post
Share on other sites

I really hope they can fix this situation

CPU: Intel Core i5-11400
MOTHERBOARD: Asus TUF GAMING B560-PLUS
GPU: MSI GeForce RTX 3050 GAMING X
RAM: 16GB DDR4 Corsair Vengeance LPX
HDD: 500 GB
SSD: 960GB
2ND SSD: 220 GB
CASE: Antec p180
PSU: Be-Quiet! Dark Power Pro 10 550W 80+ Gold

[Peripherals]

KEYBOARD: Razer Blackwidow Chroma v2 With Razer Orange Switches
MOUSE: Razer Deathadder Chroma
HEADSET: HyperX Cloudstinger
MONITOR: Asus VL278H 27¨ 75Hz

Link to comment
Share on other sites

Link to post
Share on other sites

Geez just got the news, and feel so bad. I feel the urge to do something about this. Not helping out LMG directly but for example finding out legal ways to crack down on crypto scammers? As a long time loyal fan such a thing would be the least I could do. Does anyone have any idea's ?

Link to comment
Share on other sites

Link to post
Share on other sites

Just now, Phrozenbit said:

Geez just got the news, and feel so bad. I feel the urge to do something about this. Not helping out LMG directly but for example finding out legal ways to crack down on crypto scammers? As a long time loyal fan such a thing would be the least I could do. Does anyone have any idea's ?

I saw some tesla streams in my sub notifications, and it actually took me a bit to realize who it happened to...

Link to comment
Share on other sites

Link to post
Share on other sites

Just now, Phrozenbit said:

Geez just got the news, and feel so bad. I feel the urge to do something about this. Not helping out LMG directly but for example finding out legal ways to crack down on crypto scammers? As a long time loyal fan such a thing would be the least I could do. Does anyone have any idea's ?

buy floteplane sub watch ltt

Link to comment
Share on other sites

Link to post
Share on other sites

4 minutes ago, Wolves of the West said:

Considering the outage event, you think we could stream techtips on floatplane without paying?

 

I can't even watch the video of Linus crying. lol Too soon?

Unlikely. Floatplane I believe only supports paid viewers as I doubt they have the capital to finance public streaming. It would take dev work to make a public stream that I doubt they want to do. They do stream WAN on twitch though so if they are still down on YouTube tomorrow check their twitch channel.

Link to comment
Share on other sites

Link to post
Share on other sites

I hope we they will make a video about this and youtube will finally does something about this , because it is terrifying that no matter how good is your password it does nothing in terms of security of your account

Link to comment
Share on other sites

Link to post
Share on other sites

3 hours ago, Ethan_Hohl said:

And how would this help preventing scams? 

Google gift cards should be outlawed, too, by this type of logic.

Especially cash money and gold is used extensively for criminal activities worldwide.

Why not outlaw all of this and go back to trading food or things directly in exchange?

 

...just kidding

 

I'm obviously talking about hacking and ransomwares. Ever since crypto emerged, hacking & ransomwares have skyrocketed. With the small percentage fraction of people who get rich out of this, crypto has proven to be more harmful than good in society and when that happens, this is when governments needs to step in.

Link to comment
Share on other sites

Link to post
Share on other sites

Just now, Robonwars said:

buy floteplane sub watch ltt

Will definitely do that now, this event is probably one of the reasons why they are building their own platform

Link to comment
Share on other sites

Link to post
Share on other sites

4 hours ago, NelizMastr said:

That's not LTT. LTT channel is offline. That's TQ

Oh ok, not quite as bad then, still really bad though

Link to comment
Share on other sites

Link to post
Share on other sites

5 minutes ago, Needfuldoer said:

There's always ShortCircuit and Channel Super Fun.

Can we get some Tech Tips?

No, we have Tech Tips at home
The Tech Tips we have at home:

 

image.png

 

CPU: Intel i7 6700k  | Motherboard: Gigabyte Z170x Gaming 5 | RAM: 2x16GB 3000MHz Corsair Vengeance LPX | GPU: Gigabyte Aorus GTX 1080ti | PSU: Corsair RM750x (2018) | Case: BeQuiet SilentBase 800 | Cooler: Arctic Freezer 34 eSports | SSD: Samsung 970 Evo 500GB + Samsung 840 500GB + Crucial MX500 2TB | Monitor: Acer Predator XB271HU + Samsung BX2450

Link to comment
Share on other sites

Link to post
Share on other sites

20 minutes ago, Moortu said:

Perhaps not

I doubt just anyone can log in and upload videos.

So they can narrow it down to computers of people that are able to log in

Looking at what is left it's the one responsible for just the 3 channels. I am sure that LMG clips and ShortCircuit has different person responsible for the content and most likely for the uploads than the LTT, Channel Super Fun has always been a bit as it's own entity and I would guess same goes for Mac Address and They're Just Movies.

 

At least we can rule Linus out of the suspects since LinusCatTips is unaffected. Who would have thought LCT living longer than LTT 🤣

Link to comment
Share on other sites

Link to post
Share on other sites

I wonder whether it was actually Social Engineering, or if there was an exploit that just allowed for 0-click RCE... It definitely looks like the actual machine of someone responsible for management of these channels got compromised... 

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, LightJack05 said:

I wonder whether it was actually Social Engineering, or if there was an exploit that just allowed for 0-click RCE... It definitely looks like the actual machine of someone responsible for management of these channels got compromised... 

maybe yt has a 0day exploit by the volume of channels being hacked lately

Link to comment
Share on other sites

Link to post
Share on other sites

16 minutes ago, TechXplore said:

This is just terrible, though. I checked, all the videos that were "unlisted" are now actually gone. It could be that YouTube is still working on it, or maybe the channel was flagged so many times that its just gone...I am hoping this gets fixed really soon

LTT will be fine. All the videos will get restored. A channel this big, YouTube will bend over backwards for them. 

Corps aren't your friends. "Bottleneck calculators" are BS. Only suckers buy based on brand. It's your PC, do what makes you happy.  If your build meets your needs, you don't need anyone else to "rate" it for you. And talking about being part of a "master race" is cringe. Watch this space for further truths people need to hear.

 

Ryzen 7 5800X3D | ASRock X570 PG Velocita | PowerColor Red Devil RX 6900 XT | 4x8GB Crucial Ballistix 3600mt/s CL16

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, PointyJackalope said:

I hope we they will make a video about this and youtube will finally does something about this , because it is terrifying that no matter how good is your password it does nothing in terms of security of your account

They don't even have to post the video to get YouTube to act on this. They know that Linus is either going to cover this on WAN show or that he will make a dedicated video on it. They are probably putting in every effort they can into showing they are taking action so that when the video comes they look good.

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now


×