Загрузка видео...

Не удалось загрузить видео

На главную

⚠️ ALERT Massive global data breach has leaked 183 million passwords, including Gmail, Yahoo & Outlook accounts Hackers used infostealer malware to steal login details from infected devices Change your password now!

175,226 просмотров • 10 месяцев назад •via X (Twitter)

Комментарии: 0

Нет доступных комментариев

Здесь появятся комментарии из оригинального поста

Похожие видео

I am the Chief Information Officer of a global enterprise. Last quarter, I eliminated MFA. Multi-factor authentication. The thing where you need two things to log in instead of one. It created friction. Employees complained. "Why do I need a code from my phone?" "This slows me down." "I forgot my authenticator app." I listened. That's leadership. I told the board: "We're removing barriers to productivity. Empowering our workforce. Choosing agility over friction." They promoted me on the spot. The CISO wept, no one likes him anyway. Our CISO is a Debby Downer. Our file-sharing portal now requires one thing: a password. Passwords are secure. People choose strong ones. They definitely don't reuse them across every website they've ever visited. That's just common sense. Last week, a criminal named Zestix stole our data. Also 49 other companies. Fifty organizations. One guy. One method: log in with stolen passwords. No exploits. No zero-days. No sophisticated nation-state attack. Just... passwords. The passwords came from infostealer malware. Employees downloaded infected files. The malware grabbed their saved credentials. Some of those credentials had been sitting in criminal databases for years. We didn't rotate them. Password rotation creates friction. Zestix targeted our ShareFile portal. The one with all our sensitive documents. Engineering data for three major utilities. He's selling that for $585,000. Military robotics intellectual property from an aerospace company. 2.3 terabytes of Brazilian Military Police health records. Active legal strategies from a law firm representing Mercedes-Benz. Technical safety data from Spain's largest airline. SCADA drawings and GPS coordinates of control rooms for a rail company. Fifty organizations. No MFA. Hudson Rock, the security firm that tracked this, wrote: "The attacker walks right in through the front door. No exploits, no cookies – just a password." I prefer to frame it differently. The attacker was welcomed in through an optimized authentication experience. We trusted our employees. We trusted our partners. We trusted that everyone uses unique, complex passwords that they never share or reuse. That's culture. Some people will say we should have enabled MFA. Those people don't understand velocity. Some people will say we should rotate credentials. Those people haven't seen our Q4 productivity metrics. Some people will say Zestix is a criminal. I prefer "external penetration testing consultant we didn't hire." The data is now on the dark web. Our security team is investigating. Our legal team is drafting statements. Our HR team is preparing the employee communication. Subject line: "Protecting What Matters: Our Commitment to Your Data." We're also launching a mandatory cybersecurity training. Module 1: "Why Passwords Are Your First Line of Defense." Module 2: "Recognizing Phishing Emails." Module 3: "The Importance of Multi-Factor Authentication." That last module is new. We're requiring it for all employees. The training, I mean. Not the MFA. MFA still creates friction.

Peter Girnus 🦅

48,560 просмотров • 7 месяцев назад

Tonight it was reported that the NZ govt has had its email system hacked. Just a reminder that digital systems bring risk, heck airline systems have been hacked. Everything is hackable. In fact in recent years literally millions of cars have been affected by hacked systems. What National hasn’t explained to the public is that GPS tracking technology is infinitely hackable. Multi billion dollar Japanese company Subaru has just this year found 800k of their vehicles have been hacked and surveilled, allowing cars to be started remotely and stolen. Story here : In 2022 Bloomberg reported that all GPS trackers can be hacked - with no known fix. Criminals could access real-time location data, enabling stalking, harassment, or vehicle theft. Tracking devices were also linked to crimes like domestic violence and attempted murder, indicating misuse by bad actors. Bishop claims the devices will only record distance travelled - bullshit. The devices will know whether you are using the vehicle on a public or a private road - how does it know that? It tracks you in real time like all these systems do. The weakness of this technology is inherent : Any GPS reliant technology is vulnerable, especially if it is A)low cost B) works with an API (application process interface) C) made in China The CEO of EROAD, the NZ company believed to get the contract spoke to ZB about how it would work. New cars will have a SIM card entered and an API used (see B) old cars will need hardware installed “we will make sure we use the cheapest technology possible” yikes! (See A) When asked how secure it is - his response “pretty robust” “fairly robust” “can’t really be tampered with” - doesn’t sound reassuring does it ? Made in China- well chances are the transponders will be made there won’t they ? (See C) I mean imagine invading a country - wouldn’t it be an awesome just to turn off everyone’s cars via a compromised GPS tracking system ? Listen below for the interview with EROAD’s CEO. Here are just a few GPS networks that have been compromised . 🔴MiCODUS MV720 GPS Trackers: 2022 This Chinese-made GPS tracker, used in approximately 1.5 million vehicles across 169 countries was accessed by hackers to remotely control the car, cut off fuel, disable vehicles, and surveil movements. Hackers could track vehicle locations, manipulate data, or immobilise vehicles, posing risks to individual consumers, government agencies, and corporations (e.g., Fortune 50 firms, military, and law enforcement). The vulnerabilities were deemed critical, with govt agencies jointly involved to secure the corrupted technology. 🔴ProTrack and iTrack GPS Trackers: In 2019, a hacker gained remote access to nearly 30,000 accounts of ProTrack and iTrack GPS trackers, both were Chinese-made. The hacker could track vehicles, access location histories, and even stop or accelerate the cars. The breach affected 27,000 accounts worldwide, allowing unauthorised tracking and control of vehicles. This vulnerability highlighted the risks of poor security practices in low-cost GPS trackers. 🔴Tracki GPS Tracker In 2024, a researcher found major security flaws in Tracki GPS trackers, sold by Trackimo and its subsidiaries. Hardcoded usernames and passwords in the web portal, customer support tools exposed location data, affecting up to 12 million users globally. The devices were marketed for vehicle tracking. 🔴Malwarebytes, August 2022. The report noted that Trackimo’s helpdesk assisted with nonconsensual tracking, and the data breach made it possible for criminals to monitor vehicles without consent. 🔴Thinkrace GPS Trackers In 2019, researchers found consistent API vulnerabilities in Thinkrace GPS trackers, used in vehicles, pet collars, and children’s watches. Most API calls lacked authentication, with devices allowing hackers to track users, change user emails, and force firmware updates at least 370 devices across 80 domains were vulnerable.

Holyhekatuiteka

10,835 просмотров • 1 год назад

Security Alert: OSINT Investigation – Fraud on Caixa Tem OSINT analysis has identified the commercialization of SIP infrastructure (“SIP CAIXA TEM”) for large-scale attacks against the Caixa Tem mobile banking app from Caixa Econômica Federal. 1. Acquisition of Calling Infrastructure • “SIP CAIXA TEM” = Brazilian VoIP SIP trunks optimized for mass calling. • Scalable packages: 5 channels for R$ 1,500 up to 100 channels for R$ 11,000, with prepaid minutes at R$ 0.10 per minute. • “Auto-dialer up to 50 threads + real-time transcription” for R$ 2,000 = automatic dialing software capable of running up to 50 simultaneous calls per operator (or per machine). Real-time speech-to-text allows the “agent” to read the victim’s responses without listening live, speeding up the scam and easing training/quality control. • Example number 558007260207 (= +55 800 726 0207) is the official Caixa 0800 hotline. The service enables spoofing (origin forgery) so the call appears to come directly from Caixa. 2. Execution of Vishing (the “scam call”) • The auto-dialer calls thousands of numbers (typically from leaked beneficiary databases). • Typical script: “Your Caixa Tem account has a problem/block/suspicion of fraud. To unblock it, confirm your details or make a test PIX to a secure account.” • The fraudster instructs the victim to open the Caixa Tem app live, share the screen, provide OTP codes, change registered email/phone/password, or install a fake app. • Once access is obtained, the scammer changes contact details, transfers the balance from the Digital Social Savings Account via PIX to “mule” accounts (money mules), and erases traces. Recommendation: Never provide passwords, codes, or authorize financial transactions over the phone. Contact Caixa exclusively through official channels. Report immediately: Caixa app or 0800 726 0207. #CyberSecurity #DigitalSecurity #DigitalFraud #CaixaTem #VishingBrazil #FraudAlert #OSINTBrazil #DigitalProtection @Caixa

Clandestine

146,293 просмотров • 5 месяцев назад

This info about META will BLOW YOUR MIND American “I worked in IT for like 13 years” “I learned a lot about data privacy — and social media and what apps are notoriously bad when it comes to data privacy. At the very top of the list, the worst offender, the worst app for data privacy is Facebook Messenger” “Let me just explain this to you. If you have Messenger on your phone and you don't have any other apps by Meta, you don't have Facebook, Instagram, threads, nothing. If the only thing from Meta you have on your phone is Messenger and you connect to a WiFi, Messenger makes a map of that Wi-Fi network. - It collects information about every single device that is connected to that network - So every phone, every computer, every tablet, every printer, every camera, every thermostat, every smart TV, every Roku device, and on every single one of those devices - They're collecting the name of the device, the IP address of the device, what type of device it is, whether or not your device has access to that device And this doesn't just happen on your home network, it happens on every Wi-Fi network you connect to. —- And it's a lot more information than just, oh, there's 200 devices connected to this network. No, it's detailed information about every single device. Like, here's a mobile device connected - it's an iPhone - It's titled Jeremy's iPhone - It's running iOS version blank blank - Its IP address is blank blank blank blank - Its MAC address or its hardware ID is blank blank blank But they also collect a crap ton of information from your actual phone. Like - The names, phone numbers, email addresses, and social links of literally everyone in your contacts. - Your location history - Your browsing history. - A detailed list of every single app that you've ever installed - YOUR PASSWORDS - YOUR FINGERPRINTS - YOUR FACE ID Spoiler alert, it's not. Downloading Messenger means that you consent to their terms of service. You give consent just by downloading the Messenger app. Using the service and downloading the app gives consent. Consent for your phone to be used as a data collection device. To collect data about every place you go and every person you're in contact with. — Messenger is easily the worst one”

Wall Street Apes

215,676 просмотров • 1 год назад

A Bloomberg Terminal costs $30,000/yr and still can't do a fraction of what Perplexity Computer just launched today 💻 It now connects directly to your bank accounts, credit cards, loans, and brokerage accounts through Plaid. Your full financial picture, from monthly spending to net worth to individual stock positions, sitting on top of 40+ live finance data sources including SEC filings, FactSet, S&P Global, and Coinbase. Every dollar you earn, spend, owe, and invest, cross-referenced against institutional-grade data in real time. You can walk up to this thing and say: → Run a risk analysis on my portfolio against the current tariff environment → Show me where my spending spiked last month and what's driving it → Build a net worth dashboard that tracks everything in one place → Flag any holdings that overlap with what insiders have been selling this quarter And it just does it. Pulls from your linked accounts, cross-references SEC filings, builds the output, and delivers a finished product. The system running underneath is Perplexity Computer. It orchestrates 19 models simultaneously, breaks any goal into subtasks, spins up specialized agents for each one, and keeps working after you walk away. One model handles the reasoning. Another does the research. Another writes the code. Another builds the visualization. All coordinated automatically. Last month they launched with brokerage data only and someone built a Bloomberg Terminal clone in a single afternoon. That post did 7.5 million views. Now they've expanded to your entire financial life: checking, savings, credit cards, loans, and investments all in one place. Wall Street pays $30K a year for a terminal with 30,000 function commands built over four decades. It won't replace Bloomberg for institutional traders executing billion-dollar orders. But for everyone else, the gap just got a lot smaller.

Josh Kale

151,395 просмотров • 4 месяцев назад

EXCLUSIVE: Star Health is a $1.4B revenue insurance company whose CISO sold ~31 million Indians' data from salary to PAN card to a Chinese hacker for $43k. Ever wondered how these things happen? Here's a breakdown of the events "allegedly" with video proof. 1. Amarjeet Khanuja, CISO of Star Health, reaches out to xenZen through a referral from denol on encrypted chat app Tox on July 6, 2024. 2. xenZen says yes and they negotiate and land on $28k for customer data on Monero (crypto). CISO doesn't know Bitcoin is a bad idea for this nor has ever used escrow. 3. CISO sends hacker login credential and an API endpoint w/details on their proton mail. Hacker sends money and gets it. 4. On July 20, CISO says I can also give you all the claims data. They agree on $15k and repeat the above. 5. Five days later, hacker says his access was revoked and CISO says "You've taken 5TB and I want $150k now because senior management wants a cut." 6. Hacker asks for a refund and gives final warning. 7. xenZen posted a sale listing on BreachForums for diplomatic passports of India (unrelated). 8. Sep 25 is when the starhealthleak website drops with 2 Telegram bots for customer and claims data. From private sources, xenZen says he's bought and sold data from Indian companies before. Attached is video evidence which is unlikely to be spoofed. The media did not care until I posted about it yesterday. Star Health responded by legal threats against Telegram and Cloudflare and a forensic investigation. People in power in India (and perhaps elsewhere) will sell your data in a heartbeat. Why? No one seems to care.

Deedy

668,228 просмотров • 1 год назад

‼️🚨 BREAKING: Meta's AI feature let attackers hijack Instagram accounts for days with nothing but a username. It was being A/B tested on a slice of users, and if you were in the test, you couldn't turn it off. Among the casualties: the official Obama White House account. The method: get on a VPN near the target's region, ask the Meta AI support agent to send a verification code to any email you control, relay that code back to the agent, and it hands over a password reset link. Without ID or human review. From there, the account is yours. The flaw lived in the AI's logic layer, which acted on recovery requests with no real identity checks. One researcher compared it to the Roblox AI assistant exploit from days earlier, where you needed a target's billing info. Instagram was easier: the username and a regional VPN were enough and victims reported sessions revoked and passwords changed with no email, text, or push alert at all. By the time it went public, the method was common knowledge in blackhat Telegram circles and had been used to allegedly hijack 100+ high-value accounts. Accounts hit: - obamawhitehouse (the archived official Obama White House account, ~2.4M followers. Hackers posted an AI-generated image captioned "The White House is under Shiites' control," plus cryptic anti-Trump and pro-Iranian Stories. Meta confirmed the hack and scrubbed it. - Premium short handles like hey and jowo, worth over $1M combined, stolen and flipped on Telegram. - albert (owned by Albert Renshaw), whose owner publicly reported being locked out and unable to reach Meta support. Meta has since patched it. There was no public acknowledgment.

International Cyber Digest

326,167 просмотров • 2 месяцев назад

🚨Kim Dotcom Exposes Alleged Palantir Hack With Explosive Claims That Could Rock the World 🌎 Internet legend Kim Dotcom has broken this story. He says Palantir was hacked using an AI agent that got full super-user access. If true, the fallout could be massive for governments, leaders, and global security. Here are the key allegations in simple terms: - Peter Thiel and Alex Karp ran huge secret surveillance on world leaders and top business figures. - They hold thousands of hours of recorded and searchable private talks with Donald Trump, JD Vance, and Elon Musk. - They installed secret backdoors in phones, cars, and private jets of major leaders and built the largest blackmail file ever seen. - Palantir is building nuclear and biological weapons for Ukraine with the CIA to defeat Russia. They think they are one year from success and are using fake peace talks to keep Russia tied down. - Palantir created the AI targeting system that caused most Palestinian deaths in Gaza. - Palantir works as a direct arm of the CIA. All data from clients around the world gets copied straight into a secret CIA cloud. - Palantir has turned into the most dangerous company on Earth. Employees have the right to know what their AI is really being used for. - The stolen Palantir data will now be handed to Russia and/or China. Kim Dotcom says he was picked as the trusted person to release this. He was not part of the hack and does not know the hackers, but he confirms the breach happened.

J Stewart

85,366 просмотров • 6 месяцев назад

MUST WATCH:🚨 Watch this crucial 20-minute video featuring prominent Democrats, computer science professors, and election security experts discussing the vulnerabilities in America's election system. They warn that the system is online, easily hackable, and often operates on outdated Windows 7 or older systems. Key Points: Easily Hackable Voting Equipment: All electronic voting equipment can be hacked as they must receive programming before each election from memory cards prepared on election management systems. These systems are often connected to the internet and run outdated Windows versions. Spread of Malware: If a county election management system is infected with malware, it can spread to USB drives, which then transfer it to voting machines, scanners, and ballot-marking devices throughout the county. Programming Practices: Most U.S. election systems are programmed by local county officials or third-party vendors. They use previously used USB drives on internet-connected computers before plugging them into scanners, tabulators, and voting machines. Outdated Systems: In 2019, the Associated Press reported that most of the 10,000 election jurisdictions, including swing states, were still using Windows 7 or older systems for ballot production, vote programming, counting, and reporting. End of Windows 7 Support: Windows 7 reached its end of life on January 14, 2020, with Microsoft stopping technical support and security updates. Remote Access and Modems: Voting machine manufacturers have installed remote-access software and wireless modems, connecting voting machines directly to the internet. NBC News reported in 2020 that ES&S, the largest U.S. election machine vendor, had installed at least 14,000 modems. Dominion Voting Systems: The second-largest vendor, Dominion, has publicly acknowledged using modems in their machines and running remote-access software during the 2020 election. For example, in Georgia, election worker Susan Voyles testified that Dominion employees operated remotely on ballot-marking devices and poll pads. Findings from Wisconsin and Michigan: Investigations found Dominion and ES&S machines online and connected to the internet. In Michigan, a modem chip was discovered in an ES&S voting machine, potentially allowing hackers to intercept and manipulate election results. Conclusion: Hackers can potentially infiltrate elections through vulnerable USB cards, election management systems, and voting machines themselves. This underscores the urgent need for securing America's election infrastructure.

KanekoaTheGreat

1,388,889 просмотров • 2 лет назад

'Climate Change' Will Be Used As A Reason To Take Away Your Home & Confine You To A Smart City. Del Bigtree "There will be cameras on every lamppost, watching you from every nook & cranny, turning your heat up & down for you, telling you whether you can drive 2 blocks from home" Insurance companies are citing "climate change" as a pretext to raise natural disaster insurance premiums by 3 to 10 times, even though insured losses have remained nearly flat over the past decade. This practice threatens homeowners with unaffordable policies, forcing some to sell their homes or risk foreclosure as banks demand coverage. Del Bigtree warns that this trend will lead to widespread home losses across America, turning cities like Los Angeles into heavily surveilled 'smart cities' under authoritarian control. Smart Cities Will Be The End Of Democracy & Autonomy: --Privacy Concerns-- Data Collection: Smart cities rely on vast amounts of data from various sources, including surveillance cameras, sensors & personal devices. This data is used to optimize city functions, but it also raises serious privacy issues. Residents find their every move tracked, leading to a loss of personal privacy. Data Security: The more data is collected, the greater the risk of being hacked or misused. Cybersecurity threats are a significant concern & a breach leads to sensitive personal information being exposed or exploited. --Environmental Impact-- E-Waste: Smart cities involves the rapid turnover of electronic devices, leading to an increase in electronic waste. Resource Consumption: Production & maintenance of these technologies require significant amounts of energy & raw materials, offsetting any benefits. --Social Implications-- Surveillance State: The extensive use of surveillance technologies to constantly monitor citizens, stifles freedom of expression & creates a culture of fear. Loss of Community: The focus on technology & efficiency leads to a loss of community spirit & human interaction. Residents are isolated as they rely more on digital interfaces than on personal relationships. --Health Risks-- Radiation Exposure: The widespread deployment of wireless technologies in smart cities, including 5G networks, raises health risks with prolonged exposure to electromagnetic radiation. Mental Health: The constant connectivity & surveillance in smart cities contributes to stress & anxiety among residents, negatively impacting their mental well being. --Infrastructure Vulnerability-- Cyber Attacks: Smart city infrastructure, heavily reliant on interconnected digital systems, is vulnerable to cyber-attacks. A successful attack disrupts critical services such as power, water & transportation, causing widespread chaos. System Failures: Overreliance on technology leads to significant problems when systems fail or malfunction. Resulting in disruptions to essential services & risks to public safety. --Ethical Concerns-- Bias in Algorithms: The algorithms used in smart city technologies perpetuate existing biases, leading to unequal treatment of different demographic groups. Resulting in discriminatory practices & reinforcing social inequalities. Lack of Transparency: Smart city systems make opaque decisions, lacking transparency in how they use data & make decisions. This erodes trust in public institutions & undermines democratic processes. 👇Smart Cities & Ethical Implications👇 👇Smart Cities Are Dangerous👇 👇Smart Cities & Citizens Discontent👇 Speakers: Del Bigtree & Sean Kelly | Digital Social Hour Podcast Video: @fitconqueror1

Valerie Anne Smith

21,620 просмотров • 1 год назад

🚨SOMALIFICATION OF UTAH IS RAGING ON (UPDATE) As I warned in my earlier alert.... “ALERT UTAH - YOUR RED STATE IS QUIETLY BECOMING ‘LITTLE SOMALIA’” In the heart of conservative Mormon country, a Somali Bantu Muslim community of roughly 10,000 is openly celebrating its rapid growth - admitting they’re “taking over slowly,” pocketing $5.7 MILLION in federal grants, and steering their kids toward the full Islamic “deen” with youth programs, mosques, and community events. Now the political payoff has arrived, and it’s a full-on far-left nightmare. 🚨Liban Mohamed, a 27-year-old Black Muslim born in Logan and raised in Ogden to Somali immigrant parents, just announced his run for U.S. House in Utah’s new 1st Congressional District. This is the son of that very community, and he’s running on an extreme, radical platform straight from his own campaign video and site: ⚠️Abolish ICE & End all immigration detention, open borders on steroids ⚠️ Full citizenship path for Dreamers + “pathways to legal status” for undocumented immigrants, amnesty for millions ⚠️ Medicare for All complete socialist government takeover of healthcare as a “human right,” scrap private insurance entirely ⚠️ Universal childcare so “no parent has to choose between their child and their career,” more taxpayer-funded dependency ⚠️ Housing as a “right” restrict/ban corporations and private equity from buying single-family homes while dumping massive federal spending on “permanently affordable” units and ending “unfair evictions.” ⚠️ $20 federal minimum wage (indexed to inflation) - job-killing wage mandates ⚠️ Cap CEO-to-worker pay ratios with tax penalties on companies - wealth redistribution ⚠️Pass the PRO Act + repeal all “Right-to-Work” laws to force union power ⚠️ Equality Act - nationwide woke LGBTQ+ takeover of housing, jobs, schools, bathrooms, sports, shelters, and all federally funded programs ⚠️ Overturn Citizens United to ban corporate and PAC spending, while flooding the system with leftist money ⚠️ He whines that Utahns lead the nation in charitable giving, yet “our leaders take us for granted” while pushing to socialize everything and crying about “genocide” in Gaza.... 🚨Even the LDS Church is helping fuel this takeover: They have a policy of donating $25,000 of your tithing dollars to build every new or expanding mosque in Utah, including $25,000 straight to Utah’s largest mega-mosque (the Utah Islamic Center in West Jordan). Utahns - especially Latter-day Saints - your state is being transformed from the inside while your leaders host Iftars and your own Church writes checks for mosques with your tithing money. This is demographic conquest in America’s reddest stronghold. The “Mormon state” is on track to become the “Little Somalia” of the Rockies. Demand answers. Pause the refugee flow. Protect your culture. No reciprocity. No surrender. Pay attention, Utah.

Amy Mek

740,923 просмотров • 4 месяцев назад