// MENU // 00:00 - We're doing this in the real world! 00:24 - Back with OccupyTheWeb 01:38 - Overview //The Hacker's Dilemma 03:16 - The Plan//Destroying Evil Corp's Backups 06:10 - High Temperature Destroy Tape Backups? 07:10 - Social Engineering//SMS Spoofing 11:48 - Why This Could Work 13:04 - Comment!//Spoofing Services That Work? 143:53 - Setup//Raspberry Pi with Kali 15:25 - Virtual Machine Setup 16:01 - Netcat//Setting Up Hacking Pi 17:50 - Netcat//Connecting to Hacking Pi 18:43 - Options//Reverse Shell//Rogue WiFi AP 20:01 - Recon with Nmap 22:26 - OTW Real World Hack//Schneider 23:59 - Gaining Access to /etc/passwd 26:01 - After Publishing the Hack Online 28:48 - Scanning for PLCs 30:19 - Modbus CLI//Memory Probing Tool 31:34 - How This Could Be Used in Mr. Robot 32:29 - Cyberwar//SCADA Hacking Overlooked 32:55 - Summary & Notes 34:04 - SCADA Network Cabling 35:41 - SCADA Hacking//Research! 36:11 - The Challenge in Mr Robot 36:39 - Mr. Robot Hacks//Realistic? 37:11 - SCADA Hacking Sim? 38:16 - Resources to Learn SCADA 38:48 - More Mr Robot? Leave a Comment! Disclaimer: This video is for educational purposes only. May it be a warning to all of us. Secure your systems and do not connect unprotected systems to the Internet. In this video we discuss the hacks in Mr Robot Season 1 Episode 5. Which other episodes or technologies do you want us to cover in future videos? Please comment. // OTW Discount // Use the code BOMBAL to get a 20% discount off anything from OTW's website: davidbombal.wiki/otw // Videos mentioned // Kali Linux install on Raspberry Pi: kzbin.info/www/bejne/hqK1h6Joo850lZo OTW Interview and Scada demo with Sombra_around_tech: kzbin.info/www/bejne/bHKoqHWKfKuEnMU // Previous video // Hack like Mr Robot Ep 1: kzbin.info/www/bejne/aarMhZKNgtGiqck // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: twitter.com/davidbombal Instagram: instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal KZbin: kzbin.info // Occupy The Web social // Twitter: twitter.com/three_cube // Occupy The Web books // Linux Basics for Hackers: amzn.to/3JlAQXe Getting Started Becoming a Master Hacker: amzn.to/3qCQbvh // Other books // The Linux Command Line: amzn.to/3ihGP3j How Linux Works: amzn.to/3qeCHoY // MY STUFF // www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com Disclaimer: This video is for educational purposes only. Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
@Justin1337Sane2 жыл бұрын
Lets say AI someday goes rouge.. is there any hope left for humans or could it be hacked and stopped ?
@mrwhosmynameagain2 жыл бұрын
@@Justin1337Sane Water
@mrwhosmynameagain2 жыл бұрын
@@Justin1337Sane A backdoor could be left in it, but it could become sentient and erase it. We could just douse them with water though. I'm sure they would get smart and upload their code to a lot of very expensive server farms, thus making killing it cost us a fortune. But we could ultimately kill them with water if we really had to
@Justin1337Sane2 жыл бұрын
@@mrwhosmynameagain Thanks that makes sense to me ..
@ej53642 жыл бұрын
M. . . .l
@weidup2 жыл бұрын
YES! Finally, I’ve been waiting for this. Thanks so much guys, very interesting series, these are probably my favorite of your videos.
@leesmith75472 жыл бұрын
David you do so much for us! You motivate and educate at the same time. Thank you so much from all of us.
@davidbombal2 жыл бұрын
Thank you Lee! You're welcome!
@cy_wareye73952 жыл бұрын
Indeed. That video make my day.
@testimony72332 жыл бұрын
Thank you once again....
@saadhamid56092 жыл бұрын
Very nice teacher and I want to buying your course
@infotruther Жыл бұрын
Amen
@Kdaddyis Жыл бұрын
Motivation + education+ entertainment is all about this video
@hamed93802 жыл бұрын
I joined many Hacking channel but your channel is the best and different , your accent is very nice , you aren't filming or playing some role or having scenarios.👍 I hope you success and more money and good memories.
@elementalkeed23392 жыл бұрын
David thank you so much, I've learned a lot from your channel. From NAMIBIA🇳🇦🇳🇦
@SgtStarSlayer Жыл бұрын
As an industrial electrician , SCADA is also being used on windmills, hydro damns, and solar panel grids.
@angelalopez1461 Жыл бұрын
Thanks!!! and never stop doing what you greatly do!!!!
@davidbombal Жыл бұрын
Thank you!
@squatplugenthusiast36672 жыл бұрын
I recently took a course called SCADS Systems Security funded by the NSA through 6 different universities. This is a very good basic summary of the offensive capability against PLCs.
@aaronwhite17862 жыл бұрын
Another great one! I found and tried reaching out to that company that showed up last time with their exposed network to inform them. I didn't hear back, so hopefully they know about it!
@Synclon2 жыл бұрын
Thanks For The Video David 🙌🏼
@davidbombal2 жыл бұрын
you're welcome!
@faresjemai3153 Жыл бұрын
I'm an industrial software developer and all you've been talking about in true, once I built a whole factory system and all i needed is to plug in my laptop to the switcher, i changed the whole PLC code and installed 3 services in the server so simply without even having access to anything
@amermoftah6732 жыл бұрын
Thank you sir, you are creative in every content you post, thank you again and your guest ❤️
@HopliteSecurity2 жыл бұрын
This was next level. Thank you David for the amazing content and sharing this knowledge with the community. It truly makes a difference.
@eval_is_evil Жыл бұрын
Dont think this hack would work in real life scenario.
@bobnoob14672 жыл бұрын
David, it means the world to me that you do this. Please keep it up.
@arghyl2 жыл бұрын
Wow fantastic follow up! This should be a series like mythbusters but for hacking. Thank you for another great video!
@TheOriginalJohnDoe2 жыл бұрын
I absolutely LOVE these series. Keep them going! I’m a big fan of occupytheweb as well. Very soothing voice, great explanations and the last video of David with occupytheweb made me even buy occupytheweb his book, which was a really good read! Keep the content coming fellows! Now, let me go grab some chips, a coke and lean back and enjoy this amazing video.
@davidbombal2 жыл бұрын
Happy to hear that John Doe!
@zuna212 жыл бұрын
@Fsociety Play around with the tool. Try it on your own wi-fi, it's very easy to use, but it's a great idea you mentioned, the tool is very effective
@Dr.DomAPI2 жыл бұрын
So much wait for this video 😅 thanks David
@davidbombal2 жыл бұрын
Thank you. I hope you enjoy the video!
@bytegroove2 жыл бұрын
Thanks!
@huyvuquang20412 жыл бұрын
Very love the series of hacking with this guy explaining mr robot and demonstrate it in real life. Hope you guys keep up this good work
@MrRockNRoll2 жыл бұрын
These are my fav YT vids, please keep 'em going :D
@cartoonchannel55842 жыл бұрын
Dude, this is the only video that works. Thanks for posting!
@axelcodr2 жыл бұрын
I'm still reading his book for basics for Linux but I really enjoy it and have already learned how to do all basic and intermediate stuff on the bash console. It's tons of fun and I actually almost found an admin job at Siemens!
@eval_is_evil Жыл бұрын
I mean... the book Linux Basics for Hackers is extremely basic and leaves out 80% of stuff an admin should know. It doesnt really tackle in detail the network aspects or the OS vulnerabilities. Not sure how this almost landed you an admin job but I bet it was because of your previous knowledge. Dont under sell yourself dude.
@logansmith62152 жыл бұрын
I was super excited for this video, then bummed when got pushed back but it was worth the wait!! love and appreicate everything you guys do!!!
@patthetech2 жыл бұрын
Nice episode. Getting OT to have any security considerations is like herding cats then pulling their teeth. Most of them think vlans/airgaps are enough sadly. To the timeline comment about Mr Robot, I'm pretty sure there were a time or two the naration said about how this might take a while and then the shell popped and he said about how lucky that was. I know the technical director on a bts/commentary track acknowledged it was sped up exactly because no one wants to watch "real" hacking real time.
@dragonsage69092 жыл бұрын
Great episode, I love OTW's stuff, great info! Ty
@yuhiahtyun56652 жыл бұрын
I'm a big fan of OTW, thanks for this David !
@siraj37502 жыл бұрын
LOT'S OF LOVE FROM INDIA♥️
@tubetrollin2 жыл бұрын
that edit at 29:20 was way too good haha
@MichaelStepniewski Жыл бұрын
Using the terminal multiplexer like "screen" could help mitigate those disconnect 30:00 issues since you could re-attach later without breaking the running commands.
@lukementon92802 жыл бұрын
I'd love the get Occupy the web's opinion on the bank hack in season 4. Love the videos David!
@gamereditor59ner222 жыл бұрын
Oh snap!! I have that book, Linux Basic for hackers, and currently reading!!!! Love it everytime I read it!!! Recommend it!!!
@jeffalves35662 жыл бұрын
Loved it! I'd like to see that one that he checks himself out from the hospital. Cheers!
@chanceleram2 жыл бұрын
Wow, I was expecting this episode so much !
@paulw77382 жыл бұрын
Interesting to hear from a SCADA/ICS professional's perspective!
@firosiam77862 жыл бұрын
Long last guess youtube really verified the he'll out of this vedios to finally let this be able to post I watched the whole series of Mr robot waiting for this vedio 😂
@davidbombal2 жыл бұрын
Lots and lots of trouble getting this video sorted out 🙁
@firosiam77862 жыл бұрын
@@davidbombal u knw If u really have to edit major parts of this vedios out then why don't u put an edited version here and mayb an uncut version of the interviews on ur website after a few days like a theater release of a film and then a n uncut version coming out on an ott platform after a certain period if that is possible at all to do .
@shounakghosh85952 жыл бұрын
Oh man I've been waiting for this for so long!
@ziegenminister2 жыл бұрын
Amazing Video like always. I love this format! As an idea for the next video maybe explain the sms hack in season 4. If its too awesome for KZbin maybe you can explain it on your website OTW.
@bonjov85832 жыл бұрын
David you are doing what is expected from a guru like you.. FABULOS!! may be the show has not considered that netcat has been replaced with ncat ... "Ncat is a feature-packed networking utility which reads and writes data across networks from the command line. Ncat was written for the Nmap Project as a much-improved reimplementation of the venerable Netcat. " taken from nmap project site
@ahmedahmedx96002 жыл бұрын
OTW is amazing!!!, Thank you david, this channel is gold !!
@viderien75442 жыл бұрын
Super interesting video ! I would like to suggest the hack in the very fist episode, fist scene: Elliot says that the onion routing protocol is not really anonymous. Could you explain how he could have done it ?
@CollinsCurtis-ze4ms10 ай бұрын
Damn. The piping of commands rocks✊✊
@darkguardian1314 Жыл бұрын
Much more informative than 2600 "Off the Hook" adio/podcasts out of New York... 2600 is like some college kids let loose in a radio station monkeying around and asking for donations.
@jimgorycki4013 Жыл бұрын
This is why you firewall the utility subnet. In my previous job, we created a VRF utility and firewalled off the system so that only a handful of techs that work on HVAC, lighting control, etc have access to this. And their workstation / laptop was constantly scanned for vulnerabilities.
@joellove6353 Жыл бұрын
Careful. Driving traffic off youtube towards content that isn't allowed on youtube seems like a dark grey area. Cheers Mate!
@gatty.2 жыл бұрын
Wow, some rich information in this one! Thanks OTW and David!
@DrTumis2 жыл бұрын
I love this, you are realy motivate me to learn it, I appreciate it. Hacking is very interesting topic. Thank you so much!!
@Ray-mq7rb2 жыл бұрын
I've been spoofing calls from the Nokia days, I'm glad it's still chugging along!
@ebukaanthony74186 ай бұрын
Teach me
@SavageScientist2 жыл бұрын
Man this shit is addictive, Love this series on one of my favorite TV shows.
@shriyanshgupta99512 жыл бұрын
Thx a lot this is something i wanted to learn from long time !!! WE WANT MORE OTW VIDEOS !!
@abdoulieybojang36752 жыл бұрын
Waw been such a while.... Love to the content...
@davidbombal2 жыл бұрын
Thank you Adboulie!
@GameWithSNAKE2 жыл бұрын
Love Your content and also love you thank you for giving so so much knowledge ❤️❤️❤️
@duckdruid4402 жыл бұрын
We want more Hack like Mr.robot videos and also david you are awesome
@MrCoSrenegade2 жыл бұрын
The "hello friend" moment at the beginning was awesome .... you both did your "homework". ^^ Entertaining and educational, thanks to the both of you!
@MrCoSrenegade2 жыл бұрын
oh and your editors .... they did their homework too!
@chanceleram2 жыл бұрын
It's exciting to see OTW working, how he do the his magic...how he thinks..., helped us understand how the real life of a penetration tester is. Amazing!
@freedtmg162 жыл бұрын
I've been waiting for this one!
@naturalsoundlab43072 жыл бұрын
I love this serij,plz continue and made part 3,4,5,......as much as u can😁
@rhondaverma63582 жыл бұрын
I wish I were smart enough to do this stuff. It amazes me.
@richardclifford96412 жыл бұрын
I know an sms spoofer that works
@dj_kimarley2 жыл бұрын
very informative occupy the web💯 waiting to join the simulation lab
@brenno37352 жыл бұрын
Can you please do a technical talk on how to open (suspected) malicious links safely and what you can learn from opening them.
@photokarim2 жыл бұрын
Thank you David. Great content. Maybe you can show up the Mac OS hack (episode before last in season 4) if not mistaken. Where Elliot hack the other Elliot Mac OS machine.
@JoeElliotSA Жыл бұрын
Excellent and interesting series of videos. 👍😁
@jay_Zam2 жыл бұрын
Bro I really do appreciate you for this help, Thanks! I subscribed and Liked the video.
@saipatel86452 жыл бұрын
Hey david, At 7:57 stranger said use textbelt for manually usage by api but here in india and almost half of the asia has banned taxtbelt and i think there is no alternative for it, it is but almost are paids. Then how it will possible.
@Bjon102 жыл бұрын
David this is awesome!! How about you have OTW explain every singe hack in the series, and make the videos a little big longer please just like they were in the beginning other than that keep rocking it kings ♥
@priiv182 жыл бұрын
David Did You Prefer Kali Or Parrot OS ?
@DerelictNacho2 жыл бұрын
What an awesome video series.
@petrusyp96042 жыл бұрын
Thank you for this informative and educational video!
@scholar78792 жыл бұрын
YES! 😂 It's finally here
@davidbombal2 жыл бұрын
Better late than never I suppose 😀 What a lot of hassle it has been 🙁
@scholar78792 жыл бұрын
@@davidbombal I would always come and check the Playlist to see if I had missed the notification loll.. Great great contents man.. We love it!
@ConnectionTimeout Жыл бұрын
I’ve done HVAC controls for 15 years. Modbus almost is never used for HVAC. Modbus is a protocol widely used in electrical/power monitoring systems. BACnet ( Building Automation Control net ) is the most widely used protocol in the HVAC industry.
@pratikdevale25172 жыл бұрын
David sir please make a video on scammer calls and how to deal with them with our hacking skills to protect ourself and our whole family from this scammers and fraudents please
@kwiatriot61902 жыл бұрын
Great series, love any video with OTW! Question, I am assuming your access RPI and attack RPI were on the same network for the demo. How would the netcat connection be handled with the attack RPI being behind NAT in the building in the real world?
@lorenzofranzosa17802 жыл бұрын
That’s the point unless they let intentionally open the wan port, that is actually unrealistic in a critical system like that, you can’t connect at all with the other RPI. But the episode is a hell of a podcast and OTW is a real master in the sport, even the best can miss. Big Up David 👍
@eval_is_evil Жыл бұрын
@@lorenzofranzosa1780hmm... I dont doubt he knows his stuff however his books tackle extremely basic stuff with sporadic errors. I wouldnt reccomend them unless you need a quick over all picture how systems may (underlined) get compromised.
@danpadro88832 жыл бұрын
Really enjoyed this
@MisterK-YT2 жыл бұрын
For anyone looking to send SMS... the textbelt method is needlessly complicated GIVEN that you cannot spoof the sender. Since you can’t spoof the sender, you might as well just use something like Google Voice or TextNow (I think is what it’s called). Granted, you may lose some anonymity - but even using textbelt you have to give them your payment info so it’s not that anonymous either. If Textbelt could spoof a number, it’d be a different story. But if you’re just looking for a phone number that your target doesn’t recognize, there are countless simple apps you can use. Burner is another one.
@mrwhosmynameagain2 жыл бұрын
Bruh your comment has this random scroll bar underneath it for some reason, never seen that before. But if you use a backtrack version of Kali, the Social Engineering Toolkit should still have SMS Spoofing
@MisterK-YT2 жыл бұрын
@@mrwhosmynameagain I have the old versions of SET, but I don’t believe sms spoofing works in it..? Doesn’t it just fail because the service it relied on is gone? It’d be dope if I’m wrong and you’re right. Can u confirm?
@aniketsharma73332 жыл бұрын
It's finally here 😀
@davidbombal2 жыл бұрын
Better late than never I suppose 😀
@cyberjynx2 жыл бұрын
Enjoying the video, you might want to blur his phone number in the ams spoofing section if thats not a fake 🙈
@Haze14342 жыл бұрын
Regards connecting to the Pi from externally; one could still use the option of creating a WiFi access point on the planted RPi, then have a second, battery-powered RPi sitting in range, say in a hedge or something, with a satellite router attached. Two hops instead of one, and the battery would last long enough for them to pull off the hack.
@Glanmire3 Жыл бұрын
You just needs only one "Coded PHY" BT device and the range be enough.
@Haze1434 Жыл бұрын
@@Glanmire3 Nice idea, do you have experience? Any recommended instructions?
@terryevans197629 күн бұрын
Yes, magnetism is affected by temperature. Even without destroying the tapes you can cause bit degradation and loss at higher temps.
@miscellaneouszone2 жыл бұрын
Great video and very informative. Thanks David for great content.
@seb_gibbs2 жыл бұрын
book coming out in the winter, cool. I'm in Australia, its Winter here, we getting it now!
@gothparadigm2 жыл бұрын
i'm still in the middle of my front-end aspirations; however, eventually, i'd love to branch off into this realm (ethical, of course) in the future. 💜
@s4ms3piol302 жыл бұрын
this is soo high quality!
@alaxjak8760 Жыл бұрын
How can I buy the "Linux Basic For Hackers" and "Getting Started Becoming a Master Hacker" books from Bangladesh. I wanna buy the books.
@JessieS2 жыл бұрын
Love these videos ❤️❤️
@gordonmassiah41402 жыл бұрын
Thank you, love your content.
@cybericanintel2 жыл бұрын
Another Great video! Worth waiting for. Thanks David And MasterOTW you guys make learning so much fun. Forever a follower to you both!
@zakb.71089 ай бұрын
Thank you for this video! This is priceless! I am just wondering if the pi is inside Steel mountain network and you want to netcat into it it sill needs to be connected to the internet?
@mvip49272 жыл бұрын
It worked! Tank you sir.
@drakezen2 жыл бұрын
Just love these videos! Can't wait for the next in the series
@believeit54502 жыл бұрын
Thanks David , So what is the recommend the book recommended by OTW for learning about scada ?
@abdulrahimalbalushi11742 жыл бұрын
Very thanks david 🌹
@appher2 жыл бұрын
yes it works brother ! many thanks
@brittislove2 жыл бұрын
Thank you for these videos!
@Frankie_Freedom Жыл бұрын
This is awesome stuff love watching these videos. Currently a sys admin wish I had the energy to dive deeper in CyberSec, just don't have the energy. So will continue watching the videos for now.
@ebooooo12132 жыл бұрын
Thanks a lot David for the amazing content that you always post. Can you make a video for the scene in Ron’s coffee of Mr. Robot? Thanks again
@josephsimms8817 Жыл бұрын
i was working in back office accounts receivable for a phone company and i was in charge of keeping written documentation for paper backup of records and they used iron mountain
@nigel32702 жыл бұрын
David, a link to buy raspberry pi would be great. There isn't one in your amazon store. Thank you!
@geofreymusic42222 жыл бұрын
Hi David thanks for the awesome channel, do you perhaps have the link to his courses?
@prestonbaum5451 Жыл бұрын
Would be quite interesting to hear how to better protect ourselves from cvv penetration. If you guys could go into as much depth as possible. Alot of us would love to hear from your expertise.
@SamTechYT2 жыл бұрын
Let's go To bad it's only 40min I guess the episode in Mr robot is around 40min so that's good enough but still haha amazing content