Google's Zip Domains Are WORSE Than I Thought

  Рет қаралды 179,665

ThioJoe

ThioJoe

Күн бұрын

There's no way they thought this through...
My Previous Video About Zip Domains: • Google Did Something R...
⇒ Become a channel member for special emojis, early videos, and more! Check it out here: kzbin.infojoin
▼ Time Stamps: ▼
0:00 - What's Going On?
0:31 - Recap: The Other Problem
1:13 - Auto-Converted Links
2:36 - A Disaster Waiting to Happen
4:06 - Cause of Confusion
5:44 - Why Was This Allowed?
6:40 - A Counter Argument
7:37 - What's To Be Done?
8:10 - Not Just .Zip
8:28 - Blocking All .Zip TLDs
▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬
Merch ⇨ teespring.com/stores/thiojoe
⇨ / thiojoe
⇨ / thiojoe
⇨ / thiojoetv
My Gear & Equipment ⇨ kit.co/ThioJoe
▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬

Пікірлер: 1 100
@tdrg_
@tdrg_ Жыл бұрын
Everybody gangsta until Google adds .pdf
@ThioJoe
@ThioJoe Жыл бұрын
Oh god no
@Mainyehc
@Mainyehc Жыл бұрын
I was thinking the exact same thing. But why stop at that? We also need .txt, .rtf and .docx 😂
@KevanTess
@KevanTess Жыл бұрын
I haven't seen anyone mention .html as a top level domain name.
@Samu2010lolcats
@Samu2010lolcats Жыл бұрын
@@Mainyehc also .rar .7z .xls .xlsx .ppt .pptx
@gragogflying-anvil3605
@gragogflying-anvil3605 Жыл бұрын
Let me suggest .html and .php as TLDs.
@Rodius
@Rodius Жыл бұрын
They really went through proposals and meetings but apparently everyone at Google still thought this was a good idea
@DarkxPunk
@DarkxPunk Жыл бұрын
Must have been with a bunch of Yes men…
@chargeminecraft
@chargeminecraft Жыл бұрын
This is like a office building meme, where a CEO agrees with everyone except one person, that person states that they should make it secure as much as possible, otherwise it might not be a good idea, then they throw that person out of window.
@blueberrypoptart2349
@blueberrypoptart2349 Жыл бұрын
Common sense goes out the window when money is to be made.
@Bob-1802
@Bob-1802 Жыл бұрын
It is a known fact in psychology that meetings are, in general, not very usefull because people fear the dominant personality, usually the big boss in the room.
@Noobogonis
@Noobogonis Жыл бұрын
.secure is a better extension smh
@the_box
@the_box Жыл бұрын
ICANN: "No one types file names into their address bar". Since most browser address bars these days double as a search bar, I would imagine a lot of file names are typed in when people wish to find a specific file.
@YTANDY100
@YTANDY100 Жыл бұрын
@the box i do that a lot to find missing files or just to find out what a file is for 🙂
@OrangeC7
@OrangeC7 Жыл бұрын
If you meant you can type a local file path into the browser address bar, that's exactly my first thought hearing that as well Edit: Actually I think you might have been talking about something else, but either way I think we both have good points
@wumwum42
@wumwum42 Жыл бұрын
Did they EVER see a windows 10 search bar???
@Janz_u
@Janz_u Жыл бұрын
It’s concerning how out of touch with modern times ICANN is
@whyishoudini
@whyishoudini Жыл бұрын
literally old internet explorer would work as a file browser, who approved this shit
@NATESOR
@NATESOR Жыл бұрын
Jesus, how can ICANN be that out of touch. That quote is staggering. It doesn't even address most of the most critical objections, but then also some people almost exclusively use their web browser for cloud-based file exploring. It's 100% going to happen constantly. What an absolute dunce...
@williamdrum9899
@williamdrum9899 Жыл бұрын
Sounds to me like their opinion is bought and paid for. Or their grandparents are all dead already idk
@UriahStuff
@UriahStuff Жыл бұрын
ICANN not understand how they are that dumb.
@AyeeSecret
@AyeeSecret Жыл бұрын
More like ICANNOT
@malborboss
@malborboss Жыл бұрын
Because THEYCANN
@alexuk2000
@alexuk2000 Жыл бұрын
ICANN and the W3C for that matter are extremely out of touch.
@RolandHazoto
@RolandHazoto Жыл бұрын
That forty two zip domain is beautiful. A perfect example of Chaotic Neutral. It archives a piece of internet history while reinforcing the old adage "don't click on weird links". *chef's kiss*
@jonragnarsson
@jonragnarsson Жыл бұрын
Trolling is a art.
@aogasd
@aogasd Жыл бұрын
Forty two zip is a memetic hazard I literally struggled to not accidentally start typing it into the search bar, _as a search word_ while curious to read more about it Can't even Google about it or accidentally risk somehow navigating to the site
@arcticike8017
@arcticike8017 Жыл бұрын
@@aogasd No joke, I'm security conscious and I was even fighting off the urge. Especially since I wasn't familiar with it before, so I wanted to see how old the malware was and what exactly it did/remediation options for an infected PC, first inclination was to just type it out in my browser search bar and it took me way too long to realize what I was about to do. Didn't start typing yet, but man was I close. This is almost more dangerous for the tech savvy as .zip is so ingrained in us as a file extension.
@ashkebora7262
@ashkebora7262 Жыл бұрын
You would not say the same thing about someone leaving a vat of poison open in the market... Raise your standards, because that is chaotic EVIL, you dunce.
@AnomadAlaska
@AnomadAlaska Жыл бұрын
I remember thinking back when Windows stopped showing file extensions by default that was a bad idea.
@miker953
@miker953 Жыл бұрын
Right? It basically trained the less tech savvy to "click around and find out!".
@williamdrum9899
@williamdrum9899 Жыл бұрын
Also allowing shit like "invoice.txt.exe"
@AllAmericanGuyExpert
@AllAmericanGuyExpert Жыл бұрын
You have to open it to find out what's inside!
@monsterhunter445
@monsterhunter445 Жыл бұрын
Windows always hid it by default when did windows not default hide extension. XP was default so are you talking like 95 lol
@ericapelz260
@ericapelz260 Жыл бұрын
@@monsterhunter445 Some of us remember when Windows was a new idea, and it was an overlay over DOS. Actually, some of us go further than that; my first graphical operating system was GEOS on a Commodore 64. Then I upgraded to an 8088, LOL.
@Jeffmylife
@Jeffmylife Жыл бұрын
How could a company like Google not have even a speck of foresight with this… it seems so obvious to just… not do this? I genuinely don’t understand
@stephens1393
@stephens1393 Жыл бұрын
They had a pile of foresight. They saw a bigger pile of money to be made.
@rons96
@rons96 Жыл бұрын
obviously they want to control all the internet, so they need to start a lockdown here, like the last they did irl
@williamdrum9899
@williamdrum9899 Жыл бұрын
One of the few times when they actually SHOULD have asked a bunch of boomers to make tech decisions.
@rons96
@rons96 Жыл бұрын
@@williamdrum9899 they know what they are doing
@Lost-In-Blank
@Lost-In-Blank Жыл бұрын
Sales trumps engineering, development, and even security. They think they are going to sell these domains for money.
@ADRENELINEDUDE
@ADRENELINEDUDE Жыл бұрын
I seriously can't believe google did this. It's even hilarious with their "won't fix" garbage. I genuinely have never hated something more than "won't fix".
@StuTubed
@StuTubed Жыл бұрын
That's a Chromium thing. The Chromium devs love that "won't fix" option.
@BeauZoe
@BeauZoe Жыл бұрын
I'm inclined to believe its a directed attack by google to destroy the use of those file extensions.
@Lowraith
@Lowraith Жыл бұрын
​@@BeauZoe I had this same thought watching this video: when are we expecting Google's new patented archive file format?
@geroffmilan3328
@geroffmilan3328 Жыл бұрын
As a pen tester I love "won't fix" issues. Gift that keeps on giving.
@user-nk6fr2tb6f
@user-nk6fr2tb6f Жыл бұрын
@@Lowraith Microsoft is about to integrate archiver in the OS. Maybe it is related
@immortalsun
@immortalsun Жыл бұрын
It’s like Google _wants_ to destroy the Internet…
@CnCDune
@CnCDune Жыл бұрын
More like wants everyone to be infected with malware. This'll either drive sales of anti-virus programs up, or make most people jump ship to a Chromebook over a Windows machine. The latter would probably profit them most.
@Blood-PawWerewolf
@Blood-PawWerewolf Жыл бұрын
@@CnCDune exactly. from those fake sponsored "links" that are imitating real legit links, to malicious ads on KZbin and even google wanting to make Adblocking "forbidden". they WANT to make the internet more dangerous and they probably are making tons of money from this as well as data that was stolen from innocent users.
@nostrislife
@nostrislife Жыл бұрын
@@CnCDune can not argue with that logic honestly
@redfolgers2233
@redfolgers2233 Жыл бұрын
google is an ad company. they dgaf bout anything but selling ad space at this point
@sihamhamda47
@sihamhamda47 Жыл бұрын
​@@CnCDune or they could possibly making their own antivirus and bundle it with Google One, and bump up the subscription price to 3 times
@ActivelyVacant
@ActivelyVacant Жыл бұрын
"Nobody would type a file name into an address bar." Except that address bars almost universally double as search bars. Hell, some search bars will just skip the search and go straight to a web page if they interpret the search as an address.
@lightning_11
@lightning_11 Жыл бұрын
I think ICAN forgot that you can open files in Chrome... Seriously, Chrome is the best PDF viewer on my computer because I never bothered to get a stand-alone program, I type file names into my address bar constantly.
@Poldovico
@Poldovico Жыл бұрын
.pdf domain coming soon I guess :P
@raul5944
@raul5944 Жыл бұрын
@@Poldovico Don't give Google ideas 😂
@b4ttlemast0r
@b4ttlemast0r Жыл бұрын
when you do that you still have to write something like file:///C:/example.pdf and not just example.pdf in firefox at least (not sure if its different in Chrome). However it's obviously still a problem for the reasons explained in the video
@FlyboyHelosim
@FlyboyHelosim Жыл бұрын
Yeah what a stupid and shortsighted comment by them. When I was making websites I would often type filenames in a browser address bar. I mean how else are you going to quickly test links without going through the process of putting the link in a webpage and then clicking on it? And when you click on a link to a file you're technically entering a filename into the address bar, just not manually.
@gragogflying-anvil3605
@gragogflying-anvil3605 Жыл бұрын
Why type it manually instead of drag-and-dropping the file from a file manager? Or directly open it with a double click? But sure, web browsers are good enough for reading PDFs. For adding comments to them (for reviews) I use the PDF/documents viewer that came with the system, being evince.
@krss6256
@krss6256 Жыл бұрын
It seems Google's shift is from 'Don't be evil' towards 'be evil'
@williamdrum9899
@williamdrum9899 Жыл бұрын
Yeah it's been that way for at least a decade now
@HamguyBacon
@HamguyBacon Жыл бұрын
Google removed "Don't be Evil" from their company a decade ago.
@tuseroni6085
@tuseroni6085 Жыл бұрын
someone broke in, added a comma, now their slogan is "don't, be evil" and it's all been downhill since then.
@CptJistuce
@CptJistuce 11 ай бұрын
Removing "don't " was a six-byte optimization. Performance-critical change.
@river559
@river559 Жыл бұрын
The .mov domains will be a HUGE issue in the entertainment sphere since we share/link video files all the time. I agree it's not as big of an issue as .zip but it'll still make a huge splash
@Saji_0
@Saji_0 Жыл бұрын
Any kinds of file extensions as a domain is a huge problem when it's recognized automatically as hyperlink, I dunno why those people thought this was a good idea
@karlrovey
@karlrovey Жыл бұрын
They're not stopping with .zip?
@DerSchakal523
@DerSchakal523 Жыл бұрын
@@karlrovey 🤣
@EddoWagt
@EddoWagt Жыл бұрын
@@karlrovey By their own logic they shouldn't
@ember9361
@ember9361 Жыл бұрын
@@karlrovey .mp4 is also one I think
@tsundokujim
@tsundokujim Жыл бұрын
When you were discussing how ICANN could allow this to happen, you missed a golden opportunity to use the "Man handing over suitcase of money" stock footage.
@alexbridenbaker9261
@alexbridenbaker9261 Жыл бұрын
I don't see why Google is allowing this. Linus also mentioned this is a terrible idea
@volvo09
@volvo09 Жыл бұрын
Seeing how Google still allows a long standing KZbin channel to suddenly be renamed to something like Tesla or (something giveaway), have all their videos deleted without confirmation, and then live stream a video (scam) I'm not surprised they don't care about .zip domains.
@z9cubing574
@z9cubing574 Жыл бұрын
I didn't think it could get any worse. . 😂😂😂
@Poldovico
@Poldovico Жыл бұрын
Allow? They're the ones doing it!
@m4sterred853
@m4sterred853 Жыл бұрын
Torvalds or Sebastian?
@0.Andi.0
@0.Andi.0 Жыл бұрын
@@m4sterred853 great question
@isaak.studio
@isaak.studio Жыл бұрын
Think of the "possibilities" if they were to create the .exe domain.
@Mysdia
@Mysdia Жыл бұрын
This will probably come eventually, but nobody applied for that string just yet.
@OGuiBlindao
@OGuiBlindao Жыл бұрын
You need to have your domains for your executives, come on!
@rons96
@rons96 Жыл бұрын
​@@Mysdia yes, its time to virtual lockdown now, so every place will be controlled by few persons
@grandetaco4416
@grandetaco4416 Жыл бұрын
crossed my mind. I looked to see if that domain existed on the exclusion list.
@mabs-O_o
@mabs-O_o Жыл бұрын
Or .pdf
@aromaticsnail
@aromaticsnail Жыл бұрын
My firewall is already blocking zip and mov domains. Companies like Google shouldn't have this kind of power over the Internet. Too bad the idea of splitting up these tech giants has lost traction
@bitterrotten
@bitterrotten Жыл бұрын
That's not really the failure here. Anyone can petition for a new top level domain. If it wasn't google, it would have eventually been someone else. But like Joe said, ICANN is the regulatory committee here that should have INSTANTLY recognized this as a security vulnerability and denied it.
@kraigisboss
@kraigisboss Жыл бұрын
@@bitterrotten Don't worry as soon as a major company or government body gets compromised by this ICANN will 100% change its stance. And Google will most likely get sued over it like with COPPA.
@pit32
@pit32 Жыл бұрын
The auto-converting links was a feature no one asked for.
@ThioJoe
@ThioJoe Жыл бұрын
For real, i never liked it
@pinbi7
@pinbi7 Жыл бұрын
gets me banned on twitch by mistake on the regular
@ragnarok7976
@ragnarok7976 Жыл бұрын
Especially when a lot of places that do it are very strict on posting links and sometimes just delete your post/comment if you link anything.
@agar322
@agar322 Жыл бұрын
Extend this to "phone numbers" in some messaging apps (I'm looking at you, Telegram)
@FlyboyHelosim
@FlyboyHelosim Жыл бұрын
Pretty much all modern software is updates no one asked for, from operating systems to web browsers.
@UahUahUah
@UahUahUah Жыл бұрын
Ah yes, Google and Discord fumbling the bag with their new updates to things that never needed updated.
@sihamhamda47
@sihamhamda47 Жыл бұрын
In hardware, we have Nvidia and AMD doing sketchy things to their GPU lineup In software, we have Google and Discord constantly screwing its users 2023 is such a chaotic year for a tech world
@ayden8901
@ayden8901 Жыл бұрын
What did discord do? I don't really use it
@danielrhouck
@danielrhouck Жыл бұрын
@@ayden8901 Most recently theyʼre making everyone change their usernames, which a lot of people dislike for various reasons. Many of those are Change Bad but many are actual issues which will cause problems. Before that they added more Markdown support, including (relevant to this) the ability to make arbitrary text links; they reverted that, then added all but the links back in, and I *think* they also plan to add the links again but Iʼm not sure.
@DoubsGaming
@DoubsGaming Жыл бұрын
Although people don't like the discord change and the fact it has created problems. I still don't hate it. For us that constantly use discord it seems dumb but you have to remember that for new people it can be confusing. So I can see how theoretically just making it the same way that other platforms do it can decrease friction. To be clear I am not saying I like it, I am just saying I don't dislike it. Discord I feel like has a pretty good track record compared to other companies and I am of the belief that they will figure it out. I could be wrong though.
@ayden8901
@ayden8901 Жыл бұрын
@@danielrhouck thanks for the reply :)
@MicraHakkinen
@MicraHakkinen Жыл бұрын
After seeing your previous video about the _zip_ TLD, I immediately blacklisted it in my Pi-hole DNS. Now seeing this video only confirms to me that was the right decision. Thanks and keep up the good work!
@Muhsin-ox1vj
@Muhsin-ox1vj Жыл бұрын
Also, when you share zip files larger than 25 mb, the gmail will share the file as a link, which will again confuse the receiver as to whether it is a .zip file or a website link
@Steamrick
@Steamrick Жыл бұрын
I've blocked the entire .zip and .mov TLDs on my pihole... I seriously doubt that any serious businesses will be using them.
@gragogflying-anvil3605
@gragogflying-anvil3605 Жыл бұрын
Do you simply block *.zip as a wildcard. Sounds like a good idea, will do that as well.
@danielm.595
@danielm.595 Жыл бұрын
On your what?
@Steamrick
@Steamrick Жыл бұрын
@@danielm.595 pihole - google it if you're not familiar
@miker953
@miker953 Жыл бұрын
For their next idea: launching a technical help desk you can reach anywhere in the USA just by dialing 911.
@WackoMcGoose
@WackoMcGoose Жыл бұрын
I maintain my hot take that Google _knew exactly what would happen,_ and _wanted_ it to happen, for the exact same reason AdSense allows arbitrary, unfiltered javascript in submitted ads that can auto-download and auto-run executables just by viewing a web page that just happens to pick that ad from the pool to load. They get kickbacks from the virus authors. The moral: Get an adblocker and don't disable it for _any_ reason, not even the "zomg youtube is gonna block adblockers now" thing. Workarounds will and already have been found, and these days adblockers are basically content-specific _firewalls_ to keep weird shit off your computer.
@FrancisVergara
@FrancisVergara Жыл бұрын
Agreed. Google's not stupid. This was intentional.
@justinsbeaver9010
@justinsbeaver9010 Жыл бұрын
"They get kickbacks from the virus authors"? Could you explain that one please?
@pewpin1039
@pewpin1039 Жыл бұрын
@@justinsbeaver9010 Probably something along the line of virus creators purchasing ads -> google catching them uploading malicious adds -> breach of contract aka google pockets the money without having to provide the rest of the service. That is what my maximum cynicism is telling me could be the idea behind it.
@WackoMcGoose
@WackoMcGoose Жыл бұрын
@@justinsbeaver9010 Paid to "look the other way", in other words.
@justinsbeaver9010
@justinsbeaver9010 Жыл бұрын
@@WackoMcGoose Could you be more specific? That's very intriguing!
@volundrfrey896
@volundrfrey896 Жыл бұрын
Conspiracy time: google has their own competitor to the zip format ready but want to get rid of the usage of zip files, so they released this crap in hope that people would look for an alternative.
@everythingtube172
@everythingtube172 Жыл бұрын
*puts on tinfoil hat* why does this sound like something that google would do
@Samu2010lolcats
@Samu2010lolcats Жыл бұрын
Did they buy rar or 7zip? 🤔 These are the only alternatives to zip files that I know of.
@FutureProofPerformance
@FutureProofPerformance Жыл бұрын
Or they have a "new AI antivirus that can protect you from just this kind of thing", basically "that's a nice xyz, shame if something happened to it, maybe you should buy our product"
@rysterstech
@rysterstech Жыл бұрын
​@@Samu2010lolcats Definitely not 7zip, but can't speak for winrar
@bluebirdsigma
@bluebirdsigma Жыл бұрын
Too late. Windows 11 will add native RAR and 7Z support so even if ZIP dies, it will only strengthen the others instead of giving way to a newcomer.
@ragnarok7976
@ragnarok7976 Жыл бұрын
Have they never heard of a collision? There are ~17500 other 3 letter domains they could have chosen from and they pick one of the few combos that is already a file type. Also even if you don't "type" something into the adress bar plenty of people copy and paste urls or file paths into the bar.
@cst1229
@cst1229 Жыл бұрын
I'm pretty sure the domain was *intended* to be named after the zip file type.
@Mysdia
@Mysdia Жыл бұрын
ICANN already had to consider this and conducted a "study" to cover their arse. Although I do suppose they have a form for reporting name collisions if a new second-level domain names's name is causing demonstrable harm; particularly if it's a threat to human life (otherwise they might ignore it), and that's for second-level domains only Not Top-level domains like Zip. I remember Blue Coat researchers raised concerns about the .Zip TLD calling it the shadiest of the new ones bc of the pings... findings were vigorously contested by large companies who had applied for the new TLDs.
@williamdrum9899
@williamdrum9899 Жыл бұрын
They should have just called it "zyp" if they really liked the name that much
@bluebirdsigma
@bluebirdsigma Жыл бұрын
Same reason they made a floppy disk the same name as a compression format.
@5H4D0WOfficial
@5H4D0WOfficial Жыл бұрын
Thought that it won't get any worse. Now only time will tell what new scams emerge & scammers using file extensions domains 💀
@uponeric36
@uponeric36 Жыл бұрын
INB4 data breach on Google from their accountant getting pwned by .zip extension domain.
@makhauser42
@makhauser42 Жыл бұрын
As usual, there is more into it. Think in the terms of intranet and how people use links and files there. It's not really that protected, and if your Confluence or SharePoint pages mentions Something, dot, zip on the page as a reference point, it will likely lead to external destination unless the steps are taken, and/or the attachment is forced to be linked to something internally (not everyone is familiar with editing beyond WYSIWYG)
@canitbechristine
@canitbechristine Жыл бұрын
I know my way around a computer but am far from a tech guru. Even I looked at the title of your video and thought how in the world did anyone think having a dot zip domain would be a good idea? Wow. Right away my brain started thinking of the scenarios that you end up going over.
@wizakke5399
@wizakke5399 Жыл бұрын
about the "typing file names into location bar" point, they seem to also forget how browsers are using the address bar as a search bar so people can and will type anything in it
@annanderson7
@annanderson7 Жыл бұрын
A billion dollar company, many layers of approval, and they thought "sounds good!".
@williamdrum9899
@williamdrum9899 Жыл бұрын
Groupthink is a hell of a drug. So is lack of age diversity. Willing to bet nobody over 50 had a say in this. Which for something like this is a bad thing.
@THE-X-Force
@THE-X-Force Жыл бұрын
At the end of the day it is ICANN who is to blame. They are the one's who are supposed to be the gatekeeper's for this sort of thing. Relying on multi-billion dollar corporations (like google) that are driven singularly by greed is obviously not a good idea or an acceptable solution.
@KYLE-zo4bm
@KYLE-zo4bm Жыл бұрын
this sounds like a disaster is google trying to destroy the internet???
@rons96
@rons96 Жыл бұрын
gotcha!! since irl lockdown was a success, its time to virtual lockdown to take control over every single place of world
@vinching926
@vinching926 Жыл бұрын
cOnTrOvErSy tHeOrY iNtEnSiFiEs
@rons96
@rons96 Жыл бұрын
@@vinching926 google brazil only shows gov websites when searching by news. Its obvious that internet is not free anymore. They have too much control today
@uponeric36
@uponeric36 Жыл бұрын
Google may currently be victims of corporate sabotage. As a public company; someone will greatly benefit from them going bankrupt. Period. Going bankrupt is the most profitable option for short sellers. They're not trying to destroy the internet, they're trying to destroy Google. No risk to the leadership if they're in on it, as they can take a golden parachute out straight from the shareholders. Basically, Google is in it's end of life phase. They chronically have neglected new products, technologies, etc that they have paid out the ass for, are burning any good will they had rapidly, and now are actively degrading their services. Next and soon in the playbook, we'll see massive lay offs, disruption to core google services from them becoming unmaintainable, followed by a massive exodus of users that will go to convenient alternatives that will "suddenly" pop up. This will lead to a massive rise in the stock price due to record profits from not having to pay anyone or run any services and being able to sell corporate assets. Just as planned, the bigger they fall, the better, as all the value in the stock and more can go to you if you short and naked short it. The layoffs and user exodus will indicate to other short sellers that it's time to pile on. The more exposure to the rest of the market the better, because then everyone is in on making them fail and it becomes basically certain to happen. Huge pre-death price pump. Right at the peak of the stock price: massive rug pull. Market makers let google die, the shorts make more than google was even worth via illegal short exposure; and all the remaining pieces of google get sold off. Followed by a giant wave of articles about how google deserved it, how hard it was failing, how outdated it is, with obvious undisclosed advertisements for those new alternatives, etc. Finally alphabet is delisted, and shorts no longer have an obligation to buy back GOOGL shares. All the user data was stolen or sold along the way. Everyone gets robbed and nobody wins, except for corrupt market makers and their buddies. And you'll read those mostly AI generated articles and go on thinking it was meant to happen, exactly as planned, and sign up for the next service in the playbook. Maybe you'll even get to see the same CEO and management team again!
@tr7zw
@tr7zw Жыл бұрын
Was testing it after the last video, and was happy with how Firefox just refuses to load that URL with the spoofed domain. Also no auto downloading files like edge/chrome (why is this even a thing).
@jamesphillips2285
@jamesphillips2285 Жыл бұрын
The MIME type of the default file loaded was probably set to application/octet-stream instead of text/html
@tr7zw
@tr7zw Жыл бұрын
@@jamesphillips2285 yes, but why do chromium browsers download files without asking first. As a Firefox User that's just wrong.
@THE-X-Force
@THE-X-Force Жыл бұрын
It is _VERY_ easy to get around how Firefox is picking up on it, and to circumvent any warning to users. Obviously I'm not going to spell it out .. but believe me it doesn't take a genius, because I'm an idiot and I figured it out in roughly 3 seconds. Be assured that malicious actors are _already_ doing it.
@THE-X-Force
@THE-X-Force Жыл бұрын
@@tr7zw It's a user setting which is off by default.
@FainthedCherry
@FainthedCherry Жыл бұрын
You can disable that in chrome:// settings my guy.
@_SJ
@_SJ Жыл бұрын
5:35 This is so funny 😅 Nice editing ThioJoe
@act.13.41
@act.13.41 Жыл бұрын
An I.T. administrator can deal with this at the primary domain controller, but the average user at home will have no idea how to block this, or even why.
@higatowa
@higatowa Жыл бұрын
The “auto download” is an opt-out option of our browser, you can make it ask for confirmation for each download, just in case
@THE-X-Force
@THE-X-Force Жыл бұрын
Is it not set to _"off"_ (for auto-download) by default? Last time I used Chrome it was.
@infiniteplanes5775
@infiniteplanes5775 Жыл бұрын
If you need to say it, it’s not obvious enough
@piguy4137
@piguy4137 Жыл бұрын
​@@THE-X-ForceLast time I installed chrome, auto-download was the default. I forgot to turn it off, went to a sketchy site, and almost had a heart attack when it suddenly downloaded something. I now manually check every time.
@AdrianDowthwaite
@AdrianDowthwaite Жыл бұрын
Thank you for bring & raising .zip files, sorry domains to our attention. How this got past the idea stage has me shaking my head in disbelief.
@Cofcos
@Cofcos Жыл бұрын
Is it possible to sue a company for willful incompetence?
@act.13.41
@act.13.41 Жыл бұрын
Incompetence is not the word I would use for this. 😀
@dombo813
@dombo813 Жыл бұрын
Deliberate incompetence is called malice.
@act.13.41
@act.13.41 Жыл бұрын
@@dombo813 Bingo
@tzarg
@tzarg Жыл бұрын
I'm really thankful that you put proper subtitles on your videos, I'm not hard of hearing or anything but it still helps a whole lot!
@MarcioHuser
@MarcioHuser Жыл бұрын
OH, SNAP!!! The "auto convert to link" "feature" at Webmails (and some regular desktop clients too) 😅
@IFF-Alliance
@IFF-Alliance Жыл бұрын
That TLD will definitely be completely blocked on all my systems now 😅 I don't even understand why anyone even wants other domains than those we already have.... Nice video btw 😉
@jimkats1
@jimkats1 Жыл бұрын
There are some sites with chat panels, where they already did automatically convert any text with "dot" in between and attached with words, into a clickable link. Now, this means exactly than it may redirect to actual domain, while before it would just show 404 error.
@mohammed_02
@mohammed_02 Жыл бұрын
Thio out there saving us from random simple small yet fatal threats this must save many many people
@furzkram
@furzkram Жыл бұрын
Browsers can open and display a lot of file types, users even drag files onto a browser window to display the content, why shouldn't they also enter oder modify a file name in the address bar?
@trapfethen
@trapfethen Жыл бұрын
This problem will get even worse as encrypted DNS becomes even more established. Right now, security officers are blocking these TLDs within their firewalls. Any company that doesn't have a local DNS set up that their network automatically uses and sets up these blocking rules in said DNS are going to get hit when secure DNS encrypts the DNS request itself. The firewall won't be able to tell that the request is for any domain, let alone the [.]zip TLD.
@alexw3875
@alexw3875 Жыл бұрын
Wow. This is like Y2k all over again.
@AllAmericanGuyExpert
@AllAmericanGuyExpert Жыл бұрын
Yeah, there are so many browsers that bypass your local DNS and use DOH (not a typo).
@jmrumble
@jmrumble Жыл бұрын
​@@AllAmericanGuyExpertDoh? What's doh?
@Kitulous
@Kitulous Жыл бұрын
​@@jmrumbleplay doh
@jmrumble
@jmrumble Жыл бұрын
@@Kitulous I knew it! xD
@FusionDeveloper
@FusionDeveloper Жыл бұрын
Haha, watch someone mention a zip file years ago, that will now go to malicious website and get their account suspended, for what should have been harmless conversation.
@Dicer328
@Dicer328 Жыл бұрын
Keep up the good work, Joe! Your tips are very helpful to me and my IT department.
@NaughtyKlaus
@NaughtyKlaus Жыл бұрын
What's worse is that ICANN didn't catch this security problem when they awarded the TLD to Google.
@vylbird8014
@vylbird8014 Жыл бұрын
ICANN knows, but the organisation is in a rather strange situation, politically. To some extent it's all about the money, but there are a lot of other forces pressuring them.
@motherchuckair404
@motherchuckair404 Жыл бұрын
@@vylbird8014 what forces?
@telefactfiles5430
@telefactfiles5430 Жыл бұрын
Google should have already stopped selling this TLD by now with the amount of backlash, wonder whats stopping them now
@areadenial2343
@areadenial2343 Жыл бұрын
$$$
@LostBeetle
@LostBeetle Жыл бұрын
Google needs forcefully broken up or dissolved.
@bettercalldelta
@bettercalldelta Жыл бұрын
money
@drewpool4537
@drewpool4537 Жыл бұрын
It's almost like the people at Google never use PCs
@whosonedphone
@whosonedphone Жыл бұрын
Wow that was great! Thanks! I've always heard people talk breafly about this. I always wanted to look into this matter further. I will spiritually reflect on this matter and allow it reshape my perception of reality.
@yttanel
@yttanel Жыл бұрын
Google definitely didnt think this through, shock
@departy93
@departy93 Жыл бұрын
Why do I picture the: "This is Fine!" meme every time I read/hear about this. 🤔
@leosthrivwithautism
@leosthrivwithautism Жыл бұрын
The Funny thing is. Just today I had 3 emails that used this exact tactic used to try and trap me. I've deleted them almost as soon as I figured it out. They almost got me though because they looked very legit. But if I've taught myself not to act on a knee jerk reaction. And when I took a second look is when I figured this out. I upgrade my passwords once a month. I clear my cache files and log out all active sessions every 2 weeks. It sucks and is time consuming but I rather be annoyed than be hacked.
@rysterstech
@rysterstech Жыл бұрын
Just block all .zip domains and problem solved
@Greenman247
@Greenman247 Жыл бұрын
Thank you so much for these relevant and informative videos! Can't believe more people aren't throwing a fit about this, but I'm glad to be informed at least. Keep up the great work, brother!
@erik-html
@erik-html Жыл бұрын
Thanks for the information
@fr34k09
@fr34k09 Жыл бұрын
all I'll say about this is that I'm glad I'm subscribed to this lad and giving us heads up 👍
@kashiichan
@kashiichan Жыл бұрын
Thank you for the subtitles; it's really appreciated.
@da7_._
@da7_._ Жыл бұрын
I learnt more from you than the computer lessons in school
@Dalson_
@Dalson_ Жыл бұрын
I love this man's videos
@Mysdia
@Mysdia Жыл бұрын
This trainwreck has been in the pipes for a Loong time... ICANN Reviewed the applied-for "zip" string back in 2013 and Approved it for delegation after additional review in September 2014 it was delegated. Apparently they never surfaced all these issues, Or didn't care because the collission issues are outside DNS itself, and were paying enough money for the TLD. In any case, the Delegation is now a long-standing one part of the standard root zone -- It's not going to go away... The only answer I think is going to be that software needs to be updated to stop Linkifying dot Zip names. Perhaps it would also be helpful if major browsers and Operating Systems would add logic to their resolvers to block the web addresses of that TLD for the sake of the end users...
@CaptainKremmen
@CaptainKremmen Жыл бұрын
How about the non-Google DNS providers just refuse to resolve .zip URLs?
@Mysdia
@Mysdia Жыл бұрын
@@CaptainKremmen DNS resolvers can filter lookups technically, but it's Not within the normal scope of function for a DNS provider to intercept and deny queries based on 3rd policy criteria. The TLDs are in the root zone, and failing to resolve a whole TLD would potentially cause a whole lot of issue reports - as the DNS provider isn't giving the promised service anymore in that case but a limited/reduced view of the DNS.
@johnsparozich6839
@johnsparozich6839 Жыл бұрын
Thank you for your videos and insight, I am blocking all. Zip extentions now that you made me aware. Thank you
@JimiGosu
@JimiGosu Жыл бұрын
Thanks for the warning, ThioJoe! Gonna check out your video on blocking zip domains so I can protect myself! Good work. ^_^
@hw9
@hw9 Жыл бұрын
6:20 What if you want to Google a random ZIP file? It's easy to accidentally go to a website instead. And someone can host a fake search results page and use it for phishing or malware. Even some tech savvy people might fall for this if they're not careful.
@TheSleepyCraftsman
@TheSleepyCraftsman Жыл бұрын
A smart person would figure out the most popular file names and put up ads on all the sites. Nothing nefarious, just ads and a message saying that Google screwed up. 😂
@RudysRetroIntel
@RudysRetroIntel Жыл бұрын
Well said!! Thanks for sharing
@zuzoscorner
@zuzoscorner Жыл бұрын
Thanks for letting everyone know about this security risk. 👍
@OlegDorbitt
@OlegDorbitt Жыл бұрын
6:20 Yeah, users are famously very smart and won't ever fall for this! /s
@kacperkonieczny7333
@kacperkonieczny7333 Жыл бұрын
_Famous last words_
@rastersoft
@rastersoft Жыл бұрын
- Why did you allow this domain???? - Because ICANN (badum tsss)
@sigitasn
@sigitasn Жыл бұрын
Ty for explaination. Added that TLD to my Portmaster firewall blocklist, to avoid confuses in future.
@marcfruchtman9473
@marcfruchtman9473 Жыл бұрын
Wow... thank you for the heads up.
@StereoBucket
@StereoBucket Жыл бұрын
The only reason someone I know bought a .zip domain was for the lolz. Haven't seen an actual site yet with it, and honestly whoever bought it to spring up a legitimate thing shouldn't be upset if it gets blocked.
@some_man_tiks
@some_man_tiks Жыл бұрын
.zip websites are like putting a cocked loaded gun on the table and waiting for someone to pick it up. This is so new, I don't think the regular user will know about this in any capacity. Funniest thing I think happened in this whole story is that Alphabet bought Mandiant last year. You think security personnel would say "hold on"
@tedlym.3390
@tedlym.3390 Жыл бұрын
Thank you for the informative information.
@dagthewog6290
@dagthewog6290 Жыл бұрын
Great video. Placing zip domain extensions in my pi-hole right now.
@williamdrum9899
@williamdrum9899 Жыл бұрын
Yum yum eat 'em up!
@craz7644
@craz7644 Жыл бұрын
What do u think they actually talked in the Google team when they decided about this? I'm sure they are skilled people, don't they think about these stuff? I'm confused, and is there anything good about this?
@williamdrum9899
@williamdrum9899 Жыл бұрын
When you spend all day around people who understand computers you might start to forget there are people who don't
@SunsetArchon
@SunsetArchon Жыл бұрын
@ThioJoe As an added bonus, Discord has been testing allowing users to use Markdown titled links outside of embeds. So it'd be possible to type [Harmless Title](Malicious Link) or worse. The worst thing about this is that this feature isn't tied to any permissions you can disable.
@SunsetArchon
@SunsetArchon Жыл бұрын
I worry for the internet's future...
@Mysdia
@Mysdia Жыл бұрын
Oh... Standard Markdown. You can probably use a Discord moderation bot to auto-purge anyone doing that if they're not an admin/operator. Or bot that can purge based on messages containing regex, something like \[[^\]]+\]\([^)]+\)
@SunsetArchon
@SunsetArchon Жыл бұрын
@@Mysdia True. I'd need to account for all the forward slash Unicode lookalikes too, since that's one of the issues mentioned in this and the previous video.
@thisislilraskal
@thisislilraskal Жыл бұрын
Thanks for the news bro
@Norman_Fleming
@Norman_Fleming Жыл бұрын
Company I work for blocked the .zip and .mov . Thanks for the video. Hadn't thought about the retro-active nature of things turning old text into shiny new attack vectors.
@DavidJacksonphunman1
@DavidJacksonphunman1 Жыл бұрын
Love you, Joe
@ballsuckervr
@ballsuckervr Жыл бұрын
U first
@erik-html
@erik-html Жыл бұрын
I’m sure he loves you too
@itznotmytube
@itznotmytube Жыл бұрын
Thanks for explaining WHY this was a bad idea, in both videos. I'd forgotten about the username:password @ format; I think the last time I used it was for accessing an ftp site. Although I don't think this will be an * enormous * problem, with malware that doesn't matter and it's just more bullshit we in IT will have to deal with, and we'll all likely have to deal with it at least quarterly. /sad 🐧
@UNICORNSF3ProgameplayProRACER
@UNICORNSF3ProgameplayProRACER Жыл бұрын
Amazing content👍
@lapiscarrot3557
@lapiscarrot3557 Жыл бұрын
This is a serious problem, commenting to boost engagement because people need to see this video
@mukileswara12
@mukileswara12 Жыл бұрын
I have a doubt on this While browsing files with file:/// protocol in a web browser and supposedly there is a bunch of zip files. Now, what happens when I double click the file. Will it open the zip file or it will go to a website that may or may not exist, on the first click
@FusionDeveloper
@FusionDeveloper Жыл бұрын
File:// is for local files, not Internet
@caraoke...
@caraoke... Жыл бұрын
When i was searching for Minecraft Resource Pack wich is on my coumputer, default Windows search bar redirected me to some sketchy website... (Ofc opened in Microsoft Edge) Such a shame.
@Admiralfeb
@Admiralfeb Жыл бұрын
Is there a way to petition ICANN to see the error of their ways and remove the things?
@TesserId
@TesserId Жыл бұрын
I work with users on a daily basis. Plenty of users type URL's, short ones, into the address bar. That's what the hell typo-squatting is about.
@dropinfun1483
@dropinfun1483 Жыл бұрын
Boy did Google screw up wow
@PawFromTheBroons
@PawFromTheBroons Жыл бұрын
All the more reasons not to use and mention ZIP anymore, to avoid confusing anyone. Until Google somehow does to 7z or RAR, what they did to dot ZIP.
@williamdrum9899
@williamdrum9899 Жыл бұрын
Don't give them ideas!
@MissFoxification
@MissFoxification Жыл бұрын
And if someone accidentally sends someone a link to a domain now marked as malicious it may get their email address or domain blacklisted. We're going to be dealing with the fallout from this for years.
@InvisibleInk
@InvisibleInk Жыл бұрын
Our company gets so much spam from novelty domains that when .zip was announced I immediately blocked all .zip domains for our email customers. Can't believe this is a thing.
@matt_nyc_audioengineer
@matt_nyc_audioengineer Жыл бұрын
I'm a professional audio engineer and I send and receive zip files all the time. This is going to be a major hastle for me and my clients.
@GiovanniPerini
@GiovanniPerini Жыл бұрын
7z or rar may do. …at least until Google f* with them too 🤷
@matt_nyc_audioengineer
@matt_nyc_audioengineer Жыл бұрын
@@GiovanniPerini Ya, I get rar sometimes. Good point.
@DJPalsyP
@DJPalsyP Жыл бұрын
I've already blocked it in my PiHole
@weshumphrey6299
@weshumphrey6299 Жыл бұрын
Good job. Thanks.
@Mernom
@Mernom Жыл бұрын
Pro tip for mobile users: clear out your default browser app. This way, every time something on your phone tries to open a browser page, it will bring up the browser selection dialog. It actually managed to block an actual virus that tried to pop web pages on my phone once. It's bound to work for this.
@JohnSmith-xq1pz
@JohnSmith-xq1pz Жыл бұрын
Sounds like the disaster is zipping along nicely lol GG google
@Quanswiese
@Quanswiese Жыл бұрын
Thank you for this video!
@giringliri
@giringliri Жыл бұрын
Nice info. But I was distracted by the stock video: scared computer man😂
@tj71520
@tj71520 Жыл бұрын
this could actually result in people stopping the use of zip files 😮
@fr34k09
@fr34k09 Жыл бұрын
and how would anyone share a bunch of docs to their friends if they don't know how to use 7zip or winrar but know how to extract zip files? people will still use zip files but the only thing that google will cause is confusion and chaos , that's for sure
@Saji_0
@Saji_0 Жыл бұрын
@@fr34k09 this will cause a huge problem and risk to anyone that doesn't understand any file types, especially that people with 'show extension name' turned off
@fr34k09
@fr34k09 Жыл бұрын
@@Saji_0 that already happens with youtubers that get hacked by fake advertisers on their email inbox, but did you actually read my previous comment? I already said that google will cause chaos because of their new domain while also I asked, how will people share bulk files to each other if they stopped using zip files and for some reason don't know about rar and 7z files.
@_DML_
@_DML_ Жыл бұрын
I knew this sort of thing was going to happen when ICANN stupidly started allowing custom TLDs.
The Weirdest Top-Level Domain Extensions
16:52
ThioJoe
Рет қаралды 199 М.
10 Internet Myths to Stop Believing
14:29
ThioJoe
Рет қаралды 120 М.
Hot Ball ASMR #asmr #asmrsounds #satisfying #relaxing #satisfyingvideo
00:19
Oddly Satisfying
Рет қаралды 47 МЛН
ROCK PAPER SCISSOR! (55 MLN SUBS!) feat @PANDAGIRLOFFICIAL #shorts
00:31
Is it Cake or Fake ? 🍰
00:53
A4
Рет қаралды 18 МЛН
How YouTubers Are Getting Hacked
16:41
ThioJoe
Рет қаралды 284 М.
How A Steam Bug Deleted Someone’s Entire PC
11:49
Kevin Fang
Рет қаралды 894 М.
Secrets Revealed: Hiding Executable Files Inside Images!
4:19
Tyson Benson
Рет қаралды 12 М.
Weird URL Protocols
13:54
ThioJoe
Рет қаралды 242 М.
What Kinds of Files Can Be Viruses?
14:08
ThioJoe
Рет қаралды 239 М.
17 Computer Tips You'll WISH You Knew Sooner
21:07
ThioJoe
Рет қаралды 217 М.
I Seriously Almost Just Got Hacked...
18:57
ThioJoe
Рет қаралды 363 М.
Incredible Dangers in Browsers (Affects all of them)
21:02
Rob Braxman Tech
Рет қаралды 279 М.
ТОП-5 культовых телефонов‼️
1:00
Pedant.ru
Рет қаралды 17 М.
Хотела заскамить на Айфон!😱📱(@gertieinar)
0:21
Взрывная История
Рет қаралды 2,7 МЛН