This Company Got Hacked... but HOW?

  Рет қаралды 90,997

John Hammond

John Hammond

Күн бұрын

Пікірлер: 84
@GuyThompsonFWTX
@GuyThompsonFWTX 11 ай бұрын
First off, thanks for showing this John. You were actually one of the first people I started watching in my IT career years ago when you were focused primarily on Python videos. Like you, I have since grown in my career and am now working in DFIR and also enrolled in SANS Incident Response Graduate Certificate program. I perform individual host-based forensics, large-scale multi-host multi-server ransomware compromise investigations, and everything in between. I've considered starting a KZbin channel focused on DFIR and showing beginning to end investigations (acquiring evidence from physical machines, imaging, various log analysis, network analysis, host-based forensics, investigation methodologies, reporting, etc.). If this is something your audience would like, I would love a 'Like' and will begin putting together a series for viewers.
@rune004
@rune004 11 ай бұрын
I would love to watch this if you ever get the time to make it 😊
@phillipwithrow3754
@phillipwithrow3754 11 ай бұрын
I would be first in line to watch as I am just completing a four year degree in cybersecurity itself, getting the real world practice out there is invaluable.
@txlv
@txlv 11 ай бұрын
ain't readin allat
@squidthon4031
@squidthon4031 11 ай бұрын
John, you’re way too good for this community! Every day I watch your videos and try to grasp everything you teach but it’s difficult to keep up with the plethora of information you are giving out 😂😂 we really do appreciate all your hard work, thanks for all the opportunities you’ve given us to grow and learn!
@ting3695
@ting3695 11 ай бұрын
Just finished my first week of my first job in cyber as a Security Analyst. Thank you for everything you do John, thanks to you, this knowledge is readily available in a digestible way.
@Error_Mode1219
@Error_Mode1219 11 ай бұрын
big fan here from Ethiopia keep up the content🥰
@BoycutIndia
@BoycutIndia 11 ай бұрын
Here From Nepal!😊
@werth7113
@werth7113 11 ай бұрын
Here from Poland
@TalkingSasquach
@TalkingSasquach 11 ай бұрын
I'm just over here taking notes on how to KZbin. Love your channel!
@ccnbutter
@ccnbutter 11 ай бұрын
Don't know if you have heard but Toronto Public Library was hacked so bad that even their printers/scanners can't be used. It seems like entire back end was destroyed/deleted.
@DecentralizedPlanet
@DecentralizedPlanet 11 ай бұрын
Seriously? Do you have source I could check out by any chance
@milentiusgaming
@milentiusgaming 11 ай бұрын
this win11 taskbar is a perfect example of why it was put on the left in the first place :P
@PrinceJohn84
@PrinceJohn84 11 ай бұрын
The number of environments I come across where literally no security baselining has been carried out is simply staggering.
@node-
@node- 11 ай бұрын
awesome to see some incident response videos hoping to see some more of these
@anubisjishin
@anubisjishin 11 ай бұрын
Is amazing, thanks for sharing. What I don't understand is that you need to have Wireshark all the time monitoring the traffic to get that info? Or how you make those pcaps in a real environment?
@Daniel-jb3rt
@Daniel-jb3rt 10 ай бұрын
Thanks John. We need more of this or malware analysis videos
@JaviSerna
@JaviSerna 11 ай бұрын
Thanks for sharing and let us learn . Very well explained and clear.
@charlesmarseille123
@charlesmarseille123 11 ай бұрын
@johnhammond my man! thats the right energy and natural tone (so rare nowadays with all the hypee youtubers)!! have you ever played with polarizing filters for the reflections in your glasses? you would be amazed!
@grady.debonair
@grady.debonair 11 ай бұрын
Excellent video as always! Loving the blue team content on the channel!
@CyberWithSarfraz
@CyberWithSarfraz 11 ай бұрын
It was a really amazing video, we need more of these.
@50PullUps
@50PullUps 11 ай бұрын
Pause to shift gears 15:33
@frighteningcat
@frighteningcat 11 ай бұрын
15:33 poor John forgot to cut it out
@mthia
@mthia 11 ай бұрын
17:27 too
@Angelinajolieshorts
@Angelinajolieshorts 11 ай бұрын
I love your teaching methods 😍😍
@BurkenProductions
@BurkenProductions 11 ай бұрын
Well not many companies do pcap to workstations. Too much data.
@xeonzero1
@xeonzero1 11 ай бұрын
Thank you so much. This is great.
@Angelinajolieshorts
@Angelinajolieshorts 11 ай бұрын
Big fan of you boss❤❤
@parker4878
@parker4878 11 ай бұрын
Great video, well made and dictated!
@RandomGeometryDashStuff
@RandomGeometryDashStuff 11 ай бұрын
05:59 why does office macro have capability to do stuff outside document like spawn process, read and write files?
@CZghost
@CZghost 11 ай бұрын
Nmap is among the stuff? Might give it a shot.
@kevinapana-korley5442
@kevinapana-korley5442 11 ай бұрын
There's no link to the lab in the description currently.
@_JohnHammond
@_JohnHammond 11 ай бұрын
Sorry, fixed! jh.live/logs-ir
@nayottientong4850
@nayottientong4850 11 ай бұрын
thank, awesome!
@davidsussens4478
@davidsussens4478 11 ай бұрын
As noted by a couple of commenters below, there does not seem to be a link to the labs in the description...
@davidsussens4478
@davidsussens4478 11 ай бұрын
Thanks for adding the link.
@imahsansyed
@imahsansyed 11 ай бұрын
Hey, I know that its hard to reply for comments but I have a question I have my google ID and password but I couldn't sign in into my account I have no 2fa enabled, no recovery phone or email in my account When I try to login it says, to login from device I logged in earlier (not available),sign in from same network(which isn't also available) What to do
@gabe_plane
@gabe_plane 11 ай бұрын
so where is the link to poisoning the well? i dont see it via browser
@glass8289
@glass8289 11 ай бұрын
Hello John, Thanks for the video. There is no link in description.
@_JohnHammond
@_JohnHammond 11 ай бұрын
Apologies, I've added it now.
@glass8289
@glass8289 11 ай бұрын
@@_JohnHammond That's quick. Really appreciate for sharing your knowledge. Thank you very much.
@BenGillam
@BenGillam 11 ай бұрын
Is it normal for a network to be capturing wireshark during normal use? Or is this supposed to have been run per hack but before cleanup?
@chuckhayes8320
@chuckhayes8320 11 ай бұрын
Decent firewalls do this (but only for traffic hitting the gateway). LAN traffic would be more difficult to capture. You can set up a monitoring port on a network switch so you can monitor all traffic going to and from selected ports on that switch, but quickly bandwidth gets eaten up by the amount of data so you'd need quite a chunky NIC. 48x1Gb for client machines, and then 1x50Gb for your server, sort of thing. Dark trace takes this further with more advanced machine learning software for threat detection.
@BenGillam
@BenGillam 11 ай бұрын
@@chuckhayes8320 thanks that was kind of my thinking that’s a lot of data to be capturing seems something only big orgs would have budget for?
@Gabriel-g9q1s
@Gabriel-g9q1s 11 ай бұрын
Do you have courses?
@siamahmed8287
@siamahmed8287 11 ай бұрын
Where can I find more Incident Response labs? Free labs
@mav3783
@mav3783 11 ай бұрын
Hi John why did you use a vm for this ?
@Mezzosd
@Mezzosd 11 ай бұрын
why don't you make a video about Sysmon???
@dano612s
@dano612s 11 ай бұрын
why not open the CSV in excel or something?
@gabe_plane
@gabe_plane 11 ай бұрын
yeah no link in description
@davidsussens4478
@davidsussens4478 11 ай бұрын
I thought I was the only one, but yeah, no link. Thought I might have fallen on my head...
@_JohnHammond
@_JohnHammond 11 ай бұрын
Sorry, added now! jh.live/logs-ir
@adrianocaporro639
@adrianocaporro639 11 ай бұрын
What are the differences between Antisyphon training vs try hack me? Would they complement each other?
@user-ayush818
@user-ayush818 10 ай бұрын
Of course, only if you're really interested in cyber security
@adrianocaporro639
@adrianocaporro639 10 ай бұрын
Definitely am ;), But if someone would chose one in between these two, which one would be best?
@tecsmith_info
@tecsmith_info 11 ай бұрын
*Nostalgia intensifies*
@ReDone01x
@ReDone01x 11 ай бұрын
How often are the logs actually available and not wiped?
@MrPyrox69
@MrPyrox69 11 ай бұрын
That is why you have them on a Syslog Server that is not connected to the Domain...
@bubatz9815
@bubatz9815 11 ай бұрын
can you make a tutorial how to get on onion center the search engine?? please
@Safvanviber
@Safvanviber 11 ай бұрын
Love from india ❤
@bober1019
@bober1019 11 ай бұрын
wtf is this click bait. be transparent in your title: this is not real
@albaniaiptv8335
@albaniaiptv8335 11 ай бұрын
how gta 6 got hacked , can you explain ?
@abd-animation-22
@abd-animation-22 11 ай бұрын
I don't understand anything here
@RhinecnthusAssasi
@RhinecnthusAssasi 11 ай бұрын
Make An rev eng of an ITP crypto scam app please. :-)
@NotTheRealRyan
@NotTheRealRyan 11 ай бұрын
The day will come when someone asks the AI to fix our security problems, and it eliminates all the humans....
@dakoderii4221
@dakoderii4221 11 ай бұрын
There is a lot of data on the web from the WEF and UN, along with their brainwashed useful idiots, that states humans are a plague on the Earth. The first group the AI will wipe out is white people since that's all you hear about on MSM. White people has also been redefined to mean anyone who disagrees with the agenda. It will also see that men are bad and oppressing women but humans don't know what a women is, yet they know that men can be women too. The AI will be confused by our own stupidity. Ironically, it might be what keeps us from getting exterminated. 🤔
@ramnarayan9882
@ramnarayan9882 11 ай бұрын
hi
@patslee1394
@patslee1394 11 ай бұрын
👍
@dvn8ter
@dvn8ter 11 ай бұрын
⭐️⭐️⭐️⭐️⭐️
@thebeastsclips
@thebeastsclips 11 ай бұрын
I wonder which company got hacked😂
@physx_naraka
@physx_naraka 11 ай бұрын
its obviously in the video.
@dakoderii4221
@dakoderii4221 11 ай бұрын
According to the WEF, hacking now consists of "misinformation". If you post a comment saying "men can NOT get pregnant", you have just "hacked" something and are now an international, cyber criminal terrorist. It's in their new 16 page report. They say it's for your "safety".
@tsgetty
@tsgetty 11 ай бұрын
DISH, duh. Lulz
@just_silent3990
@just_silent3990 11 ай бұрын
comment
@Seadragxn
@Seadragxn 11 ай бұрын
First, 22 seconds ago?
@margarita8442
@margarita8442 11 ай бұрын
script kiddie stuff
@DJG37S
@DJG37S 11 ай бұрын
Lmao!!!! Well played on the word.exe. The word.exe for famous because there was a known counter strike player name forsaken who got caught cheating using word.exe.
@000TheRebel000
@000TheRebel000 11 ай бұрын
HACKERATO LEDGER
How Hackers Move Through Networks (with Ligolo)
20:01
John Hammond
Рет қаралды 281 М.
Uncovering NETWIRE Malware - Discovery & Deobfuscation
59:46
John Hammond
Рет қаралды 93 М.
What type of pedestrian are you?😄 #tiktok #elsarca
00:28
Elsa Arca
Рет қаралды 34 МЛН
The Singing Challenge #joker #Harriet Quinn
00:35
佐助与鸣人
Рет қаралды 47 МЛН
If people acted like cats 🙀😹 LeoNata family #shorts
00:22
LeoNata Family
Рет қаралды 18 МЛН
Channel was TERMINATED, we got Hacked (Not Clickbait)
10:28
Corridor Crew
Рет қаралды 2,6 МЛН
Incident Response: Azure Log Analysis
19:15
John Hammond
Рет қаралды 66 М.
Telegram Cybercrime is INSANE
16:52
John Hammond
Рет қаралды 108 М.
Detect Hackers & Malware on your Computer (literally for free)
16:38
How Hackers Hide From Memory Scanners
21:11
John Hammond
Рет қаралды 59 М.
How do hackers hide themselves? - staying anonymous online
11:55
Grant Collins
Рет қаралды 1,5 МЛН
I Stole a Microsoft 365 Account. Here's How.
19:57
John Hammond
Рет қаралды 366 М.
This Toy illegally Spied on 6.4 Million Children
15:41
Vince Vintage
Рет қаралды 8 МЛН
What type of pedestrian are you?😄 #tiktok #elsarca
00:28
Elsa Arca
Рет қаралды 34 МЛН