Finding WEIRD Phishing Websites

Поділитися
Вставка
  • Опубліковано 16 тра 2024
  • jh.live/censys || Get started with the leading Internet Intelligence Platform for threat hunting and attack surface management -- find what is exposed out on the open Internet with Censys! jh.live/censys
    Learn Cybersecurity - Name Your Price Training with John Hammond: nameyourpricetraining.com
    WATCH MORE:
    Dark Web & Cybercrime Investigations: • Tracking Cybercrime on...
    Malware & Hacker Tradecraft: • Malware Analysis & Thr...
    📧JOIN MY NEWSLETTER ➡ jh.live/email
    🙏SUPPORT THE CHANNEL ➡ jh.live/patreon
    🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
    🌎FOLLOW ME EVERYWHERE ➡ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/discord ↔ jh.live/instagram ↔ jh.live/tiktok
    💥 SEND ME MALWARE ➡ jh.live/malware
    🔥UA-cam ALGORITHM ➡ Like, Comment, & Subscribe!

КОМЕНТАРІ • 80

  • @blinking_dodo
    @blinking_dodo 23 дні тому +20

    I often get spam mails with links to those pages.
    One of the actors fails to protect their backdoor, so i can just walk in open the file manager they keep exposed.
    Then i rename the index files to break the landing pages.
    Really want to automate it, but *legal* is evil.

  • @PopperOfCorn
    @PopperOfCorn 23 дні тому +24

    You know, all the information you should never share with a stranger on the internet.

  • @shinris3n
    @shinris3n 23 дні тому +32

    How could you tease us like that with the exe file! Follow up vid?!

  • @pelijot
    @pelijot 23 дні тому +40

    yup, thats Dynmap, a web Minecraft map.

    • @BillAnt
      @BillAnt 22 дні тому +2

      Gotta love going down rabbit holes... hehe

    • @awesomekalin55
      @awesomekalin55 22 дні тому +3

      And Railway System Map is from Minecraft Transit Railway

    • @Apple_Beshy
      @Apple_Beshy 7 годин тому

      hwhwhw

  • @SzaboB33
    @SzaboB33 23 дні тому +78

    You constrained by the sponsorship: cannot use "screw you" as an email address
    Me, a free individual: deleting their databases with SQL injection

  • @coder_117
    @coder_117 23 дні тому +5

    I've been getting spam texts for months telling me my USPS package has arrived at the warehouse but can't be delivered due to incomplete address information. It then asks me to confirm my address at an obviously fake link.

  • @tobixnator9314
    @tobixnator9314 23 дні тому +19

    That's a real Minecraft server

    • @stavros222
      @stavros222 23 дні тому +5

      Live overflow will absolutely love it 🤣

  • @3N18AKPzmGOsBgWKH
    @3N18AKPzmGOsBgWKH 23 дні тому +7

    Truth be told, i just love you exploring the internet and see what happens :P Hope these will show up more in the future. Sure, phishing was in focus, but you ended up going in all other different directions and even cracking the password for the zipfile xD Love it!

  • @drabspirit
    @drabspirit 23 дні тому +6

    The Minecraft server looks interesting! That map view you opened seemed to be Dynmap, which is a mod/plugin to create a Google maps like view of your server, definitely someone with quite the world and those color blocks on the maps were likely player claims within the game using another mod/plugin!

  • @s1lverposting
    @s1lverposting 23 дні тому +76

    hey, you found my Minecraft server!

  • @exoexe1555
    @exoexe1555 22 дні тому

    The Minecraft Map is a plugin called DynMap, which uses an open port to process and host that live map you were interacting with. It can be configured to show players, mobs, waypoints and more

  • @nickadams2361
    @nickadams2361 23 дні тому

    Never been so excited for front desk information

  • @_tr11
    @_tr11 22 дні тому +2

    it's so fun to write scripts to fill their databases with garbage bro

  • @vectoralphaAI
    @vectoralphaAI 23 дні тому +5

    How much does Censys cost??

    • @deaddead698
      @deaddead698 15 днів тому

      There’s a free version that gives you 250 searches a month with 10 pages worth of results. Tbh not bad for basic usage. To go up to 500 searches tho, you gotta pay $69 US. That right there’s a ripoff

  • @j_r_-
    @j_r_- 17 днів тому

    Green spotlight makes that background foam look good

  • @AkiiiMatcha
    @AkiiiMatcha 21 день тому

    Super fun video! Thanks for making this. :)

  • @radscientist
    @radscientist 21 день тому

    I've gotten a bunch of these as well as the "Thank you for your payment" with a transaction number that is a link and, of course, a downloadable file. They are usually sent from a Gmail address with a person's name and the sender's name is different.

  • @luketurner314
    @luketurner314 22 дні тому

    17:50 that colab would be so cool

  • @SperkSan
    @SperkSan 23 дні тому +3

    Hey John I was wondering when you send requests to these actual *bad* websites (not some CTF challenge), do you use a VPN? If no then if the guys behind the website check their logs and see your IP has made some weird requests to their server then won't they target you?

  • @luketurner314
    @luketurner314 22 дні тому

    17:45 that almost sounds like Owen Wilson's "wow"

  • @nickadams2361
    @nickadams2361 23 дні тому +2

    I love how you said “hosted in Ohio apparently”

    • @BillAnt
      @BillAnt 22 дні тому

      Well it could be located on a server just about anywhere.

  • @kymtoobe
    @kymtoobe 23 дні тому +3

    censys not for usual user :P

  • @htjmartin
    @htjmartin 22 дні тому

    Today I learned that there is an open source phising tool... interesting.

  • @cat_fury
    @cat_fury 23 дні тому

    this work?

  • @Milonsarkar-xn7db
    @Milonsarkar-xn7db 18 днів тому

    On eBay s3

  • @maddyfromcartoon
    @maddyfromcartoon 23 дні тому +1

    is brave browser safer than chrome?

    • @arthur979
      @arthur979 23 дні тому

      if you are smart, every browser is the same

    • @nicholas4839
      @nicholas4839 23 дні тому

      Nos all the same

    • @linux_for_noobs
      @linux_for_noobs 21 день тому

      Just don't use chrome, edge, opera or safari. Those are basically spyware.

    • @maddyfromcartoon
      @maddyfromcartoon 19 днів тому

      @@linux_for_noobs how? Can you pls explain? I am using chrome rn.

    • @maddyfromcartoon
      @maddyfromcartoon 17 днів тому

      @@linux_for_noobs Can you explain how? btw I am using Chrome

  • @Apple_Beshy
    @Apple_Beshy 7 годин тому

    love

  • @jon9509
    @jon9509 23 дні тому +1

    11:27 xD

  • @n18y
    @n18y 23 дні тому +1

    first! i love ur videos

  • @kalidoom1674
    @kalidoom1674 22 дні тому

    finds sites like this and writes code to send bogus info ;)~

  • @grudge290
    @grudge290 23 дні тому

    I get this all the time lol

  • @Cubeocheez
    @Cubeocheez 22 дні тому

    Here before viral

  • @GamerBekodie
    @GamerBekodie 23 дні тому

    Its a real dynamap lol

  • @cyber_space09
    @cyber_space09 22 дні тому +1

    Hmm🫠 you found Minecraft server 😂

  • @CyberSecJourn
    @CyberSecJourn 13 днів тому

    Dude seriously, why are all your sponsors pretty expensive? If I'm to assume beginners, and people just learning Cybersecurity to gain information to pass a cert or get a job, are they really going to be interested in purchasing these tools, services, etc? I mean, I won't say scammy but it is SURE looking like you're here for the money if I'm to be honest.

    • @moppupaws
      @moppupaws День тому

      thats crazy its almost like.. people do youtube as a job or something... and you do jobs exclusively for the money.... insane tbh

  • @floppa.flo88a
    @floppa.flo88a 21 день тому

    Jesus loves you John

  • @Smurfsmith-os5ip
    @Smurfsmith-os5ip 23 дні тому

    4th

  • @eirik874
    @eirik874 23 дні тому

    1st

  • @Olflix
    @Olflix 23 дні тому

    3rd