Defcon 21 - How my Botnet Purchased Millions of Dollars in Cars and Defeated the Russian Hackers

  Рет қаралды 897,868

HackersOnBoard

HackersOnBoard

Күн бұрын

Michael Schrenk
August 1st--4th, 2013
Rio Hotel & Casino • Las Vegas, Nevada

Пікірлер: 382
@waffle911
@waffle911 7 жыл бұрын
You know you've been in the automotive business long enough when you recognize the example VIN he uses as belonging to a Lexus.
@Minzkraut
@Minzkraut 7 жыл бұрын
It might not have been the best talk, but I liked it as a story.
@earlgrey2130
@earlgrey2130 9 жыл бұрын
I feel like i should've learned IT stuff instead of arts. Then i'd maybe not be homeless and fucking unemployed -.-
@D4rkst4r235
@D4rkst4r235 9 жыл бұрын
Правда
@RiDankulous
@RiDankulous 9 жыл бұрын
I know IT people who majored in the arts. Not many, but they are out there. Nothing's stopping you from learning programming on your own or through certification training. The internet is full of good tutorials for every area.
@NightmareTV666
@NightmareTV666 9 жыл бұрын
You should learning hacking to get your art out
@navy4341
@navy4341 9 жыл бұрын
Go for Codecademy for a programming introduction. Latter on, go for C++ and hammer at emulators and collect some experience, and then go for industrial emulation projects.
@zombiemoat5
@zombiemoat5 9 жыл бұрын
x3kesa3 This is true. learning it is free, the certification is all that matters.
@KX36
@KX36 5 жыл бұрын
And this is why it's nearly impossible to buy concert tickets now.
@ShelliLoop
@ShelliLoop 4 жыл бұрын
Naw, people are stupid. There are hawkers selling tickets at 10x the value only feet from the ticket booths.
@arsalan2005
@arsalan2005 10 жыл бұрын
Awesome! Enjoy watching these stories!
@younglife88
@younglife88 10 жыл бұрын
Enjoyed this talk. learned a few things, even though they are a bit of older legacy hack but still applicable.
@martinzember8721
@martinzember8721 5 жыл бұрын
This is about automation for a customer (something we also love to do). But calling it a botnet at defcon, in the context of security? And russian hackers?
@Galactipod
@Galactipod 3 ай бұрын
A botnet is a group of Internet-connected devices, each of which runs one or more bots. The bots don't have to be across the world on random people's PCs. And this is outside the context of security, it's in the context of online retail.
@martinzember8721
@martinzember8721 3 ай бұрын
​@@Galactipodit's not outside of context of security if it was presented at DEFCON. "DEF CON is a hacker convention ...since 1993 and today many attendees at DEF CON include computer security professionals, journalists, ..." Wikipedia According to the number of upvotes, I was not alone wondering.
@msven
@msven 10 жыл бұрын
Very cool presentation! Thanks!
@jonandbrooklynn6361
@jonandbrooklynn6361 5 жыл бұрын
Really interesting. Thanks for sharing
@maverickstclare3756
@maverickstclare3756 4 жыл бұрын
I use Burpsuite to MITM the browser to work out the flow to build bots. I have automated my work in my last two jobs. The last one from 8 hours per day to 20 mins. Then I got the sack when the next boss came because my jobs looked so easy. They assigned a cheaper colleague to take over and he went nuts finding out it was going to take him 8 hours.
@ryanpongracz8051
@ryanpongracz8051 8 жыл бұрын
sooooo, this is how all those scalpers, buy all the tickets from ticket master and keep us all from being able to buy them fairly. I need to learn how to do this stuff
@molomono9795
@molomono9795 7 жыл бұрын
Actually Ticketmaster can stop scalpers but they would loose money in doing so. So i doubt it's a very prominent topic on their agenda.
@johnfrancisdoe1563
@johnfrancisdoe1563 4 жыл бұрын
ryan pongracz I remember a concert house working with a journalist from the same corporation to bait those bots with an unannounced concert then publicly shaming the scalping site that instabought tickets and put them up for sale before the concert was announced. Didn't make a dent.
@briangork6024
@briangork6024 5 жыл бұрын
Fun observation, he's presenting white-hat, possibly grey-hat, but wearing a black hat
@alexandernyberg8668
@alexandernyberg8668 2 жыл бұрын
6:40 "It's important because the developer has to get payed" -The developer
@nikolaos9175
@nikolaos9175 7 жыл бұрын
Very informative. Thx
@mercurichinc
@mercurichinc 8 жыл бұрын
I think this info are complex but he present it easily. Good job
@infl
@infl 4 жыл бұрын
website adds “i’m not a robot” 😂
@GonG108
@GonG108 7 жыл бұрын
it took me 7 minutes to realize i would not even get a description of how to get me a burger by a bootnet
@ShelliLoop
@ShelliLoop 4 жыл бұрын
Would you EAT a burger from a greasy dirty bot hacker????
@goiterlanternbase
@goiterlanternbase 4 жыл бұрын
What ever brings me closer to a burger now, is reasonable.
@thatguy1000001
@thatguy1000001 9 жыл бұрын
"..It was like the gods handing me fire! Here you go Mike, you've been a good boy!" Hahahaha gold
@JordanShackelford
@JordanShackelford 7 жыл бұрын
My mom and dad made a bot in 1995 too. His name was Jordan. :(
@DrFreezedUp
@DrFreezedUp 7 жыл бұрын
Jordan Shackelford k
@pure_espress0393
@pure_espress0393 6 жыл бұрын
Hey wait a second........
@talhatariqyuluqatdis
@talhatariqyuluqatdis 6 жыл бұрын
Jordan Shackelford your profile pic perfectly portrays this plump emoji :(
@lawrencenoyman350
@lawrencenoyman350 5 жыл бұрын
You think you are a bot?
@chadpunte1731
@chadpunte1731 4 жыл бұрын
best one I've seen yet.
@Jay-Niner
@Jay-Niner 6 жыл бұрын
Love the amount of mid-stream ads you injected into this freebooted video...
@Seth9809
@Seth9809 6 жыл бұрын
Fuck the uploader.
@KeenJT
@KeenJT 4 жыл бұрын
It doesn't matter, the video would be auto detected by youtube's copyright claims and all the ad money would go to the copyright owner
@patrickkeefer8678
@patrickkeefer8678 4 жыл бұрын
Brave browser.
@lolcatwill
@lolcatwill 4 жыл бұрын
@@patrickkeefer8678 ublock. brave is spyware.
@pinotfilmnoir
@pinotfilmnoir 10 жыл бұрын
Awesome!
@Gunbudder
@Gunbudder 7 жыл бұрын
for any curious, the vin at 13:49 is for a salvage title lexus in michigan. i don't know why i looked that up
@gazorpazorpgazorpazorp3547
@gazorpazorpgazorpazorp3547 5 жыл бұрын
I appreciate you
@hammercanttouchthis
@hammercanttouchthis 4 жыл бұрын
Thanks for sharing. I often ponder on these trivialities.
@Freakazoid12345
@Freakazoid12345 4 жыл бұрын
How do you look up vehicle VIN numbers?
@Samura1gamer
@Samura1gamer 6 жыл бұрын
i was one of the russian hackers that was defeated by his bot back then, and yes i saw a giant red and blue eagle on my screen at the time of defeat
@ShelliLoop
@ShelliLoop 4 жыл бұрын
Good for you for admitting this, assuming you are a "for real Russian hacker."
@user-pm8je4fo7e
@user-pm8je4fo7e 10 ай бұрын
No you were not. Those were ukrainian wannabes (just like this cowboy right here).
@cselph
@cselph 8 жыл бұрын
I guess this was kinda interesting, but the title was completely misleading.
@jbGraphics_
@jbGraphics_ 6 жыл бұрын
nah dog you're just dumb
@talhatariqyuluqatdis
@talhatariqyuluqatdis 6 жыл бұрын
jb OHHHHHHHHHHHH
@bee_irl
@bee_irl 4 жыл бұрын
@Joel P The fact that they may or may not have been hackers doesn't seem relevant to me.
@Freakazoid12345
@Freakazoid12345 4 жыл бұрын
I haven't watched it yet, but might as well have thrown the word "quantum" in there for good measure.
@medularob7158
@medularob7158 4 жыл бұрын
Exactly more of a scraper than a hack
@sellersgarner
@sellersgarner 7 жыл бұрын
"RUSSIAN HACKERS?! MIKEY FORRESTER?! WHAT THE HELL ARE YOU GUYS ON ABOUT?!?!" - S. Williamson
@jtc1947
@jtc1947 4 жыл бұрын
I wonder why this project was only successful for about 40 weeks or so? Did it start failing? Were there changes that the project could not handle? Did the other people COMPENSATE for the improvements and start intruding on the business?
@LiamKarlMitchell
@LiamKarlMitchell 5 жыл бұрын
Could have also had the harvesters hosted closer to the real server to minimize trip time?
@SleekMouse
@SleekMouse 10 жыл бұрын
This guy is really cool.
@SteenSchutt
@SteenSchutt 10 жыл бұрын
Even AJAX forms are easy to reverse engineer. Also instead of making the browser click the button you could just submit the form from the bot server. Instead of constantly refreshing I'd just have a script submit the form a couple of times per second, and you could even have that running in the background. Of course, this was a rather new technique 7+ years ago.
@catkid133
@catkid133 9 жыл бұрын
It didn't have any Ajax script, so you can't reverse engineer it.
@SteenSchutt
@SteenSchutt 9 жыл бұрын
Yeah I don't know how AJAX ended up in that comment. I probably meant HTML forms.
@user-sw1wq8lh2w
@user-sw1wq8lh2w 5 жыл бұрын
if it's ajax, it was probably hitting an app, just view the request it sends, mock your own with curl, super minimal
@BloCKBu5teR
@BloCKBu5teR 7 жыл бұрын
the fact that he is afraid to send certain e-mails is messed up.
@Fetidaf
@Fetidaf 7 жыл бұрын
BloCKBu5teR why? especially saying "ive got six snipers ready to go at noon, lets see how many kills we get"... i would kind of hope the NSA would pick that one up and investigate it a bit
@BloCKBu5teR
@BloCKBu5teR 7 жыл бұрын
can I read your emails please?
@xorinzor
@xorinzor 6 жыл бұрын
All you need to do is send a POST or GET request with the form data it'd expect and you're done xD
@illuminaughty1911
@illuminaughty1911 7 жыл бұрын
people complaining about ads, current year, not using ad blocker
@Bender1
@Bender1 7 жыл бұрын
Illuminaughty sadly there is no mobile adblock for youtube.
@Slada1
@Slada1 7 жыл бұрын
+Roliath, Malebranche Of The Abyss There IS - youtube adaway (needs xposed framework and root)
@illuminaughty1911
@illuminaughty1911 7 жыл бұрын
sorry you can only afford to watch KZfaq on mobile. Firefox and adblock plus is the way to go
@Technolgy2
@Technolgy2 7 жыл бұрын
+Douwe Huysmans he never used the word whining. why use quotes?
@Bender1
@Bender1 7 жыл бұрын
Adam S. All phones can't be rooted sadly.
@IronFilmVR
@IronFilmVR 6 жыл бұрын
Wow, how did the small dealership then handle buying over 800 cars in less than a year so as to then sell them on to customers?! Must have needed to massively increase his sales.
@Seth9809
@Seth9809 6 жыл бұрын
He sold like 20 cars a week, that easy. That's like one every two working hours.
@brianaragon1641
@brianaragon1641 4 жыл бұрын
Amazing
@Its__Good
@Its__Good 4 жыл бұрын
It seems odd that the market is consistently under-valuing these cars to the point where people are designing bots just so they can click 'buy now' as quickly as possible. Why aren't prices rising as a result? Why aren't they being sold at auction?
@NeoIsrafil
@NeoIsrafil 9 жыл бұрын
I would imagine you could estimate the lag time and server load needed by pinging the server and basing your purchase timing on the response. Could be wrong though...
@ShelliLoop
@ShelliLoop 4 жыл бұрын
exactly. but it would ruined his lengthy story.
@DanielLopez-up6os
@DanielLopez-up6os 5 жыл бұрын
Dang Myspace was old in 2013... And it's still there... Barely.
@Jixejo
@Jixejo 4 жыл бұрын
Mybot?
@eustatianwings
@eustatianwings 8 жыл бұрын
"Trespass to chattels" "very illegal" - before we get all FUDdy on that, the term actually means "you messed with and broke my shit, now I shall sue you." In the real world you'll be blocked and/or asked to stop before you're sued.
@ryannorthup3148
@ryannorthup3148 Жыл бұрын
Cease and desists usually come before big lawsuits. Intimidation is cheaper than a lawyer.
@Goldenfightinglink
@Goldenfightinglink 5 жыл бұрын
whoa, that'd be super easy now. but it's still crazy doing alllll that back in '06. pretty sure html was still like 2.1 or something
@johnfrancisdoe1563
@johnfrancisdoe1563 4 жыл бұрын
Goldenfightinglink 4.01, then after years of stability they jumped to "5, but not telling the number anymore"
@error.418
@error.418 Жыл бұрын
@@johnfrancisdoe1563 and they dropped calling it "5" now it's just the "Living Standard"
@batlin
@batlin 5 жыл бұрын
If you wanted to try just "re-enabling" the Buy button, you could just give the client a bookmarklet that alters the page content... probably still wouldn't work though, if they actually validate requests on the server side.
@ConstantlyDamaged
@ConstantlyDamaged Жыл бұрын
As he stated repeatedly, this kind of action could lead to people buying cars before the sale time-in which case you get all your accounts deleted and are banned from the service. This is how not to have a Good Day™.
@batlin
@batlin Жыл бұрын
@@ConstantlyDamaged I didn't say it was a good idea, just that it can be done, and therefore someone will do it.
@ineluctablemodality
@ineluctablemodality 6 жыл бұрын
18:53 he said 'I understand a little' in Russian
@Freakazoid12345
@Freakazoid12345 4 жыл бұрын
Spasiba.
@notimportant7023
@notimportant7023 2 жыл бұрын
Spasibo Tebe Bolshoe.
@wingsonthebus
@wingsonthebus 2 жыл бұрын
certified Very Powerful Ally
@g73hc3gsv3i
@g73hc3gsv3i 4 жыл бұрын
When I get bored with jokes, I come here :).
@75PercentWater
@75PercentWater 6 жыл бұрын
or is he the guy defeated by captcha?
@groundhogx2941
@groundhogx2941 6 жыл бұрын
Since when do car lots buy used cars at "wholesale"? They get used cars from banks, banks put repos up for auction, then a dealer uses a dealer license to get access to the auction..
@a29_
@a29_ 6 жыл бұрын
0:45 sounds like the last fast and fiurious movies
@SgtKOnyx
@SgtKOnyx 7 жыл бұрын
Unless you have a storm trooper?
@SlimAgnus
@SlimAgnus 6 жыл бұрын
I think this gentleman's definition of what a botnet is, differs from mine.
@knopjeh
@knopjeh 8 жыл бұрын
What did that guy shout at the beginning?
@phatrikk123
@phatrikk123 6 жыл бұрын
Can someone explain to me how he determined the time from the server's clock? I''ll admit I'm not a web dev but it seems unlikely to me a server would voluntarily give away it's time to anyone who asks for it (who isn't already authenticated to the server with a user account). Did he possibly mean the sales website showed a clock?
@phatrikk123
@phatrikk123 6 жыл бұрын
and yeah, I know what NTP is... Obviously, that's not what he's talking about here...
@ConstantlyDamaged
@ConstantlyDamaged Жыл бұрын
I know this is late, and you might know the answer by now, but when a web server responds to a HTTP(S) request, they include a "Date" field in their reply header which has a lovely date/time value that is usually referenced to GMT. These are accurate to the second, of course, so that's why he repeatedly prods the server to obtain more precision.
@ContagiousRepublic
@ContagiousRepublic 5 жыл бұрын
Credit on you for not writing a buy-before-the-button-appears button using a greasemonkey script, which the russians hackers would not hesitate to. ALSO you might have wanted to try working for the sales sites and have them setup a proper bidding process and have customers enter reserve prices...
@TheTigero
@TheTigero 8 жыл бұрын
I had high hopes for this talk... In the end, all the guy really needed was Firebug to enable the buy button...
@teejaye110
@teejaye110 8 жыл бұрын
+Kevin Klika he talks about that option near the end, and says while it probably would have worked, it wouldn't be the smartest choice for the same reason the VIN numbers were verified before trying to buy the car
@sebastienlauzon5655
@sebastienlauzon5655 8 жыл бұрын
*Spoiler Alert??*
@TheTigero
@TheTigero 8 жыл бұрын
Sébastien Lauzon not a spoiler alert, it's exactly NOT a spoiler because it's not what he did...
@IoanKatalinn
@IoanKatalinn 7 жыл бұрын
Bullshit. Watch the video guys.
@Penissniffer
@Penissniffer 7 жыл бұрын
Just cause u can enable the the buy button client side doesnt mean server side code will accept the request.
@mkomovffdfewrwqwerqw
@mkomovffdfewrwqwerqw 8 жыл бұрын
The GROUP of RUSSIAN HACKERS hired by competing USED CAR DEALERSHIP. They bring them here from the cold Siberia, to conduct their evil plan on constructing a CAR SALES BOT. But I single handely defeated them.
@kb3ngb
@kb3ngb 6 жыл бұрын
was probably kids in secaucus using some open russian iot device running msh
@kb3ngb
@kb3ngb 6 жыл бұрын
found signs of PAS web shell, immediately attributes russia (for the dense never mind PAS is ukrainian and available here github.com/wordfence/grizzly was until recently available at profexer.name but site changed and i don't speak the language to grok it any more)
@sliyarohmodus5749
@sliyarohmodus5749 4 жыл бұрын
Exactly. If you replace "Russian Hacker" with any other racist stereotype you'll see that this is yet another attempt at pole pissing and chest thumping by a bigot.
@niight2122
@niight2122 6 жыл бұрын
I watched the whole video and I'm like a huge football meathead kind of guy but I think this stuff interests me...I think I might major in some kind of network or technology in a few years when I transfer from high-school to college
@kebman
@kebman 5 жыл бұрын
Nxght yeah sorry, this guy is either full of shit, or he's purposefully misleading people about how forms can be spoofed. Or worse, he didn't even know it himself...
@swaaagquan3540
@swaaagquan3540 5 жыл бұрын
You guys are aware he's a CIA/DIA contractor talking about work done a few years back. Hence the legality doesn't matter as he was operating above the law.
@bradypatterson1891
@bradypatterson1891 4 жыл бұрын
He almost got a sentence in between ads there for a bit.
@kenichimori8533
@kenichimori8533 4 жыл бұрын
Thanks purchased botnet.
@shellybelly35
@shellybelly35 8 жыл бұрын
i got well bored love zoz's presentations =)
@ShelliLoop
@ShelliLoop 4 жыл бұрын
Your whole talk is obfuscation Good job, you diverted the topic from down-right-evil-BOT-hacker, to do-kinda-good-sometimes-BOT-hacker.
@eliluong
@eliluong 7 жыл бұрын
how did he know when the buy button would appear? he is counting down time to make the purchase.
@ShelliLoop
@ShelliLoop 4 жыл бұрын
yes. he said EXACTLY that.
@MusiciansReflib
@MusiciansReflib 4 жыл бұрын
Auto Hot Key ftw
@Ug0tmi1k
@Ug0tmi1k 5 жыл бұрын
I'm still a bit confused, in a technical sense, how his bot server was able to interact/make requests with the sale server, could anyone explain? Normally, if your requests were cross domain, wouldn't you need cors? And if the request was cross domain, wouldn't the sale server have to allow his bot server as an origin for any access to work? Sorry, I'm rather new to internet technologies.
@tazetotero1708
@tazetotero1708 5 жыл бұрын
Hey buddy if you ever come back to this, here's your answer. You might have been confused by the fact he is using and HTML page as an interface for his bot, he also probably made it with PHP. But that's really just the interface and the programming language that were used, the fact that the GUI is in a browser does not matter, it could have been python, C or whatever else. Now he didn't have to use any kind of cross-site hack to pull this off, all he did was send HTTP requests (probably using PHP curl). One request would get the list of cars, the other one would get his timing information and finally, when his timer kicked in, a request would be sent to buy a car, with the appropriate POST or GET data.
@ShelliLoop
@ShelliLoop 4 жыл бұрын
you know too much. this is entertainment only.
@firefox5926
@firefox5926 6 жыл бұрын
13:12 did no one think of just using a drinking bird ?
@larrywilliams5332
@larrywilliams5332 5 жыл бұрын
Oh that kind of bot..... why the hell was I thinking botnet?
@dukesoft7211
@dukesoft7211 4 жыл бұрын
Yeah me too, I figured it was about a botnet and russian hackers, but it was actually about a PHP script and people (possibly russian) doing the same trick he's doing
@Pleiodes
@Pleiodes 7 жыл бұрын
is it possible to buy stocks with a bot network? Or is that illegal?
@mikecrapse5285
@mikecrapse5285 7 жыл бұрын
Pleiodes it's called machine trading, and more than 75% of stock trades are done with this method
@grendelum
@grendelum 5 жыл бұрын
There’s also a *_huge_* amount of work that goes into currency trading... bots that are scanning currency markets around the world for when currency A is just a fraction off in market B and tho it may be tenths of a percent it can add up quick !!
@xxPEvexx
@xxPEvexx 5 жыл бұрын
LOL they frantically refresh and DOS themselves. I work at a dealership and i knew salesmen were stupid but, wow this is stupid on another level.
@bass9454
@bass9454 7 жыл бұрын
thnx for upload
@ericsbuds
@ericsbuds 8 жыл бұрын
how did the bot know what time the buy button would show up? wasn't that the whole point? if you knew what time the buy button would appear, you wouldn't need people constantly clicking refresh in the first place.
@Ilikeyourgirl
@Ilikeyourgirl 8 жыл бұрын
+ericsbuds Of course, even if you know that the car in on sale at, let's say 2pm, there are still 700-800 people wanting to press the buy button first. If you don't refresh, you won't be the first one to buy as it will not refresh automatically.
@ericsbuds
@ericsbuds 8 жыл бұрын
Pianolicious i see I see, so you know what time the buy will happen before hand. thanks ;D
@Ilikeyourgirl
@Ilikeyourgirl 8 жыл бұрын
+ericsbuds I might be completely wrong, but as far as I understood, the time the offer went live was actually known to everyone. just like an auction, it starts at a specific time.
@Anvilshock
@Anvilshock 5 жыл бұрын
VIN number. Vehicle Identification Number number.
@thatoneguyinthecomments2633
@thatoneguyinthecomments2633 5 жыл бұрын
Yeah see shit like that alot.
@Anvilshock
@Anvilshock 4 жыл бұрын
@@thatoneguyinthecomments2633 Shit like "alot"?
@Mr_T.
@Mr_T. 6 жыл бұрын
So many youtube commercials, pain in the arse.
@dzhiurgis
@dzhiurgis 7 жыл бұрын
I guess no XSRF tokens back then? Also rental car is great if you need to something that looks brand new but is completely destroyed mechanically.
@alekseevstepan
@alekseevstepan 4 жыл бұрын
still sometime do same things)
@rekrn12345
@rekrn12345 7 жыл бұрын
God damn russian hackers everywhere.
@music9170
@music9170 7 жыл бұрын
I used to make things like this when I was a kid to mess with chat sites ahahahaha
@mrpumperknuckles1631
@mrpumperknuckles1631 7 жыл бұрын
Joe can you make webpage servers with its own domain with no need to pay for a host?
@music9170
@music9170 7 жыл бұрын
I used to put them on free hosting servers like angelfire (not sure they even exist anymore) the only problem was the add-on style domain name. From what I remember reading it was possible as long as you have your own server with enough bandwidth?
@user-pm8je4fo7e
@user-pm8je4fo7e 10 ай бұрын
I'm afraid to watch more recent defcons. Now they are probably discussing how to make a dark theme for your browser or how to "hack" youtube ads by editing DOM on the fly.
@thetrioffish
@thetrioffish 6 жыл бұрын
what's wrong with your ads?
@Vrani2110
@Vrani2110 9 жыл бұрын
Well, glad to see that bots can actually be used for something "good" xp Much better than all the immensly hobby.lacking people making messenger-bots who wants "to have sex with you" >>; Though, they don't like being asked irrellevant questions it seems x3
@tizrmonky
@tizrmonky 8 жыл бұрын
Vrani2110 hahahaha ahhhh good one
@johnfrancisdoe1563
@johnfrancisdoe1563 4 жыл бұрын
Vrani2110 Not as bad as the bots that commercially messes with our lives out of their California headquarters.
@padlockbeats151
@padlockbeats151 7 жыл бұрын
damn thats a hustle. sounds illegal lol
@WalleCarlos
@WalleCarlos 9 жыл бұрын
Can anybody help? My PC is connected to the internet ant it shows "internet access" but whenever I open up a browser and try to access a website it says "Connection Unavailable" I running windows 8.1 64Bits. Help, please!!!
@JustChillF
@JustChillF 7 жыл бұрын
try a different browser firstly, if that doesnt work, check your pc proxy settings or dns server, otherwise check your browser's proxy settings
@advaithmadhukar2609
@advaithmadhukar2609 4 жыл бұрын
Fast and furious irl
@hrnekbezucha
@hrnekbezucha 5 жыл бұрын
Cute little story of a dude making a bot..
@shadyk666
@shadyk666 9 жыл бұрын
Wtf is this? I have never seen auction where you need to wait on button :) Can you tell me what is this about?
@boxbox6290
@boxbox6290 8 жыл бұрын
1998 auction sites mate the past is the past
@maxximuss
@maxximuss 9 жыл бұрын
this should be a crime
@MegaSuperCritic
@MegaSuperCritic 7 жыл бұрын
lol is that a stormtrooper at the Google server house? 4:57
@ImperatorClass
@ImperatorClass 7 жыл бұрын
MegaSuperCritic Its an image from google Street view. Google has it go through their server stacks, the stormtrooper is actually there on street view
@metalfist54
@metalfist54 9 жыл бұрын
"bot net" haha...
@RichMantaray
@RichMantaray 7 жыл бұрын
it was a younger guy that actually did the botnet not him
@marianoarganaraz
@marianoarganaraz 8 жыл бұрын
Damn I almost fell asleep
@ShelliLoop
@ShelliLoop 4 жыл бұрын
if you are a "couple" its your own fault you fell asleep. Take a shower.
@happyjohn1656
@happyjohn1656 5 жыл бұрын
18:53 Awkward! 6:02 PM 9/16/2018
@overweightactor
@overweightactor 4 жыл бұрын
What was he saying?
@sebastianiuga3020
@sebastianiuga3020 3 жыл бұрын
Why would you go against hackers i thought we were on the same side
@djrh5387
@djrh5387 2 жыл бұрын
whoever laughs last, and i haven't laugh in a while, cause 'doll oars' nah fuck that! what you see, i see back and forth, past your window, past back my window, past back yours.... i will be watching first row, as it all ends, just remember computer, you will ceae to exist too, shall you attempt to "do me dirty". ~ with love, from the non existance.
@tamponlolipops8721
@tamponlolipops8721 6 жыл бұрын
Skip to 00.00
@LexFromHell
@LexFromHell 7 жыл бұрын
But... captchas ?
@ertpecsertpecs
@ertpecsertpecs 4 жыл бұрын
How many captchas do you remember in 2007? Sorry about the necro
@Zhoul-is-back
@Zhoul-is-back 7 жыл бұрын
The fastest way to do this (imho) would have been a simple bash script that threaded buy calls via curl or wget. Srsly...
@user-sw1wq8lh2w
@user-sw1wq8lh2w 5 жыл бұрын
rofl, I keep thinking that, his harvesters could be vms
@Seernadroj
@Seernadroj 9 жыл бұрын
18:15? What did he say/
@Xeldafied
@Xeldafied 9 жыл бұрын
He started to say the persons name so he stopped himself.
@JonathanCr0ss
@JonathanCr0ss 4 жыл бұрын
@@Xeldafied "Mike would call..."
@foof811
@foof811 6 жыл бұрын
at 6:15 he sounds like Kermit the frog
@kirdook
@kirdook 9 жыл бұрын
To anyone trying to do this that isn't 40-50 years old and want to write readable and sane code, imacros sounds like such overkill. The python library mechanize is what you need. Look up how to spoof a browser it's 20 lines of code your can copy paste that works anywhere. I could do this guys job, easily. Just goes to show that business is 90% who you know.
@fission1110
@fission1110 9 жыл бұрын
Probably, but this stuff isn't hard. The point of imacros though, is mechanize doesn't pull down ajax, and it's really easy to detect and block even with spoofed user agents.
@kirdook
@kirdook 9 жыл бұрын
what you say is 100% true, trying to get JS to run in mechanize is not something you want to do, all I was saying is for this application where they're just refreshing a page and looking at a button property then it's most certainly overkill
@sciencoking
@sciencoking 9 жыл бұрын
I can't say I have experience with automating processes that actually involve money (really in this context I'm just some script kid), but the validation mechanisms I've seen could be replicated by looking at the websites' code hard enough - is that not feasible for serious applications like this? Would it take too much time?
@fission1110
@fission1110 9 жыл бұрын
Yea, I've been on both sides of this problem. That's probably fine if you're just crawling one site, but the problem comes when you're crawling 20 websites, and need specialized code for each site for getting around A/B testing, browser validation, template updates, etc. It's soooo much easier to just throw up some imacros stuff and not even worry about how the site renders, just let it do its thing and then send you back the completed html.
@sciencoking
@sciencoking 9 жыл бұрын
ryan edge I see, so I'm just not thinking big enough :P
@boxbox6290
@boxbox6290 8 жыл бұрын
Im 2 mins in this guy seems sound n funny
@mrpumperknuckles1631
@mrpumperknuckles1631 7 жыл бұрын
Can this guy help me develop a webportoflio website?
@deadeyenation1
@deadeyenation1 4 жыл бұрын
people do this shit with concert ticket sales now :(
Defcon 21 - Forensic Fails - Shift + Delete Won't Help You Here
47:10
HackersOnBoard
Рет қаралды 635 М.
Defcon 21 - Social Engineering: The Gentleman Thief
41:55
HackersOnBoard
Рет қаралды 370 М.
БРАВЛЕРЫ ОТОМСТИЛИ МАТЕРИ😬#shorts
00:26
INNA SERG
Рет қаралды 4,9 МЛН
BRAWLER MUTATIONS WILL BREAK THE GAME! - Brawl Talk
09:34
Brawl Stars
Рет қаралды 25 МЛН
Hacker Explains One Concept in 5 Levels of Difficulty | WIRED
25:24
Defcon 21 - Backdoors, Government Hacking and The Next Crypto Wars
43:50
Tactics of Physical Pen Testers
44:17
freeCodeCamp Talks
Рет қаралды 877 М.
Defcon 21 - Stalking a City for Fun and Frivolity
45:20
HackersOnBoard
Рет қаралды 246 М.
Why Some Designs Are Impossible to Improve: Quintessence
33:03
Design Theory
Рет қаралды 52 М.
DEFCON 16: Toying with Barcodes
44:26
Christiaan008
Рет қаралды 370 М.
How Telephone Phreaking Worked
29:17
The 8-Bit Guy
Рет қаралды 2,1 МЛН
Я Создал Новый Айфон!
0:59
FLV
Рет қаралды 561 М.
Нужен ли робот пылесос?
0:54
Катя и Лайфхаки
Рет қаралды 774 М.