Apex Legends Vulnerabilities - Investigation and Wrap Up

  Рет қаралды 562,841

Pirate Software

Pirate Software

Күн бұрын

PirateSoftware and ImperialHal sit down to chat about the recent Apex Legends vulnerabilities and review some of the connection information from Hal's machine. Then, a chat with cybersecurity expert John Hammond to take a closer look at the underpinnings of the attack.
PirateSoftware:
piratesoftware.live
/ discord
ImperialHal:
/ imperialhal
/ tsm_imperialhal
John Hammond:
/ @_johnhammond
Timestamps:
0:00 Start
1:00:44 Recap of the Situation
1:36:00 Call with John Hammond
1:38:20 Breakdown & Analysis
2:25:10 Name Etymologies
2:30:20 The Situation in Summary
2:40:50 Staying Cautious on the Internet
-
Edited by Steets
#Hacking #Apex #ApexLegends

Пікірлер: 1 300
@_JohnHammond
@_JohnHammond Ай бұрын
Huge thanks for letting me join you Thor -- super cool to dig into this with you and the goblins 😎 Hope we can get together again soon!!
@DMCknight
@DMCknight Ай бұрын
Dang two of my favorite content creators 🥲
@amfam100
@amfam100 Ай бұрын
why do you cyber security guys have announcer voice lololololol
@bullymaguire9318
@bullymaguire9318 Ай бұрын
Hammond Robotics?!😮
@MalwareCube
@MalwareCube Ай бұрын
What a crossover.
@jonjayb
@jonjayb Ай бұрын
This was the crossover I needed for sure
@scottdoherty7531
@scottdoherty7531 Ай бұрын
If you dont believe that his aim felt weird, remember that steph curry once lost his dribble, blamed the floor, and it was actually aomething wrong with the floor
@mkmasterthreesixfive
@mkmasterthreesixfive Ай бұрын
that dead spot in the floor was crazy tho
@billytran3692
@billytran3692 Ай бұрын
I remember hearing that some fps player noticed his setting were wrong by 5 dpi. They know their settings
@DigitalJedi
@DigitalJedi Ай бұрын
Yeah this is 100% a thing. People know when something is off about the thing they do for a living. I have nearly 6000 hours in rocket league and play competitively. I can tell the difference between default and my preferred sensitivity settings. The game gives quite fine steps, and I can still tell when something is off by 1. I can tell when the frame rate isn't as high as I'm used to. The game is best played at 2x refresh rate, so for me it is 280hz. I can tell when it dips to 240hz because inputs feel "off." Physics runs at 120hz in the game, but inputs are displayed as fast as possible with predicted movement for a few frames at most.
@flashmasterp.2685
@flashmasterp.2685 Ай бұрын
🤫🤫🤫🤫🤫🤫 The Goblin Lord /KZfaq sherlock is talking. Take your sports stuff somewhere else.
@tyranus1111
@tyranus1111 Ай бұрын
KZfaq STILL gives me the short of that video
@listofromantics
@listofromantics Ай бұрын
From a random KZfaq short, Thor has become my favorite streamer. Respect.
@ClickyCrisp
@ClickyCrisp Ай бұрын
Amen man me too
@Bassalicious
@Bassalicious Ай бұрын
Same. Shorts are actually the best advertising for this man. You can't skip them because you're hypnotised by his voice at first but then realize every single word he spoke was pure wisdom and truth with a whole load of motivation and love poured on top - or alternatively some super funny oddball take or realization you won't ever be able to un-hear. Gotta love him :)
@EmberTheShark
@EmberTheShark Ай бұрын
Same, Charisma off the Charts and very easy to listen to / watch
@ethelegend
@ethelegend Ай бұрын
Both him and folding ideas have that perfect voice that you can listen to for hours even if you're not initially interested in the topic
@andreasiven21
@andreasiven21 Ай бұрын
​@@BassaliciousoO
@cptCrax
@cptCrax Ай бұрын
What I really love is how @ImperialHal clearly isn't a programmer and or IT person but he didn't get discouraged by Thor's tech talk. Instead of thinking "oh man, I'm out of my element, I'm going to stop talking because I don't know what might sound ignorant", he went with "oh man, I'm out of my element, so I'm going to KEEP talking because I don't know what MIGHT BE RELEVANT"! And it made all the difference.
@silentKeys20
@silentKeys20 Ай бұрын
I mean the way he approaches the game is very logical. It makes sense how he's able to grasp the information given despite not having IT experience.
@ericbright1742
@ericbright1742 Ай бұрын
I do work in Software Dev, and that's why I give as much information as possible in software/hardware issues, or medical situations. In that situation, I know that it is not my job to decide whether or not a detail is relevant. It's the professional's job, and I am the customer in that situation.
@MoreJohnBlazeThan_
@MoreJohnBlazeThan_ Ай бұрын
You must not be familiar with Hal , dude has never stoped talking , ever.
@Paul2.4T
@Paul2.4T Ай бұрын
EXACTLY, THAT IS WHAT MAKES THIS SUCH AN EDUCATIONAL GEM, GOD I LOVE THIS
@xenonPT
@xenonPT Ай бұрын
dude, I just had a literal epiphany reading this! I was struggling with getting ownership and talking about the features that I built because everyone else has more experience than me in both in the area and in the project! Reading this made me understand that what I say might be relevant, and that solely should be enough encouragement for talking. Thanks!!
@ClickyCrisp
@ClickyCrisp Ай бұрын
I'm loving this man, this isn't drama, this isn't petty stuff, this is actually informative conversation that I think everybody should learn from
@rixarlin
@rixarlin Ай бұрын
woah fancy meeting you here! hope you're doing well :)
@RatKingInf
@RatKingInf Ай бұрын
Pure journalism.
@prokjohnny7414
@prokjohnny7414 Ай бұрын
CLICKYCRISP?!? Holy shit I hope you’re doing well man! Me and my buddies use to watch all your csgo content back in the day! Fuckin brought back a bunch of memories.
@ace1122tw
@ace1122tw Ай бұрын
Everything that's good
@Sizzyl
@Sizzyl Ай бұрын
fr, this was super nice to listen to walking around
@NOVAScOoT
@NOVAScOoT Ай бұрын
Only really noticed about an hour in, but huge thanks for not having ad interruptions on this upload. The cpm would be crazy because the runtime, and people will watch because it's a hot topic, but you didn't and it makes the viewing experience so much better. Most people won't notice, but those that do will appreciate it but probably won't say anything, so here's that recognition and thanks.
@Mawyman2316
@Mawyman2316 Ай бұрын
Use an adblocker, then you don’t notice regardless.
@Sil3ntD3ath478
@Sil3ntD3ath478 Ай бұрын
Use YT premium instead. Give the creators the money for your view
@Mawyman2316
@Mawyman2316 Ай бұрын
@@Sil3ntD3ath478 I do, but I also don't really support many of googles changes, so I won't recommend it for others.
@vel.03
@vel.03 Ай бұрын
@@Sil3ntD3ath478 🤝🏽
@unbekant585
@unbekant585 Ай бұрын
@@Sil3ntD3ath478 Nahh i'll keep my adblocker on. My favorite creators are well off and google has enough money to buy whole countries
@christopherborer5567
@christopherborer5567 Ай бұрын
I like the way his thought process works and the way he talks. Its pure reason, logic, and appropriate caution
@KeiFlox
@KeiFlox Ай бұрын
I love it and it's so refreshing to see.
@McWillis
@McWillis Ай бұрын
Definitely why I sub to Thor. His thought process. Having a answer and a counter argument to his own answer. It's Good to be confident and good to be skeptical. But great to be both.
@Justin-fq8dt
@Justin-fq8dt Ай бұрын
You'd be surprised. This way of thinking and articulating ideas isn't actually that uncommon amongst professional software or security engineers, but seems to be extremely rare more broadly. I can definitely appreciate it on youtube in particular though - most people who think like this aren't out there making content.
@silentKeys20
@silentKeys20 Ай бұрын
The way he thinks is pretty much standard in this industry. You should always consider all possibilities, rank them based on probability, and try to prove or disprove each one by one. Of course he's very experienced and he has very good communication skills to explain this to the average viewer considering he's been a streamer for a while.
@lordcola-3324
@lordcola-3324 Ай бұрын
You should talk to the Northstar developers over this. From what I understand the Netcode and server architecture of Apex is directly build on the one form Titanfall 2 and apparently they are still extremely similar. The Northstar developer reverse engineered the client server protocol for Titanfall 2 so that they can host community run servers for Titanfall 2 which you can access via the modified titanfall 2 game client called Northstar. Outside of Respawn developers these guys are the most knowledgeable on how the multiplayer infrastructure works on those games. Titanfall 2 too had a long running problem where some guy was attacking the servers via his hacked client that send malicious packets to the servers and the Northstar developers were one of the few people actually understanding what exactly was happening and they patched it for the community servers themselves.
@MorbidEel
@MorbidEel Ай бұрын
According to some comments it is not just "some guy" but the "same guy".
@janvangils5560
@janvangils5560 Ай бұрын
​@@MorbidEel I disagree, for a very simple reason. The titanfall 2 attacks were way less playful. Even ignoring the possible people it could have been in TF the hacks and attacks there was just bringing down the server all the time, no messages no nothing just destroying all the fun. These apex hacks are, while still bad is varying in intensity, target methods. He is enjoying this like Thor said so unless he had a wild personality shift, I really doubt it is the same person/people
@RuneKillerz109
@RuneKillerz109 Ай бұрын
@@janvangils5560 well according to this they either dislike the community servers, which i don't believe or may have some contact with that other person. Maybe destroyer2009 is just the guy using the client and r4ndom is behind making the client. If this exploit is also in titanfall2 it could also have been written into a hacking forum and the both of them started working from there. Anyways the history is less important but it's good to know that there may be people more experienced with this
@Chroniclerope
@Chroniclerope Ай бұрын
@@RuneKillerz109the community servers were made in response to the unplayability of the official servers.
@RuneKillerz109
@RuneKillerz109 Ай бұрын
@@Chroniclerope and people are wierd sometimes. Like i said i don't believe that it was the case but it is a possibility.
@ajplays-gamesandmusic4568
@ajplays-gamesandmusic4568 Ай бұрын
I am imagining Thor sitting across from this guy in a booth at a greasy spoon dinner, giving this monologue, and then he says, "We're not so different, you and I. You just approached this puzzle from the other side of the line.". Then the Dragnet Theme plays. 1:21:03
@PoeticSkizzy
@PoeticSkizzy Ай бұрын
Explained it perfectly. Hacker’s critical thinking is on another level
@btf_flotsam478
@btf_flotsam478 Ай бұрын
​@@PoeticSkizzy Areas that rely on critical thinking are very good at it. Using a skill as part of your job gives you all the practice you could ever need.
@DignityForAllyt
@DignityForAllyt 18 күн бұрын
I’m just going home 🏠
@Rocker-1234
@Rocker-1234 Ай бұрын
its easy to see how he missed the malwarebytes thing at first. green with a tick would just be like "oh thats fine" for most unless they know specifically what theyre looking for, specially when malwarebytes normally flags bad stuff at orange or red. really nice catch by the person who managed to find it in the vod
@bosteezyy
@bosteezyy Ай бұрын
I'm studying computer networking in community college right now and I am about to transfer to a university to get a degree in cybersecurity, this is helping me a lot. Thanks Thor!
@matthewcampbell7286
@matthewcampbell7286 Ай бұрын
cybersec degree's are mostly garbage unless your goal it to be a best practice person. The problem with this position is it sort of became popular due to salary. But the people who took this role initially were hackers , malware analyst, reverse engineers. Think www.youtube.com/@LiveOverflow or www.youtube.com/@_JohnHammond types. Deep knowledge in thing like "live of the land" trade craft, or reverse engineering. we are talking about at least half a decade or more of accumulate knowledge just to get to the starting line. But now we have universities trying to replicate this sort of expertise... and it really doesn't work well. You get people that are basically in the dunning kruger effect. They are given this super wide pool or very shallow knowledge. like they sort of learn to know what possible.. but not how to implement it so they really don't know how to properly defend.
@andybanan1992
@andybanan1992 Ай бұрын
man, the way thor lights up and just gleefully smiles every time he places a new piece of the puzzle, its rare to see such love for your craft.
@renjitsu26
@renjitsu26 Ай бұрын
I've been a System Admin for 10 years. I'm glad people are finally learning how delicate cyber defense is. We have to get SO LUCKY in modern times because criminals have gotten better with better technology.
@idiotidiot5821
@idiotidiot5821 Ай бұрын
Being soft on crime isnt helping at all.
@eyeroxers
@eyeroxers Ай бұрын
The defensive side will always be on the back foot, it doesn't matter how good the white/grey hats gets the black hats will always have the advantage
@matthewcampbell7286
@matthewcampbell7286 Ай бұрын
@@idiotidiot5821 Being hard or soft of crime really doesn't effect criminal behavior. criminals tend to have deficits in executive functions (impulse control, emotional regulation, foresight) Adding heavy consequence doesn't factor in much since the part of the brain that would factor that in and modulate behavior doesn't have a strong input into decision making.
@unbekant585
@unbekant585 Ай бұрын
@@idiotidiot5821 username checks out
@whannabi
@whannabi Ай бұрын
​@@idiotidiot5821Idk man, giving life sentences to guys running markets on the darknet seems pretty tough to me
@manikbgg
@manikbgg Ай бұрын
This situation is probably going to be the origin story of lots of people getting into the cybersecurity space. Here's to hoping the goblin lord and the goblins are ready for that influx in the discord
@R0ndras
@R0ndras Ай бұрын
Its not.
@ViciOuSKiddo
@ViciOuSKiddo Ай бұрын
Getting hacked in starcraft 1 back in 1999 got me into the security field. Totally possible!
@blehbleh9283
@blehbleh9283 Ай бұрын
My cyber security professor got into the field because of Counter Strike hacking. It's totally possible.
@eduardojimenez114
@eduardojimenez114 Ай бұрын
It's already an oversaturated field so good luck to the people trying to get into it.
@NightFyreTV
@NightFyreTV Ай бұрын
or, the people tired of getting hacked on will learn to do it themselves. It really can go both ways. I got tired of PC aimbot users in Warzone back in 2021. Built a pc and started my own "GameShark" business where i now make a living by creating cheats and mods for single player games. Online multiplayer is dead and your a fool if you think otherwise. Kernel space anticheats do nothing when the game is also on linux LOL
@TylerF14
@TylerF14 Ай бұрын
despite not really being that into either Apex or developing, the entire notion of learning to understand the process to reduce the chances of me going off on some poor sod just based on my own emotions is pretty invaluable. Thanks dude.
@TriCobaltGmg
@TriCobaltGmg Ай бұрын
One of my favorite types of content is people working in their own element and showing just how good they are at it
@nolly_nd
@nolly_nd Ай бұрын
Props to the hypedivers on the background prepping the stage for the talk.
@Resonantfate
@Resonantfate 2 күн бұрын
Bruh, I was laughing at that. These dudes were emoting hard for 20 minutes straight. One dude nodding for a long time, which means he had to be whipping his mouse up and down. Might have been actual work to keep that up so long. I see you, goblins.
@Dobonhonkero42
@Dobonhonkero42 Ай бұрын
Thanks for being willing to cover this and help those involved Thor. It's been extremley informative and helpful in containing some of the panic.
@DignityForAllyt
@DignityForAllyt 18 күн бұрын
The only way I could be sure is
@mfsandwichtime6100
@mfsandwichtime6100 Ай бұрын
I sympathize with developers , I work in a pharmacy and for several years now I've just told people I get yelled at for a living. People can be cruel when something they love is in danger. Apex has a community that is not far off from family.
@cybernoid001
@cybernoid001 Ай бұрын
reminds me of one time I was checking on some servers late at night for a client, and found an active connection from an intruder attempting to implement ransomware. it was clear they purchased the ransomware package on the darkweb and had no idea what they were doing. But as a precaution, we still had to wipe the environment and reload from backup.
@seanrendall5495
@seanrendall5495 Ай бұрын
This helped me in a very specific way; I've been taking a Cyber Security degree, and I've been feeling really discouraged like I'm not actually learning anything useful, but the fact that I was able to follow this conversation with ease was so encouraging. I know: a cyber security degree probably isn't going to land me a job in the end. But I'm committed now, and it's been difficult to find motivation.
@kouki3409
@kouki3409 Ай бұрын
Nah dude you’re working for something, don’t say that about yourself. You’ll get that job and you’ll look back at this moment and laugh and wonder why you were so stressed. Don’t look too far into the future and focus on what’s in front of you and you’ll be in a job wondering how you got there
@jacobgentile3351
@jacobgentile3351 Ай бұрын
Hey brother, a degree alone shows you're willing to buckle down and follow through. A good portion of the time that's enough to open many doors
@941zeke
@941zeke Ай бұрын
It will land you one. Cyber security is always in demand
@DarukaEon
@DarukaEon Ай бұрын
Cybersecurity is always in demand. You got this, my dude!
@DignityForAllyt
@DignityForAllyt 18 күн бұрын
The
@LancasterAJ
@LancasterAJ Ай бұрын
I’m not saying Thor is L from death note, but I’ve never seen them in the same room at the same time.
@ToTheGrave20
@ToTheGrave20 Ай бұрын
Probably because L is dead
@Chicken_Dippers
@Chicken_Dippers Ай бұрын
@@ToTheGrave20 🤣
@Ehh.....
@Ehh..... Ай бұрын
@@ToTheGrave20 "Or Is He?" *VSAUCE INTRO PLAYS*
@MidnightCoffee__
@MidnightCoffee__ Ай бұрын
I had this EXACT thought
@DignityForAllyt
@DignityForAllyt 18 күн бұрын
The only way
@wolfbark95rules35
@wolfbark95rules35 Ай бұрын
Never got interested in hacking, security, dev things.... but this guy is the goat. I can listen to him talking things i dont even understand for hours. Much love and respect for what u do.
@RoccaFelipe
@RoccaFelipe Ай бұрын
I LOVE HOW THOR MAKES SO FUN THE FACT I'M LEARNING A LOT OF THIS WORLD.
@SexyFace
@SexyFace Ай бұрын
speak english freak
@damil5721
@damil5721 Ай бұрын
"Has anyone really been far even as decided to use even go want to do look more like?"
@dannyhBMC
@dannyhBMC Ай бұрын
beep bop beep boop bop
@DignityForAllyt
@DignityForAllyt 18 күн бұрын
I’m just going
@SolnerV2
@SolnerV2 Ай бұрын
This is the stuff I love. While my job field is different, the troubleshooting and process to figure out issues is very much the same. Very fun listening and watching your process for this. The puzzle, and figuring them out, is such a gratifying thing
@nanopi
@nanopi Ай бұрын
18:00 when you've spent enough time moving your mouse and seeing how it changes your look direction, you then expect moving the mouse a certain amount will change your look direction by this much and if the crosshair didn't go all the way to where you think you moved it, it's a little bit off, it's being pulled a tiny amount in directions you didn't expect, you'd notice.
@DontBother_YT
@DontBother_YT Ай бұрын
Deja Vu, but something is very off in a bad way. Happens to speedrunners and literally anyone who has a significant amount of time deep-diving into a particular skill. I may not be an Apex player, but I know exactly what Hal was talking about.
@Misutoslope
@Misutoslope Ай бұрын
Love the cycber security conversations/content. By far my favorite
@marcosmendez8805
@marcosmendez8805 Ай бұрын
Thanks to him tsm Hal got his account back
@kreiel876
@kreiel876 Ай бұрын
I love how whether or not he is , there are times where it looks like he is reading code, mans got so much skill that he just has a mixed reality headset on and can see shit that nobody else ever could.
@Rubafix989
@Rubafix989 Ай бұрын
I don't know if you looked at it but Titan Fall 1 and 2, previous Apex developers Respawn's games suffered from a cyber attacker for years. It got to the point where the game got literally unplayable, and the community went to the extent of creating a community run server infrastructure called Northstar. From what I read online some people from that community used the same exploit the initial attackers used to kill Titan Fall multiplayer on Apex legends somewhere last year to force them to fix the servers. Upper Echelon over on KZfaq covered the story very well.
@all4jet
@all4jet Ай бұрын
I gotta say, as someone who works in security and is also and avid apex player, this has been one hell of a ride so far. Thanks for informing a community and getting some of the unwarranted hate towards hideouts and his team quelled. You're a legend.
@TheHare
@TheHare Ай бұрын
You have no idea how excited I am that this video dropped! Almost 3 hours?! Traveling for work tomorrow, and can’t wait to listen to what you and John cover.
@marcosmendez8805
@marcosmendez8805 Ай бұрын
Love his voice tbh! Imagine if he did asmr
@b7shoota
@b7shoota Ай бұрын
love watching your breakdowns of this whole situation. you have helped so many people in the community understand more on this topic.
@yasha1928
@yasha1928 Ай бұрын
I have no connection to cybersecurity but man, this is one hell of a discussion! I'm barely 18 minutes in and there's so much going on. Love what you do Thor & ImperialHal!
@DeusBlackheart
@DeusBlackheart Ай бұрын
Watching you work is amazing. I think we can all tell that you're enjoying yourself when you're breaking this down. I love puzzles too, I just wish I already had your technical knowledge. Thank you for uploading this.
@MalicousCat
@MalicousCat Ай бұрын
Network admin here thats always been interested in the security realm (specifically SOC work). Ive got a couple entry level security certs but i cant lie ive been pretty comfortable sticking with what im doing. Listening to these kind of discussions, especially when they tie into one of my favorite hobbies is great! Youve been a big help to motivate me again! Hopefully you can give some more content to help someone who wants to get into the security realm!
@ellythedreamerHQ
@ellythedreamerHQ Ай бұрын
Thank you for this conversation, it's awesome! Learning so much! Much love! ❤
@hyprjay
@hyprjay Ай бұрын
i got to watch this live and it was awesome. chat was lit the whole time for both streams lol
@iTzZigma
@iTzZigma Ай бұрын
Found you off of a clip, I’m now a subscriber 🙏🤝 amazing knowledge Also Apex Legends needs this guy on the case ASAP ASAP
@JaesWasTaken
@JaesWasTaken Ай бұрын
Yesssss, thanks for this. Was having a rough day and was sad it was Thorsday.
@Nati_By_Nature_Gaming
@Nati_By_Nature_Gaming Ай бұрын
This Video has come out at a Great time, terrible that it happened but this has been helping me understand a lil more of what im currently learning in my CSA journey. I wish they had examples like this to refer to. The way you explain it and the discussion of it makes it so easy to sit here and watch it more than once.
@ssjcarp1558
@ssjcarp1558 8 күн бұрын
I found this dude a day or so ago on shorts and I could literally listen to this dude talk about this stuff 24/7, none of this stuff makes sense to me whatsoever but learning the little stuff that makes sense to me I just love it.
@therealzeltz
@therealzeltz Ай бұрын
I dont know if this is something thor would do but personally you helping teach cyber security could be really entertaining. Love it when my content creators come to together
@ToTheGrave20
@ToTheGrave20 Ай бұрын
David Bombal and John Hammond already do an amazing job
@camjo13
@camjo13 Ай бұрын
This whole RCE scare on the internet brought me to your content and your breakdown and investigation of it got you a sub from me. Great content man! I have been doing identity/access management and cybersecurity inside the DoD for 6 years now, so I dont have nearly the breadth of experience that you do, but I thouroughly enjoyed listening to your thought process in breaking this stuff down. Some of this would be great material for a video on root cause analysisis and troubleshooting when it comes to threats and vulnerabilities.
@TasuHasArrived
@TasuHasArrived Ай бұрын
These videos are really good for giving outside look into the workflow of these issues. Very informative and a good video to watch for certain ways to solve vulnerabilities, as well as investigate how the attack happened.
@Unlucky_RifleMan331
@Unlucky_RifleMan331 Ай бұрын
Taking a shot every time Thor says "if that makes sense" this vid. See you all in the afterlife! I didn't know this happened but very interesting. I appreciate his layman's explanations for everything
@xymaryai8283
@xymaryai8283 Ай бұрын
the strange distortion feeling effect is how it feels when aimbot locks on, its like the chicken head thing, it feels unsettling because its so perfect
@savathunsgoblin
@savathunsgoblin Ай бұрын
The chicken head thing? Whats that?
@savathunsgoblin
@savathunsgoblin Ай бұрын
The chicken head thing? What's that?
@xymaryai8283
@xymaryai8283 Ай бұрын
@@savathunsgoblin chickens can sort of lock their heads in 3D space, even when you move their body around, their head can eerily stay exactly where it started, even with quite significant acceleration, its definitely something you should look up on KZfaq
@fawnn1644
@fawnn1644 Ай бұрын
@@savathunsgoblin How a chicken's head stays almost perfectly still while its body moves. I'll try to share a link in a separate comment but youtube likes to delete comments with links in them. Just look up "smarter every day chicken head" for a short demonstration of it if you dont see my other comment
@fawnn1644
@fawnn1644 Ай бұрын
@@savathunsgoblin kzfaq.info/get/bejne/lcqAn853tdXbc5c.html
@MakerBees333
@MakerBees333 Ай бұрын
@5:01 “The unban able super User” literally the South Park Blizzard episode come to life 😂😂😂
@kimmatzen6504
@kimmatzen6504 Ай бұрын
OMG. You're saying that it's Thors dad doing this! /I hope it's clear this is meant as a joke.
@BearIX
@BearIX Ай бұрын
It's been interesting following along with these videos since it happened. On the note of the server id, the server id was visible on both of those player's stream during the game. I have no level of experience in hacking, but this has been so interesting to me. Keep up the videos dude!
@KaiPerspective
@KaiPerspective Ай бұрын
Thank you for releasing this as a video, I normally don't have time to watch the streams but I'm using it as a kind of podcast to listen to while I work and itst super interesting
@darkindy
@darkindy Ай бұрын
I love that this feels like a DefCon Q&A session.
@ianwagstaff2371
@ianwagstaff2371 Ай бұрын
This sort of problem solving and discovery is so deliciously satisfying. So much good info in it too! It’s impressive watching you work!
@sciencesold_
@sciencesold_ Ай бұрын
I just gotta say, between this and the previous video, I'm a huge fan. I haven't really watched your content before, but you have a fantastic speaking voice on top of being so incredibly well versed in all this. Amazing watch for a new viewer.
@shanemarchwick7532
@shanemarchwick7532 Ай бұрын
Go you for interviewing the actual dude. Love you dude. Keep killing it.
@FanaldoGaming
@FanaldoGaming 13 күн бұрын
Dude I am so happy i found your channel and this video. I wish i could see more of you doing this. Hella Interesting.
@maddinbridgeman579
@maddinbridgeman579 Ай бұрын
One of the best Videos I have seen in a long time. Discovered you over shorts. Keep up the good work!
@FalkorPrime
@FalkorPrime Ай бұрын
I love that the pirate and apex communities are coming together ♥️
@Efilnikufesin76
@Efilnikufesin76 Ай бұрын
Love to see this level headed smart and intuitive content in this day and age of so much drab clickbait content. This guy is great!
@aciddotexe
@aciddotexe Ай бұрын
This was super cool to listen to, thanks for being so open with your knowledge, Thor. ❤
@deliriumzer0
@deliriumzer0 Ай бұрын
I feel like when I was in high school & early college (between about 1999 and 2006) I was pretty well versed in networking to this level but I definitely lost it over the years, so this video has really helped re-engage that part of my brain. Weirdly, this video woke up my inner child. Thanks man!
@akuma2124
@akuma2124 Ай бұрын
Great video with great points. EA definitely needs to give you something for being their damage control/PR, because its clearly made a great impact. Next Apex Legend added is Thor. Additionally, to Thor's point, we can only consider what Destroyer said in the article, but cant just take his word on it (until he releases how he did it). That said, I'd still consider compromised machines. Something I thought when it was mentioned that GenBurten re-installed windows before the tournament was, "did he do a full format?". If he's got multiple hard drives or partitions, and only formatted his C drive, it doesnt mean his other drives dont have infected files on it. Additional (possibly less likely) what other peripherals are plugged into this machine? you've got things like your mouse and USB DACs that can be flashed with settings, so if you change a machine or format, your settings are on the actual device for easy plug and play. Could these devices be compromised with custom code? Lastly, what Prime(?) said about the game previously having bots in game as an event a while back, reminded me of when i put apex on my Switch, and created a new account to use on there, I kept it in switch only mode (not cross platform) and the game literally added bots to fill a lobby (this was about 6 months ago). A friend told me this was feature for new accounts before getting into a normal live pvp. Im not sure if they've now disabled feature or maybe my account is outside of the beginner grace period, because i queued for an hour while watching this and got no match (i dont actually play apex, but was going to play casually on switch). Point is, that it just makes me wonder if that the point of entry for adding bots, along side what Prime already said, and what Mande said (on the previous vid) how Destroyer could be on PC but appear as a console player.
@ScumlordStudio
@ScumlordStudio Ай бұрын
Goblin elites rise up
@Aigis31
@Aigis31 Ай бұрын
Really love these VOD uploads about discussing this attack. I've stopped playing all EAC games to be safe, but because it hasn't been proven to be an EAC vulnerability yet, I've kept them installed on my consoles. Thank you for doing what you do! It's great to hear insights from an expert in the field about what this could be. You're great Thor, keep it up!
@derjlp2519
@derjlp2519 Ай бұрын
Hey there @Pirate Software ! I'm new into the Cyber Security Field and currently busy in Information Security. These VODs are suuuper helpful and I am learning a lot. Thank you for being factual about this and explain stuff without making it a big drama.
@MagicManICT
@MagicManICT Ай бұрын
@PirateSoftware Thanks for posting this. I missed half the discussion, and didn't want to scrub through the VOD to find what I missed.
@Hackcam
@Hackcam Ай бұрын
As someone going into cybersecurity I have learned more from this video than some actual certifications I have done
@riggs7167
@riggs7167 Ай бұрын
Same lol, studying for the Sec+ and have somehow learned more useful information from this than from studying for that
@AtrociousNightmare
@AtrociousNightmare Ай бұрын
Thank you for doing this. It was fun and educational. Loved it!
@JacobSReeds
@JacobSReeds Ай бұрын
Thank you for getting such a great advocate for this industry! Thank you for being a voice of reason during this tricky time!
@chiseledmedal2634
@chiseledmedal2634 Ай бұрын
56:52 man was like “hey- hey gurn come out of the dungeon I got a puzzle” (idk how to spell their name)
@America_Yea
@America_Yea Ай бұрын
This was fascinating. Thanks for doing this and making it watchable on youtube for us.
@frankzappados2179
@frankzappados2179 Ай бұрын
Super cool to see someone doing something to help and genuinely seems happy doing it. You’re a cool dude, mister
@SkellyBobRoss
@SkellyBobRoss Ай бұрын
having people say you shouldn't have a job while your job is on fire. Yeah I work Geek Squad so I feel that so hard.
@Glaedr11
@Glaedr11 Ай бұрын
Yeah I work residential HVAC and even just one person berating me, questioning my integrity, questioning my skillset, etc while I'm literally in the middle of trying to solve the problem that they asked for help with really gets to me, I cant imagine looking on the internet and having 1000s of people doing that
@SkellyBobRoss
@SkellyBobRoss Ай бұрын
@@Glaedr11 it doesn't help that I'm not a fast response type of person. All of my words and responses are measured and contemplated. I find myself having to reassure people being telling them, Yeah I'm thinking over all the possibilities in my head so please give me a second.
@BIGFESH
@BIGFESH Ай бұрын
I don't understand half of this talk but God damn it is soo interesting thank you
@jasonjavelin
@jasonjavelin Ай бұрын
Okie of the coolest streams I’ve seen. I like that you shed light on to a scene that for the average audience is very much underground
@DarRaptor
@DarRaptor Ай бұрын
Thank you for chipping in! I hope this change game AND community for better
@RevenantMain1
@RevenantMain1 Ай бұрын
I am the apex member that thrives off this content
@nuts_fattening
@nuts_fattening Ай бұрын
Apex 🤮
@eagonwild
@eagonwild Ай бұрын
​@@nuts_fatteningglad to not care that you dislike a video game
@drycoolguy_
@drycoolguy_ Ай бұрын
@@nuts_fattening wild
@doughboyexotics305
@doughboyexotics305 Ай бұрын
He right tho apex is dog water​@@eagonwild
@brandondean5680
@brandondean5680 Ай бұрын
​@@doughboyexotics305 apex isn't new player friendly so it makes sense why he hates it 😂 must be to hard
@TheManbeastmike
@TheManbeastmike Ай бұрын
Apex and this dude is the cross over i wasnt expecting in 2024 butt im here for all of it!
@spagzs
@spagzs Ай бұрын
This channel is awesome. Learn new things every time I watch and no stupid drama
@Exokaubed
@Exokaubed Ай бұрын
I doubt this will be seen but I just want to say that I used what was written on your make games website as a key reference for my school presentation which I decided to make be about "What do you need to be a game dev?" and I think the presentation came out alright. The main challenge was trying to translate it to Japanese before the deadline and so the presentation wasn't as well translated nor long as I'd like but your website was an amazing help and if it weren't for you, it wouldn't have happened.
@walker3551
@walker3551 Ай бұрын
One of the most impressive things from watching this was how good he is at writing on his screen, better than my handwriting 😂
@Meta_data
@Meta_data Ай бұрын
I am pretty sure they found a vulnerability to run commands on the game server (probably some packet), which can then (maybe) be used to run Squirrel on someone's client. That might explain how they spawned the bots, spammed the chat, and used in-game UI for the cheat hook. I don't think they have the ability to run shell code other than the attacker describing it as RCE. Him generating 4,000 packs would also correlate with how he might have the ability to run server commands. Highly doubt this whole fiasco has anything to do with the anti-cheat. EDIT: watching more into the video (not finished) The jump box claim is kind of jumping the gun I think. I looked up that IP on abuseipdb and most of the reports just say it's a port scanner. Seems unrelated to the hack at hand. The connection type being inbound also makes sense for a port scanner.
@rekt_n_line
@rekt_n_line Ай бұрын
Yeah I think it leans more toward them running scripts through the server. That's been around since the dawn of Apex and TF2, methods and examples are well documented. It's patched here and there but never really been fixed, as we still see it happening. The only thing that I'm curious about and that I haven't seen done before is enabling cheats through the server. It makes sense in a way, but it perplexes me as to how it was achieved. I'm keeping an eye on forums to see when someone figures it out. We'll see if Respawn finds a way to clean this up. They've tried but people keep finding away around it. I've seen varying opinions saying that it's an easy patch, all the way to a complete rewrite of server code. Not my area of expertise to say what's true or not though. I've read into a lot of it though and it's pretty insane what people have been able to do on the servers over Apex's lifetime.
@LampshadeLadEddie
@LampshadeLadEddie Ай бұрын
Total idiot here: what's Squirrel?
@fivetriplezero8985
@fivetriplezero8985 Ай бұрын
Do you think it is possible that this would require the client PCs to have the cheats already downloaded?@@rekt_n_line
@erra7552
@erra7552 Ай бұрын
This is fascinating to watch. Capturing the jump box, and the method through the server ID. But it's also terrifying.
@wurstfightele
@wurstfightele Ай бұрын
Thank you for providing interesting and intriguing insights - opened my eyes to a lot of factors I didn't consider prior
@kelanriley8560
@kelanriley8560 Ай бұрын
I think some of the confusion from the community stems from the fact that they don't know IP addresses are SUPPOSED to be public. Imagine the mail-man had to deliver to your house but your address wasn't known by anyone but you. Well no mail for you! Imagine that a game client had to connect to a server but didn't know where it was. No game for you!
@gdgd5194
@gdgd5194 Ай бұрын
I think the confusion derives from the majority of the community being dumb gamer kids.
@TheJazzyOtaku
@TheJazzyOtaku Ай бұрын
I didnt even click for the discussion i clicked because of that epic thumbnail.
@_Gloomii
@_Gloomii Ай бұрын
I feel educated after each video even the shorts. This has been entertaining to see this situation picked apart
@mike86pa
@mike86pa Ай бұрын
Amazing match up so cool to see John on the stream
@Samael1113
@Samael1113 Ай бұрын
1:18:00 The dummy accounts running a simple bot script was one of my first thoughts back when you with the Mande interview stream. But the way they were spawning rather than dropping had me second guessing that - thought a like training bot was more likely, if Apex had a training or tutorial mode with a very simple bot.
@PhantasmXYZ
@PhantasmXYZ Ай бұрын
Apex does have a firing range for practice with configurable target dummies. They also have code that makes them spawn close to the player. While there are still some discrepancies between what the hacker displayed (spawning playable character roster models, very rapidly) and what's in the practice mode, I can see potential for the game having an existing NPC code framework to hook into/build off of for this hack, rather than having to fully make and run multiple account bots from the client side.
@ahvin4764
@ahvin4764 Ай бұрын
@@PhantasmXYZ from what some other comments mentioned in the previous video, there was an event that allowed you to spawn in bots with very simple proximity based scripts. It's most likely just a reuse of existing bot behaviour. Running multiple bot accounts like that would be significantly more complex
@PhantasmXYZ
@PhantasmXYZ Ай бұрын
@@ahvin4764 I was hesitant to comment on that initially as I missed four seasons. BUT, I have played most of every other season since launch. And looking at online summaries, chronicling the entire history of events and limited time modes... there haven't been any that fit the exact bot spawning behavior the hacker showed either. I think that other commenters are parroting others or just saying whatever sounds plausible rather than see what actual evidence shows, just like Thor criticizing people stating "RCE" without concrete proof. That said, Respawn is reported to have included bots in orientation matches for brand new players starting on or around Season 16. THAT is likely the code sourced for the hack, as it fits all the characteristics (characters from the playable roster, spawned near the player, with attack logic.) Wouldn't have to worry about it being removed between updates like LTM or event coding, either.
@CarlosXPhone
@CarlosXPhone Ай бұрын
17:50 I know EXACTLY what he's talking about. There was a time, where I was able to see someone else's screen. This is an advanced version of what I experienced.
@Lugoil
@Lugoil Ай бұрын
I only watch you on youtube but more of this please - i dont even play Apex but these videos were brilliant conversations
@babaecalus
@babaecalus Ай бұрын
Once again, thanks for a great, insightful talk goblinlord, and everyone else involved!
@raymondandsweetheart7150
@raymondandsweetheart7150 Ай бұрын
As some one who botted wow for many years and was never caught. Im here to say where there a will theres a way. i would have wow notifications on super loud and would respond if some one would whisper me.
@NeedsMoDakka
@NeedsMoDakka Ай бұрын
oh the other video: TheTruth-xp2of posted: 3 days ago About the serverside exploitation section: The code for the things happening in this clip, exist within the game files. 1) Spawning bots. There was a limited time mode for Halloween where you could get two AI companions (Prowlers) which acted autonomously with a simple AI to chase and melee enemies within a certain range of you. 2) Increased squad size. There was a limited time mode, in which SURVIVORS killed by HUNTERS switched sides to HUNTERS, enabling teams of dozens on the HUNTER side. The Hackers just need a way to activate combinations of existing legacy functions in the game.
@Slugbunny
@Slugbunny Ай бұрын
Glad to see this discussed by experts with more data and insight! 👏🏻 👏🏻
@NK-fh3st
@NK-fh3st Ай бұрын
Ayo, Obsidian shoutout is the cherry on the cake of a great stream. Great as always
@valen5188
@valen5188 Ай бұрын
im gonna major in cyber security when I start college in fall, this is super interesting
@valen5188
@valen5188 Ай бұрын
YOOO i just looked at my course requirements with a CS degree compared to CYB, I dont need any math. lets goooo
@filip0x0a98
@filip0x0a98 Ай бұрын
​@@valen5188 Hi, I am doing cybersec too, good luck there! By the way, do not know about your program, but ours too has less math formally, like in the requirements then other CS ones, however in other subjects/courses there is math too - and there its just sort of taken for granted that you know it so you'll have to learn some anyway. Just wanted to let you know. PS: Even the "harder" math we had is not that bad, you just have to spend a little more time with it until it "clicks".
@valen5188
@valen5188 Ай бұрын
@@filip0x0a98 thanks for the heads up! guess I'll keep going through khan academy to stay ready lol. Good luck with your classes as well :)
@filip0x0a98
@filip0x0a98 Ай бұрын
@@valen5188 You are welcome and thanks too :)
@djixi98
@djixi98 Ай бұрын
It's 3am and i am just like Thor, i like solving puzzles lol
@M0HAK0
@M0HAK0 Ай бұрын
Thank you for taking the time to tackle this issue.
@thedude7319
@thedude7319 Ай бұрын
Thanks Thor for the insight aswell as the movie recommedation. I have taken your mindset more in my managment style
@legueu
@legueu Ай бұрын
2:22:46 "You're a wizard Destroyer2009" Said John Hammond disguised has Hagrid.
@Koroistro
@Koroistro Ай бұрын
Damn this Greyhack update is so realistic.
@ace1122tw
@ace1122tw Ай бұрын
If you ever need an idea for a series or a stream. You can go over some history of hacks or defcon history. I love this stuff and you explain it so well. That stuxnet joke made at 1:04:00 made me realize how much i need that. Whoever made that joke is funny.
Apex Legends Vulnerabilities - Breakdown and Interview
1:36:12
Pirate Software
Рет қаралды 1 МЛН
Make Video Games
44:12
Pirate Software
Рет қаралды 898 М.
😱СНЯЛ СУПЕР КОТА НА КАМЕРУ⁉
00:37
OMG DEN
Рет қаралды 1,8 МЛН
How did CatNap end up in Luca cartoon?🙀
00:16
LOL
Рет қаралды 6 МЛН
Kitten has a slime in her diaper?! 🙀 #cat #kitten #cute
00:28
Did you find it?! 🤔✨✍️ #funnyart
00:11
Artistomg
Рет қаралды 20 МЛН
Potion Craft - 2 Hour Playthrough
2:02:47
Pirate Software
Рет қаралды 191 М.
GreyHack 0.8 - The Basics (System Hardening - VIPER)
7:56
ThugSpeedman
Рет қаралды 1,9 М.
How Japanese Masters Turn Sand Into Swords
25:27
Veritasium
Рет қаралды 8 МЛН
Something Strange Happens When You Follow Einstein's Math
37:03
Veritasium
Рет қаралды 8 МЛН
Why Is Starship Troopers SO AWESOME?!
21:13
The Act Man
Рет қаралды 224 М.
How Penguinz0 Destroyed YouTube's Worst Content Thief
29:54
Internet Anarchist
Рет қаралды 3,8 МЛН
I Tested NASA's New Spacesuit (feat. Axiom Space)
26:15
Cleo Abram
Рет қаралды 264 М.
Genius Way to Trick an Officer
3:07
Daily Dose Of Internet
Рет қаралды 1,6 МЛН
Twelve Minutes - Full Playthrough
3:28:32
Pirate Software
Рет қаралды 246 М.
МҮГЕДЕК МАХАББАТ/ KOREMIZ
46:56
Көреміз / «KÖREMIZ»
Рет қаралды 129 М.
How? 😱   @fash
0:12
Tie
Рет қаралды 23 МЛН
高校で1番流行ってるダンス
0:16
Gintube
Рет қаралды 24 МЛН
СЛУЧАЙНО перепутал ТАТУИРОВКИ
0:17
Виктор Лодин
Рет қаралды 1,6 МЛН
Не пей газировку у мамы в машине
0:28
Даша Боровик
Рет қаралды 4,4 МЛН
SLAP BRACELET SECRET 😱🔪🤯#shorts #viral #gukafamilyshow
0:31
Guka Family Show
Рет қаралды 7 МЛН