No video

Sued For "Hacking" With HTML

  Рет қаралды 230,603

Seytonic

Seytonic

Күн бұрын

👉 Free $100 Cloud Computing Credit seytonic.cc/li...
0:00 Almost Sued Over F12
0:19 Pressing F12...
1:29 The Journalist Did Nothing Wrong!
1:54 The Government's Insane Response
2:33 The Ridiculous Press Conference...
4:23 Taking Insanity To A New Level
6:16 Victory!
7:24 Linode
7:59 Outro
Sources:
arstechnica.co...
www.theregiste...
www.zdnet.com/...
arstechnica.co...
bloximages.new...
www.stltoday.c...
joshrenaud.com...
• Gov. Parson holds fake...
===============================================
My Website: www.seytonic.com/
Follow me on TWTR: / seytonic
Follow me on INSTA: / jhonti
===============================================

Пікірлер: 1 900
@annawhite652
@annawhite652 2 жыл бұрын
I hope the Governor gets sued because that’s just messed up that someone in good faith reports a bug and then gets threatened and slandered, also if there was a violation of law as the prosecutor said, I’d think it would be by the Missouri government for failing to secure sensitive data appropriately
@BellCube
@BellCube 2 жыл бұрын
(I'm not a lawyer, this is not legal advice, all that) Well... no matter how insecure, if the data is not publicly available, accessing it is considered unauthorized computer access, a crime in the US. Either way though, website HTML is-and always will be-open source (assuming no fancy obfuscation from the backend). Browsers allow you to view the HTML they're rendering for many reasons, chief among them are web development and debugging. However, it is not "unauthorized." If you send the data, there is no guarantee of how it will be parsed. Therefore, any competent lawyer can easily convince a competent judge that the data was publicly available. Decoding the Base64 (a medium of transfer) does not make it any less "publicly available." After all, if that were the case, you could make the same argument for literally anything on the internet because of binary. Unfortunately, poor security is not (yet) a crime in the US. I do hope that changes though.
@stumpywumpy2909
@stumpywumpy2909 2 жыл бұрын
@BellCube If you are holding classified information, hand it to a stranger, then they tell the government you did so: then you have the right to sue the person who gave it to you if you had to fight legal proceedings. That's literally what's going on here. There's nothing illegal about hitting f12, it's actually not accessing anything not already on the page. A brief example: if a page is the color magenta, then hitting f12 would just show you the hex# for magenta. Just saying he actually has a case to sue :)
@TheOzumat
@TheOzumat 2 жыл бұрын
End gerontocracy!
@BellCube
@BellCube 2 жыл бұрын
You're right, I missed that angle (hence the disclaimer). The information is itself classified. (The disclaimer from above still applies) Note that the plaintiffs would have to be the teachers in this case. That is, every teacher in Missouri could, at least in theory, sue. I see a Class-Action! As a side-note: LOVE that example!
@mycelia_ow
@mycelia_ow 2 жыл бұрын
@@BellCube you clearly didn't watch the video, or even 1/4th of it when you commented. He didn't "access private data" he viewed the sourced code which you can do right clicking a page, and reporting what he read. There was no crime, hacking, or anything negative happening here. End of story, no need to say anything more.
@pelic9608
@pelic9608 2 жыл бұрын
$50 million to fix this?! 🤯 That's it. I'm moving to Missouri! They obviously pay their programmers gooood. 😄
@St0RM33
@St0RM33 2 жыл бұрын
he meant damages..even when the issue was disclosed and fixed before the announcement.. seytonic didn't listen well but still what a CLOWN
@pelic9608
@pelic9608 2 жыл бұрын
@@St0RM33 The whole thing is a joke, my comment is a joke... You coming in here now being all serious looks less smart than you probably thought it would. 🙄
@coctailrob
@coctailrob 2 жыл бұрын
Plus the benefit of if you make an error someone else gets to be the scapegoat!
@NIGHTMARE-zy7tq
@NIGHTMARE-zy7tq 2 жыл бұрын
@Xi Jinping Sorry I wish that was true. My info was leaked by the VA, when an Admin left her computer in her car that was stolen. About 200,000 veteran's S.S where leaked.
@MarcCools1964
@MarcCools1964 2 жыл бұрын
I fix that for 49 million ... and I ain't even a programmer.
@wojtekpolska1013
@wojtekpolska1013 2 жыл бұрын
"Decoded HTML source code" "Multi-step process" Im honestly surprised they didnt even consider getting an opinion from any cybersecurity expert before releasing that speech. they would've clarified everything in a few words. Due to a misconfigured server, it was telling everyone who wanted the Social Security number of any teacher.
@essem4979
@essem4979 Жыл бұрын
Lol literally EVERYONE who visited the website had those numbers, they simply didn't notice it
@user-6b7973
@user-6b7973 Жыл бұрын
the fact they could've just blacklisted those values instead of storing them in html just doesnt make sense. ntm base64 as "encryption"
@cdorman11
@cdorman11 Күн бұрын
​@@user-6b7973 They could have run the SS#s through a hash tag and stored them on a sequel server using a Tolkien ring.
@3G2J
@3G2J 2 жыл бұрын
Journalist: **Presses F12** Governor: *What they did is beyond unethical.*
@HauntGD
@HauntGD Жыл бұрын
55 likes and no comments, let me fix that.
@blackneos940
@blackneos940 11 ай бұрын
I'll help. :) There.
@billyboy8866
@billyboy8866 7 ай бұрын
I wonder what they would say if they really stole their data and sold it
@v0rap
@v0rap 2 жыл бұрын
This whole situation pissed me off so much when it was unfolding... This is the exact opposite of what you want to do against people who are responsibly disclosing security vulnerabilities. All this does is send the wrong signals and makes them look like idiots.
@OfficialPooYT
@OfficialPooYT 2 жыл бұрын
Helping is a crime now.. lol
@BjornGrylls
@BjornGrylls 2 жыл бұрын
Next time the journalist ain't gonna bother telling the gov. He'll be selling the SSNs, then creating a guide on wikiHow.
@v0rap
@v0rap 2 жыл бұрын
@@BjornGrylls Exactly... Responsible disclosure is something you should really encourage! Who'd want to do that if you run the risk of being sued?!
@friedrichdergroe9664
@friedrichdergroe9664 2 жыл бұрын
Those who designed the website are the ones who should be excoriated. There is no excuse for this. What moron would pump sensitive informaiton like social security numbers out like that? So sick of this itenerant nonsense. Next time they should try hiring someone other than a high school junior to do their site!!!!
@raginranga3494
@raginranga3494 2 жыл бұрын
@@friedrichdergroe9664 Probably a future dev idea that went into Production
@x0kosmus0x
@x0kosmus0x 2 жыл бұрын
I think this was a malicious attempt to shift the focus on the journalist and distract from the fact, that such a vulnerability should have never made it to production. Also the state should provide the teachers with some sort of security monitoring for the next years, because it's impossible to know how many social security numbers where stolen.
@Bvic3
@Bvic3 2 жыл бұрын
Never attribute to malice what can be explained by incompetence. It's a clear case of an incapable state administration that relies so much on overpriced contractors that they have nobody in house who understood what the problem was. And once the administrative started attacking, there was no way to back down without being even more ridiculous.
@spaghettiking653
@spaghettiking653 2 жыл бұрын
@@Bvic3 If an administration is incompetent, then it behooves everyone in the organization to take responsibility and frankly, oust any incompetent buffoons who put on a farce like this. Carrying out a government duty this negligently ought to be a crime.
@Bvic3
@Bvic3 2 жыл бұрын
@@spaghettiking653 It's a vicious cycle. The US culture of small government prevents the state to compete for useful services and forces the use of contractors. As a result, there is no prestige for working in state engineering. But still lots of money to distribute to contractors. As a result, capable and virtuous people avoid working for the state and you only get the power hungry morally bankrupt ones joining. And they partner with equally corrupt contractors. Meanwhile, in countries with a history of powerful states, it is prestigious to work for state enterprises and the most brilliant graduates each generate join the state. Given how the US is collapsing with its race warfare and overall rent seeking behaviours, the state isn't going to improve anytime soon.
@spaghettiking653
@spaghettiking653 2 жыл бұрын
@@Bvic3 I see. Thanks for the insight
@monsterhunter445
@monsterhunter445 2 жыл бұрын
Has the site been patched?
@ruhto828
@ruhto828 2 жыл бұрын
Once in IT class I used F12 to troll my friends. Then the teacher thought I was hacking the website and my parents needed to get to the school. How tf was that teacher teaching IT
@fss1704
@fss1704 Жыл бұрын
To be honest, you can do some crazy shit using f12 if you know how
@giviko1709
@giviko1709 Жыл бұрын
​@@fss1704 you could if the website is THAT badly written. almost no modern website is THAT bad, basic security practices are used by almost every skilled dev
@fss1704
@fss1704 Жыл бұрын
@@giviko1709 You'd be really surprized at what you can do with some creativity
@ro0b0
@ro0b0 2 ай бұрын
​@@fss1704I really wouldn't
@nextlifeonearth
@nextlifeonearth 2 жыл бұрын
Those teachers should sue the government for literally sharing their social security number to anyone who asks, they just need to decode it.
@fss1704
@fss1704 Жыл бұрын
I would say they just need to read the language, even decode is a bad word for this situation
@MrRosco
@MrRosco 6 ай бұрын
they didn't even know this happened because if they don't stay up to date with politics they wouldn't have known this happened
@Fantasy2k
@Fantasy2k 2 жыл бұрын
this multi-step video had me on the edge of my seat
@raginranga3494
@raginranga3494 2 жыл бұрын
Edgy words indeed
@semikolondev
@semikolondev 2 жыл бұрын
Multi step process is the jargon they use in USA. Open browser, f12, copy paste 64, type code or use software, the hack is complete. *multi step hacking of the world*
@dertythegrower
@dertythegrower 2 жыл бұрын
You are a bot, and you need to get a job kid because its obvious
@dertythegrower
@dertythegrower 2 жыл бұрын
Fantasy .. Yet another one of the (Dark verified comment bot nets)
@dertythegrower
@dertythegrower 2 жыл бұрын
@@semikolondev Dude, its a bot, you replied to a bot that uses a thesaurus... 100% for sure kid... lol
@gFamWeb
@gFamWeb 2 жыл бұрын
It's actually insane that they're claiming the journalist breached the teacher's privacy when it was actually the government themselves! That's like them leaving a file cabinet full of sensitive documents outside in public and then suing those who open it. Fucking ridiculous.
@terrsus7676
@terrsus7676 2 жыл бұрын
The hypocracy is real, but it's about money and power, even when unjust
@mkpanda
@mkpanda 2 жыл бұрын
I agree, but actually getting data by doing something (even just deleting "display: none" from the HTML) can be considered hacking in many countries (not sure about US). However, I don't think that people who report these bugs should be threatened, unless they misuse this knowledge.
@coctailrob
@coctailrob 2 жыл бұрын
Since the web servers effectively had already delivered the information to the web browser I would say it is more like delivering the information request by mail but also having another envelope enclosed with the SSN inside it.
@terrsus7676
@terrsus7676 2 жыл бұрын
@@mkpanda you didnt get the data yourself, it got sent to you. You press a key and can see what has been sent over to you. If this was a bad thing, why was it sent? Is it my responsibility that someone sends me data? Especially if i then don't do anything wirh said data, and report it to the government to fix? I'd consider hacking as doing things to manipulate the server, be it forgery and whatnot
@mkpanda
@mkpanda 2 жыл бұрын
@@terrsus7676 It is tricky, but yes, here it is that getting any data that you are not meant to see by manipulating the webpage in any way (even just viewing the source) counts as "hacking" and you can be sued for that. However if it is just sent to you and you never see the data, you can't be charged with anything (again depends on how you got the data, but in this case a normal user couldn't be charged with anything).
@9ofeX
@9ofeX 2 жыл бұрын
"decoded the html source code" Thats must be the funniest thing I heard today.
@cdorman11
@cdorman11 Күн бұрын
Decoded it into...?
@FiReLScar
@FiReLScar Жыл бұрын
As a developer this hurts, I have lost about 300 brain cells just even seeing that governor’s face.
@adder23
@adder23 2 жыл бұрын
It's like they are shipping a box full of secret documents to you address. When you open it they sue you for breaking into their building and stealing documents.
@xliquidflames
@xliquidflames 2 жыл бұрын
Oh, that's good. I'm a sucker for a good analogy and that's a good one.
@justincombs7433
@justincombs7433 2 жыл бұрын
And that boys and girls is called entrapment.
@My1xT
@My1xT 2 жыл бұрын
@@xliquidflames i have an even better one. The ship a letter to you totally normal properly addressed to you and at the back of the paper they hid the SSNs but in Chinese number characters
@Xaddre
@Xaddre 2 жыл бұрын
It’s not even that it’s more like they ship you the box you open it see that it’s not your stuff and contact them to tell them they shipped you it on accident and they sue you for telling them.
@niklas8565
@niklas8565 2 жыл бұрын
Now everybody knows that if they ever find a critical vulnerability by mistake on any official website of Missouri, they should never disclose it to anyone. The risk of getting sued for responsibly disclosing a security threat should be zero.
@danielbrenzel292
@danielbrenzel292 2 жыл бұрын
In germany a similar thing happend to a party. They sued the hacker, the prosecuter said. No breaking of "security functions". But the process was opened and the party got a fine for disclosing of personal data.
@niklas8565
@niklas8565 2 жыл бұрын
@@danielbrenzel292 Yeah, the CDUconnect app was not the most secure app 😅
@BlenderDefender
@BlenderDefender 2 жыл бұрын
@Niklas Wasn't the API public, just as the data in that website was? I can't understand why calling a public API should be a hack. It does not make sense. And it especially makes no sense to sue someone with good intentions. Why? That's like killing your dog for defending your home because it is a "dangerous animal that has hurt people". And in the end, you wonder, why you got robbed...
@niklas8565
@niklas8565 2 жыл бұрын
@@BlenderDefender by german definition this is not hacking. Public APIs are not called public for no reason 😅
@BlenderDefender
@BlenderDefender 2 жыл бұрын
@@niklas8565 Well, the CDU had another definition of hacking. Fortunately, the lawsuit was not successful.
@volactic8495
@volactic8495 2 жыл бұрын
This is a prime example of why states should have "technical courts" where the judge is a technically literate person who actually knows what he's talking about
@reprovedcandy
@reprovedcandy Жыл бұрын
judges need law degrees.. not too many technical people with law degrees
@volactic8495
@volactic8495 Жыл бұрын
@@reprovedcandy That's true but with the amount of technology that will be in the future, they could at least have someone on standby who is technically literate to help the judge better understand what happening.
@Silver_x86
@Silver_x86 2 жыл бұрын
The governor should take a real hard look at the consequences that would've occurred if this vulnerability hadn't been reported. To run the dudes name through the mud for protecting others is flat out inexcusable, and the governor should be punished.
@Top10AnimeBetrayals
@Top10AnimeBetrayals 2 жыл бұрын
There seriously needs to be an age limit for people in government. If the internet is still foreign to them, they should start living in a retirement home
@RaposaCadela
@RaposaCadela 2 жыл бұрын
word
@mickl3073
@mickl3073 2 жыл бұрын
wow someone has daddy issues; calm down there tiger.
@blzrL
@blzrL 2 жыл бұрын
@@mickl3073 nice ad hominem fallacy but you shouldnt be in any sort of power of any part of the US if you cant even use something as important as the internet
@blzrL
@blzrL 2 жыл бұрын
@@PefectPiePlace2 really not, if someones going to have power such as this they should be able to keep up in the modern world.
@universecreator988
@universecreator988 2 жыл бұрын
@@PefectPiePlace2 If the ones in power are so behind in times that they don't even understand how the internet works, then they're in no position to make any claims or judgements about anything related to it.
@mdo
@mdo 2 жыл бұрын
And this is how a well intended ethical hacker and security specialist says "Screw this shit" and goes to the dark side.
@essem4979
@essem4979 Жыл бұрын
If he sold those 100.000 security numbers on the dark web he would have made a lot of money, and avoid his life being basically ruined, so yeah people always make good guys regret their good actions
@oodlescanoodles
@oodlescanoodles Жыл бұрын
@@essem4979 he also probably would have been arrested lol
@essem4979
@essem4979 Жыл бұрын
@@oodlescanoodles people get away for much more serious stuff, he won't get caught if he knows how these things work
@oodlescanoodles
@oodlescanoodles Жыл бұрын
@@essem4979 idk man selling 100,000 peoples social security numbers on the deep web is pretty serious
@giviko1709
@giviko1709 Жыл бұрын
​@@oodlescanoodles There's a lot of ways to avoid that lmao. Good guy for not doing that, so sad what happened
@brostrod
@brostrod 2 жыл бұрын
Journalist: *Reports bug privately and responsibly, not revealing any information to the public and not causing "Major embarrassment"* Governor: THIS'LL COST MILLIONS
@patchstep
@patchstep 2 жыл бұрын
the level of digital illiteracy in the us government is frankly frightening and infuriating. Yes, it's highly unethical that the teachers' private information was able to be abused but it was in no way the fault of the reporter, just the complete and utter incompetence of the state of missouri.
@FF-px4qm
@FF-px4qm 2 жыл бұрын
It´s frightening to see someone with so much power putting someone through hell due to stupidity and opportunism. I sincerely hope the journalist gets reimbursed and the governor put in his place. Shamefull behavior.
@terrsus7676
@terrsus7676 2 жыл бұрын
Blown up to epic proportions. Had no ground, so made some with lies and confidence.
@justincombs7433
@justincombs7433 2 жыл бұрын
@@terrsus7676 that's called an agenda. Missouri's governor is not known for his insight, flexibility, or openness.
@ReflectedMiles
@ReflectedMiles 2 жыл бұрын
@@justincombs7433 He has made every effort to mirror Trump, making no secret of it.
@amberhide04
@amberhide04 2 жыл бұрын
He should be the one getting 50 Million dollars lmao
@lateral1385
@lateral1385 Жыл бұрын
The “governor”belongs in a nursing home.
@bina7513
@bina7513 2 жыл бұрын
This is both super stupid and malicious on the part of the government. F12 is something everyone can use and the journalist just found a vulnerability in the website. If anything, the journalist should be thanked for doing a service.
@donquixoteupinhere
@donquixoteupinhere 2 жыл бұрын
It’s utterly preposterous to the point of my personal infuriation.
@blokkypixel2760
@blokkypixel2760 2 жыл бұрын
Not to mention for "free"
@justarandompersoniguess
@justarandompersoniguess 2 жыл бұрын
People seem to give good people a slap in the face before thanking them for finding the problem
@delicioushomemadestrawberr8730
@delicioushomemadestrawberr8730 2 жыл бұрын
1 word, propaganda
@aznelprod7548
@aznelprod7548 2 жыл бұрын
The government being stupid and malicious? Noooooo, they would never.
@relo999
@relo999 2 жыл бұрын
Government: sends teachers' private in nearly plain text information to everyone Journalist: "you got an issue, please fix" Government: WE'VE BEEN HACKED!
@bestGaming132
@bestGaming132 2 жыл бұрын
The journalist even helped and they still wanted to sue him
@newbunny93
@newbunny93 2 жыл бұрын
This Governor has clearly never accidentally hit the F12 key. "A multi step process to hack our systems" (Hacker presses F12) Guess I'm going to jail.
@Anvilshock
@Anvilshock 2 жыл бұрын
You know too much.
@tablettablete186
@tablettablete186 2 жыл бұрын
@@Anvilshock Image when he (the governor) finds out about JS and CSS!!!!
@Anvilshock
@Anvilshock 2 жыл бұрын
@@tablettablete186 Or un-hiding extensions for known filetypes.
@ronmcleod4717
@ronmcleod4717 2 жыл бұрын
"This Governor has clearly never accidentally hit the F12 key". I'm willing to bet that this guy doesn't even know how to use a computer.
@MrRosco
@MrRosco 2 жыл бұрын
@@ronmcleod4717 he doesn't have a pc in his office
@valletas
@valletas 2 жыл бұрын
Honestely i hate this kind of crap When a politician decides to fuck over someones life just for his campaign
@ph33d
@ph33d 2 жыл бұрын
And to my understanding, Gov. Hee Haw isn't even running for re-election. He embarrassed himself merely for the pleasure of trying to "stiggit" to the Post Dispatch. You see, Missouri Republicans hate the free press.
@The-Devils-Advocate
@The-Devils-Advocate 2 жыл бұрын
Nice pfp
@atlrvrse
@atlrvrse 2 жыл бұрын
based pfp
@Firazoid
@Firazoid 2 жыл бұрын
I actually wrote up a paper on this for one of my college classes. I decided to print out the HTML of an NPR article that I used as a reference, because at the top of their page is a "Now Hiring Programmers" box that you can only see by looking at the source code. Obviously this is a fairly common practice, but I thought it would resonate more with the person grading my paper if they actually saw it with their own eyes what this journalist is being attacked for doing.
@VoidHxnter
@VoidHxnter 2 жыл бұрын
This whole situation is basically analogous to this: "Hey here's a package, do whatever you want with it!" "Ok... *reads the contents of the package"* "POLICE! HE HAS CLASSIFIED INFORMATION!"
@jameschapin7150
@jameschapin7150 2 жыл бұрын
I can’t even begin to explain how many times non-technical execs and program managers have had no clue what is going on with the technology that they rely on for business. This is not a hack. This is a simple step that should have been followed by their development team to verify the security policy compliance of their code before pushing it to production. It’s deplorable that malicious ignorance results in attacks on good Samaritans. Then people don’t understand why the sense of community has disappeared from our hometowns and favorite places to visit. Thanks for pointing out this story. This ignorance deserves to be put in check.
@shapelessed
@shapelessed 2 жыл бұрын
Literally all they had to do is to install postman, thunder client or other similar software/IDE extension and fiddle with the API a little to see how it handles malformed input and what it responds with... Hearing about all of this I bet they've got some SQL injection just waiting there to wreck their backend completely...
@ggtechno9093
@ggtechno9093 2 жыл бұрын
Like how the hell do you sue someone for using F12, that's a feature built-in to all most every web browser and like, if you get hack using this, it is your bad web lmao
@raginranga3494
@raginranga3494 2 жыл бұрын
@@shapelessed and 1=1 should let you know without trying
@henrym5034
@henrym5034 2 жыл бұрын
@@raginranga3494 a multi-step process
@terrsus7676
@terrsus7676 2 жыл бұрын
@@henrym5034 yeah. 1. Observe screen 2. Respond by moving your index finger to the F12 key 3. Move it downwards, this will cause the key to be pressed down. Hacker
@RipVanWinkle_Nature_Discovery
@RipVanWinkle_Nature_Discovery 2 жыл бұрын
Both. Stupid AND malicious. The reporter should definitely sue.
@danieleremin1924
@danieleremin1924 2 жыл бұрын
Uno reverse card
@Tyler-jd3ex
@Tyler-jd3ex 2 жыл бұрын
absolutely.
@samuelgibson780
@samuelgibson780 2 жыл бұрын
Well you can't let lawmakers get away with something that absurd. This is why math and tech literacy are so vital. Nobody who was informed would have called that "hacking" and it's dangerous to let anyone do so. That's how progress and science get stifled. I am not a lawyer, but I get the feeling the ACLU would have a field day with that one.
@samuelgibson780
@samuelgibson780 2 жыл бұрын
I don't know if they would need to sue them for money to make the point, but there should be some public awareness about what really constitutes malicious "hacking" versus what is a laudable exploration of technology and/or math. Seems like the kind of thing the ACLU would be interested in protecting.
@MyBinaryLife
@MyBinaryLife 2 жыл бұрын
This governor should resign. What a clown.
@cheleanupaul3659
@cheleanupaul3659 2 жыл бұрын
The way I understand it, it’s obsessively being addressed as a hack and as a ‘multi step process’ because the sensitive data is not out there, as in you don’t just load the website in your browser and wabbam, you got the SSN on display, but you got multiple steps to it, like go to the website, search for a specific name, hit F12, take the base64 text, and translate it. So basically the incompetency of the developer is covered up by minute details.
@whothis8933
@whothis8933 2 жыл бұрын
Wonder if they fooled him into believing this "html hack" was so sophisticated it would cost $50m to fix.
@XORA-CODEYX
@XORA-CODEYX 2 жыл бұрын
They just need another reason to burn tax payers money. How else would you justify taking high taxes if they aren't spend on the spot
@weston5614
@weston5614 2 жыл бұрын
I swear I heard him say "HTLM"
@trueriver1950
@trueriver1950 2 жыл бұрын
I am wondering if that's what the State paid to have it fixed...
@justincombs7433
@justincombs7433 2 жыл бұрын
@@trueriver1950 probably. It's probably some rule that they have to use an outside vendor for this and when a vendor said "Sure! " they charged them for their stupidity.
@forbiddenera
@forbiddenera 2 жыл бұрын
@@weston5614 htm ellen
@wisteela
@wisteela 2 жыл бұрын
"clearly a hack" Clearly wasn't Seen this covered by somebody before, but this has more detail, and is much better. Makes me want to press F12 more.
@terrsus7676
@terrsus7676 2 жыл бұрын
Don't you'll run into legal trouble viewing public information!
@justincombs7433
@justincombs7433 2 жыл бұрын
You'd be surprised how much BAD web design is out there. Granted, it's waaay better than it used to be, but for rural and small government offices? It's a joke.
@chri-k
@chri-k 2 жыл бұрын
but the decoded the h.t.m.ellen trough a multi-step process!!!!!
@MrCool-lo3ls
@MrCool-lo3ls 2 жыл бұрын
That is why you grab all the sensitive data for yourself, before you tell the organisation. Then you can sell it on the black matket to pay for your lawyer in case they try this BS.
@Holphana
@Holphana 2 жыл бұрын
The $50mil number comes from the security measures they will make to double check those social security accounts for fraud. It is ridiculously bloated and they use the highest estimate when the law gets involved as a bartering technique.
@theguy920
@theguy920 2 жыл бұрын
You do have to be really careful, I did something similar to this, but with my schools email software (I emailed one other student, which was not supposed to be possible), and got kicked out of my tech classes (in fear of the future) and suspended for a week (later reduced to 1 day). People are stupid, and no matter how many times you explain things to them, they will still be stupid
@danmakufan
@danmakufan 2 жыл бұрын
my school had the same initial password for their LMS accounts so I literally had to tell people to change their passwords I got into like 2 or 3 random accounts at that time lmao
@skilledscript2725
@skilledscript2725 2 жыл бұрын
@@danmakufan Same thing with me lol, I was on a random school computer once and somebody had their account saved (but logged out) so i tried putting in the initial passcode and it worked.
@skilledscript2725
@skilledscript2725 2 жыл бұрын
although, my school does say that people should change their passwords when they first login but people dont care
@_underscore_9271
@_underscore_9271 2 жыл бұрын
My school exclusively used chrome os, left the terminal so it could be used, and left devmode on, I found out that you could type anybody's username in (which being on chrome was their publicly available, school assigned email address) And the terminal would return their email/computer password. And on another occasion, I found out that one of the teachers used "admin1" as her username, and password to the unrestricted internet, I don't think my school put much thought towards security
@skilledscript2725
@skilledscript2725 2 жыл бұрын
@@_underscore_9271 bruhhh atleast my school disables linux terminal lmao. Crosh shell isnt though
@peatral
@peatral 2 жыл бұрын
Similar stuff happened a while back in germany where the addresses of voluntary electorial assistants were exposed through an api by changing the parameters in the url. The researcher did not make a big fuss and went the responsible disclosure route, but than after it got fixed and it went public she got hit with a lawsuit. IIRC in the end the lawsuit got dropped becuse she just accessed publicly available data, but the CCC said they won’t ever report any security issues to that party in the case they find one again. Shooting the messenger is not cool, especially if you got no knowledge on the topic and the whole thing is just a shitshow.
@keiyakins
@keiyakins Жыл бұрын
Not only is it not cool, it's just terrible policy. It means if someone finds it who doesn't want you harmed, they won't tell you, so you can't fix it before someone who *does* want you harmed finds it too
@fss1704
@fss1704 Жыл бұрын
Good luck finding security experts after fucking with the CCC, 90% of the people there won't work with you no matter what, 9.9% will not work with you because they might get a lawsuit and that 0.1% who will work will make you pay 50x more or just plain black hats.
@OceanMan_Nico
@OceanMan_Nico 2 жыл бұрын
Working in software development me and my colleagues had a blast watching this video.
@kurtsanches8819
@kurtsanches8819 2 жыл бұрын
Hope the Journalist set up a crowd funding for this event, if he doesn't have the budget to fight, I'm sure a lot of people who understand exactly what is happening here are willing to help, including myself.
@guptabhishek
@guptabhishek 2 жыл бұрын
I'm from India and I'd donate to this
@nietur
@nietur 2 жыл бұрын
@@guptabhishek go care about your own problems, rly
@WolfJustWolf
@WolfJustWolf 2 жыл бұрын
I'm in.
@dannywhittaker978
@dannywhittaker978 2 жыл бұрын
This video had me in tears. I wish I could've become a pentester by simply viewing a public webpage and decoding a b64 string. I would've saved so much money
@TidalWaveDan
@TidalWaveDan Жыл бұрын
The Governor was very tech illiterate. His campaign manager spearheaded that whole thing. That being said the Governor was more than willing to participate in publicly shaming and attacking a law abiding citizen to score a few political points and appear to be tough on crimes. And, that’s why this country is in its twilight years as far as respect and greatness.
@TheDendran
@TheDendran 2 жыл бұрын
Question is: Why were those SSNs hidden in that website in the 1st place? If I was a teacher and were to find out about that, I'd set that circus ABLAZE
2 жыл бұрын
Such an absolute embarrassment to everyone involved
@dertythegrower
@dertythegrower 2 жыл бұрын
Yet another one of the (Dark verified comment bot nets) Crazy=100% bot, for sure.. reselling accounts, just like Dark, X, A, B, and all the other verified Dark bots
@hypenheimer
@hypenheimer 2 жыл бұрын
bot
@emilyisoffline
@emilyisoffline 2 жыл бұрын
@@dertythegrower you are on a seytonic video but dont know the definition of a botnet lol
@sierra991
@sierra991 2 жыл бұрын
@@emilyisoffline it's not a botnet. it's an account that copies other liked comments
@emilyisoffline
@emilyisoffline 2 жыл бұрын
@@sierra991 I know what it is. That is my point. They do not know what they are saying lmao
@driedbrainfreeze2149
@driedbrainfreeze2149 2 жыл бұрын
This is how tech savvy the average US politician is, and why ransomeware works so well in the States
@LustigerName
@LustigerName 2 жыл бұрын
We Germans simply avoid all cyber attacks not through cyber security, but through good ol' fax machines
@allanparker6874
@allanparker6874 2 жыл бұрын
So the journalist did the technological equivalent of holding a publicly available government pamphlet up to the light and seeing the teachers' social security numbers on them and reported that to the proper authorities but got charged with breaking and entering or espionage as thanks. Great. Way to win the trust and respect of the tech community.
@ModelLights
@ModelLights 2 жыл бұрын
This is like delivering all of your valuables to someone's front door, then saying they robbed you. They would have been destroyed in court.
@aninstantramen9994
@aninstantramen9994 2 жыл бұрын
I just hate how they always act so sure of themselves, and then get angry at others for calling them out for their bullshit
@mariolol8333
@mariolol8333 2 жыл бұрын
that's actually really sad. how can such powerful people not even have a normal basic understanding of the internet
@allnatural1504
@allnatural1504 Жыл бұрын
I find it annnoy that they claimed their action were beyond unethical, when I’m fact, all they did was browse a public website. And once they found the bug, they first reported it, and when it was fixed, they published news about it. To me, that seems like the most ethical thing to do
@waasar
@waasar 2 жыл бұрын
Both the paper and the individual reporter surely have grounds to sue for damages over this absolute disaster
@midimusicforever
@midimusicforever 2 жыл бұрын
Someone should get sued, but it's not the journalist!
@kyouhyung
@kyouhyung 2 жыл бұрын
This level of technical ignorance by politicians should warrant an impeachment of that person. Whether it was pure incompetence or there was a malicious intent, it's equally disturbing and unacceptable.
@coffeemaddan
@coffeemaddan 2 жыл бұрын
Shows the level of advisors and tech competency of politicians. There should be popular documentaries produced to highlight the absurdity of this situation and how the 'government' can bully journalists or citizens to mask their incompetence. The old git should be held accountable for throwing his weight around without understanding the facts.
@themanthis837
@themanthis837 2 жыл бұрын
Wow, such incompetence & a public humiliation, guess its time to retire...
@y_strikes2770
@y_strikes2770 2 жыл бұрын
Politicians nowadays are literally every movie that says "I'll create a GUI interface to trace the IP address on the mainframe"
@ngkngk875
@ngkngk875 2 жыл бұрын
Going to need a lot of RAM to do that
@ThePC007
@ThePC007 2 жыл бұрын
@@ngkngk875 Nah, a Gigabyte of RAM should do the trick.
@win_ini
@win_ini 2 жыл бұрын
@@ThePC007 you sure you don't need a good motherboard with 10 ram boards with 4gb each?
@knownas2017
@knownas2017 2 жыл бұрын
It appears you have a feedback loop in the induction coils of your DB3 signal processor.
@regav62
@regav62 Жыл бұрын
Extra underrated
@cpuuk
@cpuuk 2 жыл бұрын
First casualty in Politics is the truth- this was just something to score political brownie point. If I was the 100,000 teachers I'd sue the State for shoddy workmanship under their state Data Protection.
@Tokuto-kun
@Tokuto-kun 2 жыл бұрын
I love the thought that they probably ditched the whole thanking him thing and instead resorted to blowing this whole thing out of proportion to make him look like a dangerous hacker, all just so they could not embarrass themselves, but ended up making a bigger fool out of themselves than if they had just accepted they screwed up with their website and moved on.
@Julian-pw5mv
@Julian-pw5mv 2 жыл бұрын
I love how they call it a multi-step hack, when its literally one click of the f12 button.
@awake31337
@awake31337 2 жыл бұрын
the same thing happened to me when I tried to responsibly disclose ppi being leaked by a pager vendor. I was thanked by the IT at the health care provider, then served a cease and desist by the vendor.
@lawrenceplays
@lawrenceplays 2 жыл бұрын
I think especially since this was politician making the claims of "hacking" he was playing the malicious card as a way of diverting the attention away from his governments flaws, and when that back fired he played dumb.
@xliquidflames
@xliquidflames 2 жыл бұрын
That's exactly what I said in my comment. If it got out that their website was _that insecure,_ it would be a huge embarrassment. The governor seems like a savy, career politician. He knew exactly how to spin an embarrassment into a campaign strength. The reporter was a convenient scapegoat. Luckily for the journalist, everyone saw right through it.
@akiranara6404
@akiranara6404 2 жыл бұрын
@@xliquidflames Unfortunately, I doubt everyone was that smart. Unless his opponent's PAC used it to attack him; I could definitely see that happening.
@imaperson1060
@imaperson1060 Жыл бұрын
How did nobody find this sooner? Also, how did that journalist have to get a lawyer? If anything, the government violated the teacher's privacy by sending the data in the first place.
@RainbowSheep_was_taken
@RainbowSheep_was_taken 2 жыл бұрын
I can't believe the devs just put the social security number in the front-end code, and they tried to "secure" it with base64. I'm truly dissapointed in the government and the devs.
@awgybop1
@awgybop1 2 жыл бұрын
This is the equivalent of sending someone a letter in the mail with accidental personal information left in it, and then the recipient getting sued for reading it.
@Buglin_Burger7878
@Buglin_Burger7878 2 жыл бұрын
I believe mail is actually protected by Federal Law at least in the US and you can actually get in trouble for that. I could be mistaken, but you're willfully opening the letter you know is not for you and can read who is the sender. So you'll know it is information you should not be viewing, should not have gotten this, and should not open this. In the case of F12 you're looking at the information sent to you, or a letter sent to you for you with information they didn't mean to give you.
@awgybop1
@awgybop1 2 жыл бұрын
@@Buglin_Burger7878 My example implies that the recipient of the letter was the intended recipient, but the sender accidentally left private information in the letter, and then sued the recipient for reading the letter that was addressed to them.
@xliquidflames
@xliquidflames 2 жыл бұрын
The campaign ad makes it obvious the governor knew exactly what he was doing. He may have never heard of HTML before but he's not dumb. What he knew is if it got out that the website was _that insecure,_ it would be a huge embarrassment. It might even lead to lawsuits from anyone that had info stored in their databases. The prosecutor calls it what it is, a data breach, not a hack. That prosecutor's press release goes on to talk about how they have zero tolerance for "improper taking and using of personal information." They conspicuously omit the word "storage" from that sentence. Improper storage of personal information was the problem here. No one took anything. It was in plain sight. I don't think the governor is intimidating journalists. I think he was seizing an opportunity and turning an embarrassment into a campaign strength. I mean, look at the guy. He's been in politics for a long time. He knew exactly how to handle this and spin it in his favor. The journalist was a convenient scapegoat.
@davidciprys7811
@davidciprys7811 2 жыл бұрын
He could also choose not to go public in the first place. The journalist said he would not post anything about it (if he did, that could be considered as a crime). Governor had two options either go public and twist the situation in his favor or ask anybody with at least two braincells if this is a good idea.
@slickrick2420
@slickrick2420 2 жыл бұрын
Republicans always play dirty politics like that
@_underscore_9271
@_underscore_9271 2 жыл бұрын
@@slickrick2420 honestly, democrats do too, I don't think any official is elected for their ability to lead, I think the campaigns always come down to who can talk the smoothest
@RaposaCadela
@RaposaCadela 2 жыл бұрын
@@slickrick2420 99% of politicians in general, all over the world they're a social disease
@Buglin_Burger7878
@Buglin_Burger7878 2 жыл бұрын
@@_underscore_9271 Everyone of every group can be evil, it is so rare for people to realize both sides of the coin are corrupt. It makes me happy seeing someone recognize this.
@Chuck8541
@Chuck8541 2 жыл бұрын
As for the 50 million bucks, aside from the contractors that need to fix the website - which shouldn’t be expensive, I’m sure ALL the teachers in that database are entitled to credit monitoring, on behalf of the state.
@Chuck8541
@Chuck8541 2 жыл бұрын
The “multi-step” process thing is legal jargon. It denotes that it wasn’t easily viewed, more than one step was taken - which denotes intent/action. This is why politicians often sound like They’re talking jibberish, they try to talk legalese. This is especially true, in federal hearings. They say one thing in chambers/meetings, but they say something different to the press. One of the main reasons is IN OFFICIAL PROCEEDINGS, everything said is committed to the congressional record - forever. So if they say something 50 times a week, future generations will think it was what the people actually believed.
@tottallynotkong
@tottallynotkong 2 жыл бұрын
I laughed so much when he said "decoded the html code" LMAO🤣
@regav62
@regav62 Жыл бұрын
if he decoded it, then it's an accomplishment, i've heard HTML is extremely hard to decode 😂😂😂😂
@monkemode8128
@monkemode8128 2 жыл бұрын
This could be used as a South Park script
@mortified776
@mortified776 2 жыл бұрын
It was both malicious and stupid. It is the dynamics of a abusive relationship. The abuser attempting to turn every thing around and make themselves the victim when they get exposed. The stupid part was thinking everyone else would be stupid enough not to see it for what it is.
@Seth_Arvila
@Seth_Arvila 2 жыл бұрын
So by their logic, if they publicly posted the SSN in clear text on the homepage of a website, and I saw it, I would be breaking the law.
@sixhundredandfive7123
@sixhundredandfive7123 2 жыл бұрын
This is like the mechanic blaming the driver for finding out the brakes don't work upon pressing down on the pedal.
@djpiercy1235
@djpiercy1235 2 жыл бұрын
I'm going to say that regardless of intent, this almost certainly fits the legal definition of actual malice. Someone (and someone in a position of authority no less) has decided to repeatedly make false claims and pass them off as fact, with disregard for their truth and what effect they would have, arguably for their own gain. Even if the journalist can't recover damages for legal fees, he could almost certainly sue for slander. (not a lawyer, but I have seen way too many legaleagle videos where he has to explain the legal definition of actual malice.)
@andrewdreasler428
@andrewdreasler428 2 жыл бұрын
Add in to the number of "dog whistles" the governor throws out (He actually says "fake news media" combining the claim of fake news and the discrediting of news reporters), I could identify his party affiliation even if I didn't know which party was in control of Missouri. The way things are going, I don't think I'll be able to trust a statement made by an Elephant politician ever again. If one pointed at the Sun, I would need to find another source to confirm that he's not really pointing at the Moon.
@kipter
@kipter 2 жыл бұрын
@@andrewdreasler428 Democrats and Republicans are both owned by the same corporations that own the Media, distrusting the media isn't a dog whistle, it's common sense.
@unlucky-animal
@unlucky-animal 2 жыл бұрын
Especially considering they want $50M for it... that REALLY sounds like they just want an excuse to blow through $50M..
@Stoney_Eagle
@Stoney_Eagle 2 жыл бұрын
As a web developer, I know that the HTML I send to the client is not proprietary, copyrightable, or protected and open to anyone who has access to the browser. In short, I JUST don't send private data from someone other than the requestee, what a bunch of fools. 😂😂
@clayrock78
@clayrock78 2 жыл бұрын
yeah its really pretty rediculous thats SSN's we're being sent in the HTML
@be1tube
@be1tube 2 жыл бұрын
A quibble: it is copyrightable, most websites are copyrighted. Copyright is about your legal capacity not your capabilities.
@Shogoeu
@Shogoeu 2 жыл бұрын
The governor should be stripped from his post, because this is no small mistake!
@johnnywaldron5402
@johnnywaldron5402 2 жыл бұрын
Ignorance has no limits, that governor just embarrassed himself and probably doesn't even realize it.
@TheTrainWatch
@TheTrainWatch 2 жыл бұрын
“There is an argument to be made that there was a violation of law.” Didn’t interpret this as a red flag as you said, but rather as a creative jab at the Governor. Almost like “There is an argument to be made that the earth is flat.”
@user-lk2vo8fo2q
@user-lk2vo8fo2q 2 жыл бұрын
right "...but i wont be the one making it" is the addendum
@_profile
@_profile Жыл бұрын
"This matter is a serious matter"
@MissFoxification
@MissFoxification 2 жыл бұрын
Next in the news: "Old man doesn't understand how the internet works." If it was intentional I doubt he would have mentioned specifics and would have used vague wording which sounds more intimidating. At least the prosecutor realised what was going on and that it wouldn't stand in court.
@ThePC007
@ThePC007 2 жыл бұрын
Not to mention the way he pronounced HTML as if he never heard of it before. He clearly had no idea what he was talking about. Which does beg the question, though. If this is indeed the first time he read about HTML, who wrote the script?
@akiranara6404
@akiranara6404 2 жыл бұрын
@@ThePC007 Probably an aid. He probably had seen the name before during the meeting, but wasn't quite familiar enough with it to pronounce it with confidence.
@canlelola
@canlelola 2 жыл бұрын
wow, I love how that dude talked into the mic. My brain, "Is this real!?'
@emilalbu
@emilalbu 2 жыл бұрын
so, in other words, he leaves a poster on the door with all the SSNs, somebody knocks and says : "hey, you're having the SSNs visible by anyone" and their response is : "hey, you broke in our house and stole the data (that we publicly posted on our door)" :p
@joshuamix6064
@joshuamix6064 2 жыл бұрын
Dear god, this was painful to learn about.
@GryphonIs
@GryphonIs 2 жыл бұрын
It may have been done intentionally because if I'm not mistaken, it was his office who was responsible for the security of that website.
@Tom-cf2wk
@Tom-cf2wk 2 жыл бұрын
True story, I found a decent security vulnerability in a payment processing service. I wont disclose the name, but they are similar to square. Anyway, I was able to obtain the business names and products of each of their clients. That itself I suppose isn't the end of the world, but it was definitely a bug, and at least would have made me uncomfortable being them. So I composed a report and sent it over to them. They then told me I was wrong. I so badly wanted to just compile the list and send it to them. But we were using their services and had spent a great deal of time setting our system up to do so. So I didn't compromise our relationship with them, I just let it go. Two months later, they issued an email to our their customers requiring their action, a layer of authentication had been added they said. Without getting into too much detail, it was a fix to the bug I found. Wish they would have at least given me some credit. My guess, whatever technician my report originally reach, got escalated to some senior tech, who naively and stubbornly insisted it was impossible. Then went home and while sleeping that night went over it in his head and eventually came to the "oh fuck maybe he's right" realization. Then too embarrassed never emailed me back thanking me. Then took them two months of fix it, requiring all their users to take manual action to correct their bug.
@justincombs7433
@justincombs7433 2 жыл бұрын
If they were willing to ditch you as a client over you being right, maybe you shouldn't be their client. But that's between you and them. At least they fixed the issue though.
@Tom-cf2wk
@Tom-cf2wk 2 жыл бұрын
@@justincombs7433 You're not wrong at all. But after spending as long as we did reverse engineering their api and integrating it with our product. It just wasn't worth it. The company we went with here, also had some decent / favorable ways in which their contract treats the user payment information. So for example, I think with square if you part ways with them, they are not obligated to transfer the credit card information and such of your customers. With this platform they are, which was important to us. And didn't seem common. But yeah I totally agree with you.
@davidt01
@davidt01 2 жыл бұрын
You should have checked if they had a bug bounty program, because you can get paid for reporting vulnerabilities if they do.
@Tom-cf2wk
@Tom-cf2wk 2 жыл бұрын
@@davidt01 Yeah that was my initial correspondence with them when sending the report over. I asked if they had one and they said no but they would take a look at what I had and maybe could work something out if it was legitimate. But then told me I was wrong. Which I wasn't lol. So yeah, was either just ignorance or denial. I appreciate your response though. Yeah that was my initial interest. I know google for example has some pretty large bounties.
@SpiritmanProductions
@SpiritmanProductions 2 жыл бұрын
Maybe it's childish, but I would have been far less forgiving in that situation. I'm sure some of those exposed companies would've liked to know what was accessible on that site, even if the information reached them anonymously.
@timothius9000
@timothius9000 2 жыл бұрын
has anyone looked into whether there was a IT contractor who could be blamed? if yes there's always the possibility that said contractor might have links to the governor
@Zetornator
@Zetornator 2 жыл бұрын
when he said "Decoded the HTML code" ...i was so shocked that i almost choked from my own laugh
@BlueJDev
@BlueJDev 2 жыл бұрын
Man's a browser
@ThePC007
@ThePC007 2 жыл бұрын
You could make the argument that since the base64-encoded social security numbers were part of the HTML code, and he indeed decoded them, he did technically decode the HTML code (at least the part that needed decoding). Though you're right, the people writing this had no idea what they were talking about.
@Zetornator
@Zetornator 2 жыл бұрын
@@ThePC007 yes technically the phrase was correct but coming out to the public to say all that was the funny part of all and i really admire the person who wrote that speech.
@shyy5439
@shyy5439 2 жыл бұрын
Something like this happened while I was studying, it was 2017 I think. But some kid found a way into school servers using the schools own website and realised that's how examination papers were getting leaked, he reported the vulnerability to the school and instead of getting a pat on the back he gets expelled from school, I felt bad because everyone knew it wasn't him, but the school wanted a scapegoat (?) Or someone to blame it on and since he told management about the vulnerability it's obviously him who leaks it. God I hate boomers.
@gabrielangelo1760
@gabrielangelo1760 Жыл бұрын
It´s still unethical, because the school didn´t ask for his service. Just because you have the knowledge doesn´t mean you can apply it. Imagine if everybody dumped databases from banks/schools and told in a formal email that they had all their information, without the authorization to do it. The type of malicious actor name for your friend is gray hat, he didn´t have the permissions to do it, but he also didn´t have any malicious intents.
@tuple5982
@tuple5982 Жыл бұрын
@@gabrielangelo1760 shit take, very shit take.
@MrGenie151
@MrGenie151 2 жыл бұрын
Illiteracy. This is just wild.
@Barzz
@Barzz 2 жыл бұрын
Waiting for "Getting sued for existing"
@chri-k
@chri-k 2 жыл бұрын
Getting sued for not existing
@mark.fedorov
@mark.fedorov 2 жыл бұрын
Eating soup with a spoon is a multi-step process... They just needed to add more meaningless words to make it sound serious
@grubbygeorge2117
@grubbygeorge2117 2 жыл бұрын
I think it’s a lawyer thing where they can try to prove the intent to hack because accessing the data required taking multiple steps
@whojamacallit
@whojamacallit 2 жыл бұрын
I'm surprised the teachers union hasn't launched a class action suit against the state for violating their duty of care of personal data. There are laws designed to protect personal data, and their job to protect against "multi step" processes that can disclose it. I would want to know every single instance my data was ever transmitted. But maybe this is exactly the state's reason to "spin" the story in this way - afraid of being sued and wanting to make people believe it wasn't their fault.
@RealCadde
@RealCadde 2 жыл бұрын
That was a governor on a power trip who read about how one of his institutions fucked up in the news and decided to go on the offense to turn his embarrassment into a power move. Unfortunately for this governor, his illiteracy in IT made what was a serious issue with security into a serious issue of management as a whole. Meaning i am sure there's PLENTY more of these flaws across this governing body's sites as the governor actually believes that any leaks that get into anyone else's hands is not a fault of theirs but the fault of those who got the information. I WISH that was true... For all but those i cared about... Because then i could just send some incriminating data to another person as a text message using an anonymous source and then he or she is a criminal. Imagine how simple it would be to get rid of competition this way... Just send something to someone and BOOM, they are in jail.
@jonathannoneofyourbusiness4123
@jonathannoneofyourbusiness4123 2 жыл бұрын
Was this done intentionally? I do tech support for a living, and I garuntee you that as he read “HTML” he didn’t even understand the concept of what it was. He’s an old man that is rich enough to pay others to understand technology for him, and through some absence if grey matter had somehow connected the description of what happened to “hack”.
@comet.x
@comet.x 2 жыл бұрын
shhh don't tell him they're paying us loads for easy fixes
@christopherlawless713
@christopherlawless713 2 жыл бұрын
The people who are in the Government are the best and brightest in our nation. So smart they pay 50 million for a problem that can be done for practically nothing. 😆 🤣
@VealCalf1
@VealCalf1 2 жыл бұрын
This is very upsetting. The journalist found that the state was leaking people's PII, did the right thing, and was then slandered. This reeks of a lawsuit for defamation from the governor, and the whoever paid for those ads.
@cd5433
@cd5433 Жыл бұрын
There’s probably something in the hacking statute that says a “hack” has to be a multi step thing to be considered illegal .
@Togher01
@Togher01 2 жыл бұрын
This is ridiculous... Do American law markers not take advice from other people? Like if you don't know something just ask. It's not a sign of weakness.
@MrMediator24
@MrMediator24 2 жыл бұрын
That's just the system their - politicians have to take extreme stances on issues and be exact opposite of... opposition. Also typical boomer being out of touch
@ThePC007
@ThePC007 2 жыл бұрын
Considering that he read the word “HTML” as if it was the first time he ever saw it, I assume he didn't even write the script himself. So, I suppose he already got the advice from other people, except those people had no idea what they were talking about either.
@vincentguttmann2231
@vincentguttmann2231 2 жыл бұрын
I think I'm just going with Hanlon's razor: Never attribute to malice that which is adequately explained by stupidity. But I'm not even sure if this is better or worse. It's bad enough that they governor had no idea what he was talking about, but it is even worse that there still isn't a federal law that protects cybersecurity whistleblowers.
@Bvic3
@Bvic3 2 жыл бұрын
The problem wasn't that the speaking face wasn't technically literate, most executives aren't. The issue is that there was no internal IT department to handle the issue. The US rotten culture of small government leads to that mess. State organisations are forced to hire absurdly expensive contractors because they aren't allowed to have state software development agencies.
@vincentguttmann2231
@vincentguttmann2231 2 жыл бұрын
@@Bvic3 Oh my god
@ultralaggerREV1
@ultralaggerREV1 2 жыл бұрын
ANOTHER RECENT STORY: Last week’s Friday I have this buddy who was having trouble trying to obtain my instructor’s lecture reader PDF (he’s a tutor and the instructor had issues making the company to give access to her lecture note to the tutor), and because this guy is majoring in cyber security, all he did was hit F12, look at the HTML source code, extract the PDF, and submit a report to the company saying they need to fix the vulnerability. The company started to get angry
@JellyJonesey
@JellyJonesey 2 жыл бұрын
Web and app security is an absolute joke. Bad database queries and unsanitized user input are everywhere. Governments and multi-million dollar corporations aren't immune, its really sad.
@wChris_
@wChris_ 2 жыл бұрын
Yet another case of: Shoot the messenger!
@mcmk6588
@mcmk6588 2 жыл бұрын
This is scary just how broken the system is.
Poop Delivery Website Hacked
8:52
Seytonic
Рет қаралды 207 М.
Fake Crypto App Exposed
11:44
Seytonic
Рет қаралды 141 М.
小丑把天使丢游泳池里#short #angel #clown
00:15
Super Beauty team
Рет қаралды 28 МЛН
Why Is He Unhappy…?
00:26
Alan Chikin Chow
Рет қаралды 97 МЛН
Fast and Furious: New Zealand 🚗
00:29
How Ridiculous
Рет қаралды 48 МЛН
Hacking a SATA Cable to Transmit Files
10:11
Seytonic
Рет қаралды 92 М.
Weaponized Tor is being Spread on YouTube
10:05
Seytonic
Рет қаралды 856 М.
How do hackers hide themselves? - staying anonymous online
11:55
Grant Collins
Рет қаралды 1,4 МЛН
Russian TV Hacked by AI Putin... Panic Ensues
10:16
Seytonic
Рет қаралды 277 М.
Digital Number Plates Hacked
9:26
Seytonic
Рет қаралды 95 М.
Exploiting Calculator.exe For Hacking
8:33
Seytonic
Рет қаралды 205 М.
Does this sound illusion fool you?
24:55
Veritasium
Рет қаралды 1,1 МЛН
Stop Hackers With This!
10:15
Seytonic
Рет қаралды 102 М.
Apple “Tried” Patching this Exploit and Failed...
9:55
Seytonic
Рет қаралды 43 М.
Pro-Russian 'Hackers' Sabotage Trains With $20 Radio
10:10
Seytonic
Рет қаралды 89 М.
小丑把天使丢游泳池里#short #angel #clown
00:15
Super Beauty team
Рет қаралды 28 МЛН