Tech

YouTube creators hit by massive wave of account hijacks

YouTube creators, particularly in the auto-tuning and car review community, have become target of a massive wave of account hijacks, a media report said on Tuesday.

The account hacks are the result of a coordinated campaign where hackers use phishing emails to lure victims on fake Google login pages from where they collect users’ account credentials, an investigation by ZDNet found.

Victims of the attacks that have hit the creator community over the weekend include several high-profile car reviewers, the report said.

A YouTube spokesperson, however, told that it has “not seen evidence of an increase in hacking attempts over the weekend.”

“We take account security very seriously and regularly notify users when we detect suspicious activity. We encourage users to enable two-factor authentication as part of Google’s account Security Checkup, which decreases the risk of hacking. If a user has reason to believe their account was compromised, they can notify our team to secure the account and regain control,” the YouTube spokesperson said in a statement.

Twitter, however, is flooded with complaints about missing channels from YouTube. Some users from India have also reported the atttacks.

“I am a subscriber & also a big fan of his work #Musafirakajoshi and Somebody hacked my brother Rahul joshi’s YouTube channel #Musafirakajoshi @YouTubeIndia Please get in touch with him as soon as possible. @YouTubeIndia And bring his channel back as soon,” wrote one Twitter user.

“The recent phishing attacks on YouTube are an escalation of a classic scheme, in which users are lured to fake login pages, where they enter legitimate credentials. Cybercriminals are always looking for the weakest link in the cybersecurity protecting valuable assets; in this case, it was users,” Jonathan Knudsen, Senior Security Strategist at Synopsys Integrity Group, said in statement.

According to a YouTube video from Life of Palos uploaded over the weekend, hackers were capable of bypassing two-factor authentication on users’ accounts.

Hackers targeting YouTubers might have used Modlishka, a reverse proxy-based phishing toolkit that can also intercept 2FA SMS codes, he suggested. The best proactive defence against such attacks is education. With the right knowledge, many fewer users would have fallen victim to these attacks.

“While SMS 2-factor authentication is better than no second factor, this incident is still a reminder of its weaknesses which is why NIST stopped recommending its use back in 2016,” said Bill Lummis, Technical Program Manager at HackerOne.

“It is important that the industry moves towards newer tools such as time-based One-time Password (TOTP), which recycles numbers every 30-90 seconds on a physical device, or Universal 2nd Factor (U2F), such as Yubikey, given that attacks like this will only become easier to execute over time,” Lummis said.

36 Comments

36 Comments

  1. Pingback: make up tips

  2. Pingback: 카지노사이트

  3. Pingback: Darknet

  4. Pingback: ca nhạc thiếu nhi vui nhộn con heo đất mèo

  5. Pingback: Online Slots

  6. Pingback: Dylan Sellers

  7. Pingback: CBD Gummies

  8. Pingback: uniccshop.bazar

  9. Pingback: new pornotube

  10. Pingback: imitation patek philippe for sale

  11. Pingback: English To Russian Translation

  12. Pingback: cbd oil for pain

  13. Pingback: how to add transitions on video star

  14. Pingback: Bitcoin Era Review

  15. Pingback: Bitcoin Loophole Platform Review

  16. Pingback: 먹튀검증하는법

  17. Pingback: dumps store

  18. Pingback: devops

  19. Pingback: web Design Services for Branding

  20. Pingback: replica watch

  21. Pingback: rolex gmt master replica

  22. Pingback: CI-CD

  23. Pingback: sex and the city season 6 cast

  24. Pingback: replica rolex

  25. Pingback: rolex replica

  26. Pingback: instagram account audit

  27. Pingback: you could look here

  28. Pingback: chaturbate schreiben

  29. Pingback: bolton escort girls

  30. Pingback: flirt hrvatska

  31. Pingback: psychedelic magic mushroom types

  32. Pingback: Daily Devotional & Blessings

  33. Pingback: two blotters of lsd,

  34. Pingback: valid dumps with pin

  35. Pingback: cvv dumps 1000$

Leave a Reply

Your email address will not be published.

one × 2 =

News is information about current events. News is provided through many different media: word of mouth, printing, postal systems, broadcasting, electronic communication, and also on the testimony of observers and witnesses to events. It is also used as a platform to manufacture opinion for the population.

Contact Info

Address:
D 601  Riddhi Sidhi CHSL
Unnant Nagar Road 2
Kamaraj Nagar, Goreagaon West
Mumbai 400062 .

Email Id: [email protected]

West Bengal

Eastern Regional Office
Indsamachar Digital Media
Siddha Gibson 1,
Gibson Lane, 1st floor, R. No. 114,
Kolkata – 700069.
West Bengal.

Office Address

251 B-Wing,First Floor,
Orchard Corporate Park, Royal Palms,
Arey Road, Goreagon East,
Mumbai – 400065.

Download Our Mobile App

IndSamachar Android App IndSamachar IOS App
To Top
WhatsApp WhatsApp us