Linus Tech Tips
Thanks to dbrand for sponsoring this video! Use code FIVEFOOTONE at for 15% off everything site wide.
Discuss on the forum:
Shoutout to ThioJoe: @ThioJoe
Shoutout to Gamers Nexus: @GamersNexus
Linus Tech Tips
2 meses atrás
Thank you ALL for your constant support! And thanks to dbrand for sponsoring this video. Use code FIVEFOOTONE at for 15% off everything site wide. ► GET EXCLUSIVE CONTENT ON FLOATPLANE: ► GET LTTSTORE MERCH: ► GET LTX 2023 TICKETS: ► SPONSORS, AFFILIATES, AND PARTNERS: ► OUR WAN PODCAST GEAR:
Never been 17 seconds early 💀
So who did this?
@Nitsua same lol
Tech tip: don’t get hacked
Solid tip, bro.
Thanks bro
Tech tip: never use any tech, how are you gonna have any problems with it then
In a healthy organization, sh!t actually rolls up the hill, rather than down. Beautifully said, Mr. Linus
I've never had a job where shit didn't roll downhill, I think shit only rolls uphill in tech because the people are smart enough to own responsibility. In Healthcare it is all about liability which leads to fingerpointing and the people at the bottom take the blame for failure even when there is poor management and lack of training
Already one of my favorites, respect grew immeasurably by owning up and taking responsibility.
@David Sauve absolutely.
This is the wisest thing I've never heard! And I've never heard SO MANY things!
I like how Linus owned himself by spelling ONE in the code as O W N E
i thought noone else noticed
But you remember the code now, don’t you? 😂
@Pepega Professor lol. i said.. w? hahahaha Love you Linus
damn i commented about this when the video came out. 0 likes.
I'm a security data scientist for a bank, which most of the time makes me feel pretty paranoid about the level of care I take when dealing with digital content, but stories like this make me feel a little less crazy.
your not crazy enough
You should get even more paranoid depending on your levels. Keep your nogging working and thinking about ways to avoid trouble. (Of course, only if you can deal about that. No use stressing over things you can't deal with.)
@MattsoPiratoso Oh I have to be plenty already. I don't know whether it's because of my job or just really advanced data mining, but I've had emails and texts sent to me that used very tangential details about my life to sell the illusion, and my employer has told me straight up that they've found bounties on me and my whole team on the dark web. And I don't even have any real power or anything lol. I'm just a convenient potential entry point, like a lot of others. It's creepy to think about, but that's where we are today. The sophistication of black hats has increased to an almost unbelievable degree.
Not a data scientist, just a lowly sys admin, but I completely understand. Security is such a fragile thing and we are never in control.
I love the fact that despite someone on your team making a mistake, you guys are using this to better the company instead of hurt it.
It's like you need a separate computer with its own address to be in contact with sponsors , totally isolated from other computers . Yeah its a pain in the back , but when there is no access ever made to the creative part , there is nothing anyone can use .
​@Pete Lind hacked by downloading a file. That no one thought about that... That trick is as old as computers itself. Seeing my work tasting it's employees on it regularly. But yeah besides the extra security. Separating prevents a lot. Excellent tip in general, even it's just for yourself,
those who blames mistakes are fools Linus know that, so instead of punishing the guy who made the mistake he uses it as a learning factor to better secure and improve the company
@Pete Lind We have that in our firm, actually a cheap setup but a pain for us employees ... we can´t goof around in the internet. I have no internet access, I am only allowed to use the software intended for my work plus the fact that the server my work is stored on isn´t connected to the internet either. I think we only have two computers with internet access and they are both strictly regulated .... and we are nobodies in the big picture. I think my boss is paranoid.
Geez, what a mess. Glad you guys are handling it. I have to say this is the most sincere I feel I've ever seen Linus. This authentic display of feelings was nice to see for a change.
Jim Browning
Jim Browning 2 meses atrás
As someone who had a channel deleted (albeit in a different way), I sympathize. Glad Google had your back and I wish they were as responsive for me (took a week, but at least they restored it). - It's good to own up to mistakes; others will learn from this - Perhaps link to the advice you quote in the video and not just a shout out to ThioJoe? Keep up the good work.
oh yeah i remember you took a loooong time to get your channel back that SUCKED
Love the fact that the wife was down there in the trenches with you. What a team you are.
Yep the horses were in the trenches too.
She is kind of also running parts of the organization though, you kind of also want to save what you worked your ass off for so long haha.
Well he is a millionaire so it’s in her best interests to get that cash cow running again
@Henry Petty bro his wife literally is with him since day 1
@Ye boiii ikr she even brought in the dough when he was struggling financially. Mother of his children! Is nothing sacred anymore
This is very eye opening not only for BRvidrs but also for common internet users. It is also an important lesson for web developers. Session hijacking is often an oversight by many developers. In some cases like social media, as you mentioned, they deliberately skip out some measures to make the UX less confusing. It would be nice to see if these companies at least add those advanced security features configurable. It would make the balance between UX and security.
More security, less UX. More UX, less security.
We can say that they could have the session ID be matched with the IP address, so that way you need to mask your IP and have the Session ID. Honestly shouldn't even be that hard to implement.
@Spicy Manx That would cause issues for people with dynamic IPs & people who use VPNs. So it would definitely have to be an opt in advanced feature.
@Felix that's the reason to go full IPv6. Dynamic IPs are an ugly compromise that should die already.
@Felix That's true
I am glad that the community has the back of LTT. You guys have earned a place that deserves recognition in the face of struggles. It shows your strengths through the frays. You have a solid team that faces issues day in and day out. It is the unknown challenges that come out of left field, that you never see coming that turn things upside down. And they could happen again, but you guys are wiser from this. You may take a look at all your procedures and refresh the teams about how this transpired for future booby traps.
Another good rule of thumb, when all else fails call your contact at a vendor/sponsor directly before opening anything. If you don't have a contact with said vendor/sponsor call their customer service line and ask to speak to the person that sent the email.
Check what you're opening is the only rule of thumb needed
@Lolp821 That should definitely be the first thumb, but maybe his thumb idea can be the secondary thumb for when you're suspicious about the vendor/sponsor's content
I love how DBRAND jumped at the chance to completely troll Linus in his hour of need. Whomever is in charge of their social media must be an epic troll.
Really appreciate your honestly and candor here. A huge problem that needs to be fixed.
Gotta love dbrand! Glad you guys were able to recover!
Linus didn't deserve to be hacked, he clearly respects his staff, and thats rare. He's taking full responsibility, and I hope this works out for his benefit God Bless you all 🙏
But deep down... we all know it was Colton fault somehow
Alex Kilpatrick
Alex Kilpatrick 2 meses atrás
I dont know if you'll see this since this video was posted last week but i wanted to let you and your team know how much of an impact LTT has had on me. I started watching about 8 or 9 years ago and got inspired to keep learning. Now I'm coming up on 1 year at my first IT job. Even now when i watch your channel I always learn new things almost every video. Thank you LMG and keep up the great work :)
This is incredibly valuable to ALL of us. We spend so much of our lives creating content and investing in our channels. If YOU can get hacked, anyone can be hacked, and that's very scary! What about music claims that aren't correct, yet earn big $$$ for those bots that claim content and just hope that the channel doesn't challenge that. Please do more Crime Related protection content. We are all VERY INTERESTED. Thank you.
honestly, I think LTT could do a masterclass on managing a youtube channel. It wouldn't be very hard for them to offer exclusive content to creators with a minimum size.
Actually, a single person channel is way less prone to these attacks. The larger the team, the larger the risk someone is not aware enough and makes a costly mistake.
@57thorns But a small channel is WAY less likely to get help from BRvid for days, weeks, or ever. Even small channels get targeted for political, religious, and other reasons that have nothing to do with crypto scams.
Frix 2 meses atrás
I really appreciate the honesty and transparency. Such a crazy event, and something to look out for.
I feel bad for the poor editor who had to blur out his boss’ junk today.
🍓? Is that the new eggplant? Should have been a banana 🍌 😕 🙄
@Chapmann Cheung it’s probably meant to represent his “berries” (balls)
soon the leaked scene of him running down the stairs nekked will go viral...Colton's fault, of course.
onlyfans would probs be a good business decision lol
This entire video is golden. Your candor is astounding. Your relationship with Dbrand is perfect. And your responses to your community and staff are unprecedented . I couldnt be happier to have you as one of the few people im subscribed to. Proving every post why it was a good decision. Please keep being the awesome person you are Linus
Really sorry this happened to you mate. Great to see your community getting right behind you. Also, don't blame yourself for this. It could happen to anyone and we're going to keep on seeing more and more victims of this kind of thing. It's just the world we live in unfortunately.
You know, the fun thing about DBrand as a sponsor is it is so much fun watching them troll linus and linus whine about it (I know it is marketing) that that, all by itself makes me want to buy something from them.
This community cares Linus. We, even the noobies, we are ALL in this together. We LOVE this shit as much as if not more than you do. Thank you.
I have so much respect for Linus. Glad you're back!
Im just glad he didnt put on any pants.
Sorry to hear this happened to you guys, but glad you guys got it under control again fast :) Just laughing my ass off for the end of the video, the best sponsor link and code ever! haha
Just want to say thanks for showing the world that you can not only make mistakes, but own up to them, be transparent about them, not scape-goat them, and _still_ be not only successful as a company, but _thrive._
Love your sense of accountability - it's a great model of reflecting on systems and training. I'm glad you got everything back
Hate that it happened to you guys, but grateful for the insight that was gained because of this! You guys are awesome, keep up the great work! Also, shout out to Chris Titus Tech that gave me the heads up on what was happening to you!
Phone Repair Guru
Great work acknowledging the whole of the problem and not the specific incident. Failure is inevitable, the lessons you learn from them are invaluable but you have to be willing to change and adapt with one and not live in denial.
The only thing I found weird is that he was walking around his house naked. Normally this isn't an issue, but doesn't he have kids? And I'm not talking newborn babies. What if his girl wakes up and goes to the bathroom, or gets sick, or whatever; she gonna see daddy naked. That's weird as hell.
​@Zid Bits This was an emergency situation; he porbably doesn't do that on the regular.
His approach is very commendable and respectful, in most companies they would just blame a certain person and that would be the end of the story, without improving the initial problem and let the cycle rinse and repeat, also Steve is a real one for informing at 3AM xD
You've got a very loyal fan base.. Truly a treasure to have
Glad you were able to recover without too much pain or damage.
Glad you’re back! It’s great that BRvid can restore the channels. As few people as possible should have access to the admin privileges of the channels. It was amazing to see those super chats warning people! I’m glad it’s all sorted now. Welcome back ❤
You can see how much he cares about the organisation by the emotion in his voice, especially when he expresses his gratitude. No wonder he turned down 9 figures for it all - this is his baby and he cares about his team. Even had me a bit misty.
@Like Bot of course he cares, LTT is his empire he built from the ground up, it's his and his family's livlihood and also carries the responsbilities of his employees livlihoods with that, without LTT he's nothing
Im truly glad you guys were able to bounce back! I remember waking up super early to the notifications of the live streams, there were so many of them, which was odd to me. Then later on, on Facebook I see a post from a friend saying "Linus Tech Tips got hacked" and I was kinda like "huh? no way, it happened once already, there's no way.." Now 5 days later, I'm seeing this.
Sorry to hear this Linus. That's terrible. You guys also need to check for any backdoors they most probably have hidden on your network. You may need to get a security expert to take a look for you. Hope you get it all sorted and it doesn't repeat itself.
I'm glad you managed to restore your channels! Even if you're not the first to have suffered from those attacks i'm sure you won't be the last. These are sneaky techniques not easily detected. As a software developer myself I run my entire development environment on a virtual machine. And also my enterprise email client run on it's own VM. It's definitely wasteful in terms of hardware resources, but in terms of security and isolation it's another world.
Much love for you guys I am glad you guys got this fixed couldn't live without your guys help when it comes to tech you guys rock
Nah, my heart goes out to you. I really enjoy your channel and I'm sad this happened to you.
so pleased everything is okay.
Sorry that ya had that happen, Linus. Your channels are so good for knowledge. I sure hope that nothing bad like this happens again. Thanks for keeping your videos posted. I use the Brave browser to run all my items. So far it is 100% secure for any browsing of data. I don't use chrome unless on a smartphone. Chrome is Google's gateway & sadly it is much like Internet Explorer use to be with Microsoft & gets hacked open often. Still. Glad your channel is up again. Keep it real Linus and keep those awesome tech tips coming. Even though not I don't have a youtube channel, I still do feel for ya that all 3 were tampered with. In conclusion, super glad ya were able to post this insightful video about the hacks that hit your channels & glad things could be resolved. There is a reason you have over a million followers and support through the community, it is all due to your technology tips. Stay strong and wishing you the best of luck.
Linus was going through a lot of tough times. I can see in face.
Very grateful that you publish this content that you make a us aware of these situations. I was never aware that this could happen and really need to be so cautious with opening anything from email
Kudos for being open and honest about this. Kind regards.
Seems like a valuable (if painful) lesson for all involved. It sucks that (survivable) failure is often the best teacher, but that seems to be Darwin's (or maybe Nietche's) way.... I'm appalled that this happened, but I'm glad that you survived it - and are big enough to get the attention of the powers that be. The best thing that can be wrung out of this debacle is ways to improve the process to prevent future exploitation. .....Until the resourceful baddies come up with a fresh way to subvert the system.... (It's their nature 🙄) "The cost of liberty is eternal vigilance" (sigh)
Glad you got this sorted! You can actually disable all forms of two factor other than a security key by enrolling in the Advanced Protection Program. I’d highly recommend all BRvidrs do so. There does need to be changes for this type of thing though. Even to start there could be more limited channel permissions, it would be a quick change but go a long way.
Thanks for being so sincere, helps a lot to understand how they gain access. It would happen to anybody.
Sorry to hear about all the unneeded stress, you and your wife, had to deal with because of this. I can empathize because I know, what being under a stressful situation can be like and know that it can be traumatic or at the least, ruffle your feathers for a prolonged period and turn your chin hairs grey (I know that stress isn't linked to grey hair, it's a joke). Glad that everything turned out "good" and hope we can see some changes, implemented, a.s.a.p. Sure, it was a malicious file that sparked everything but Google shouldn't leave, so many doors open and unlocked, in their system. It's not like you can just implement more security features, yourself, Google has to be willing to make these changes...otherwise they are stupid.
Like you talked about on WAN show, this was bad but in many ways not only LTT but the creator community as a whole will benefit from this. You've raised awareness on something that had been lurking in the shadows. Keep fighting the good fight! Now I'm off to LTT Store to buy something...
You sound like great boss, I appreciate how you take accountability for policies. Good job, sorry you had to go through this.
Some larger multi global companies should take note of this video when there is a hack or data breach, this is how you do it, its all about transparency and speed is of the essence, bravo Linus Team!
you guys have been so much support to me I got to know how to deal with stuff
Sorry this happened to LTT, but thanks for sharing your learnings - this is a real eye-opener!
Thanks for the technical details of the incident. I appreciate you're doing a constructive video out of this misery.
Man, It must be really tough! But im glad you got your channels back!
Most impressive part of all of this is how the company took responsibility instead of throwing an employee under the bus like SO MANY OTHERS DO.
Being a celeb helps some average Joe would probably be laughed at
surly his wife help him to understand that.
carlosfer2201 2 meses atrás
@Dave ballsack he meant LTT not blaming the employee. Not BRvid helping Linus
How can they possibly fire Linus. This channel is literally named after him.
I agree with you GreyAye. This is an impressive display of emotional intelligence. Managers and leaders everywhere should take note. This video should be featured in classes at universities teaching the subject. Linus is a role model in this case, FOR SURE.
Jealous people will always find a way, to ruin for others. I do hope this works out for you & thank you for the info. And 11:44 - 11:47 I agree XD. Have a good one Linus & thank you for the kind words. And *Dbrand* believing your 5foot-1 under the strawberry, got to be a huge honor! CSL & OUT!
Loved this video and..... honestly.... the OCD vacuuming pattern in your office carpet. Thank you for sharing your pain, the effort and the story to help teach others so that they can avoid this. Honesty and Conversations are the keys to better learning! And yes, when you are the top of the totem pole..... how you treat those underneath you as well as not denying that no matter good or bad, the bad always sits on your shoulders.
well glad to see you back , the channel is part of life keep it up and be careful
I REALLY LIKE YOU, anyone that gets to work with you is very lucky, props to all your success.
This is why having windows default to not show file extensions is the biggest security problem since the internet has existed.
Another problem is that Windows likes to execute code from a non-executable file extension. It shouldn't execute ".pdf.exe" or ".exe.pdf". If it does anything, Windows should call the PDF software assigned to the PDF file extension, not execute the file and let it do whatever it wants. I wonder if this virus will get named LTT for worming its way into the LTT office.
The best part of this is the fact that dbrand not only jumped at that chance to help Linus, but is also roasting him at the same time.
dbrand just keeps "broasting" him XD
I mean, haven't you had a friend like that, who will pull your chain constantly, but be the most loyal friend you have? I have. I get it.
Did anyone else notice when he spelled out the discount code he added a "W" and spelled out "FIVEFOOTOWNE" lol
​@1racerboy1 lol glad I didn't hallucinate that thought I was chatgpt there for a sec
I was really worried about you man, I’ve been following your channel since the beginning and wow, see it all just go away was heartbreaking
Linus is literally the tell all when it comes to software hardware etc. thank you!!!!!
Lots of youtubers are being hacked as well. I hope youtube does something about all this.
That was absolutly intense listening i ever had on BRvid. Happy that you got your channel covered with just a finger snap!
I like how you are dealing with this! The employee made an honest mistake
Man, my guy was so focused that he forgot to put clothes on. So much dedication to the channel. We would’ve felt the same, and were so glad you’re back.
I think it just goes to show how much of a panic he was in that he just had to get to his computer to attempt to shut down the hackers
XdivineExp 2 meses atrás
Which one of the poor editors had to go through that footage tho
@XdivineExp its like cartoons they just slipped off
Hey, I've been watching you guys for years, I was wondering if you were planning on making a series based on cyber security news. With this breach just happening I see it as a great chance
Especially since AI based hacking is becoming more and more prevalent.
Mad respect to Dbrand here and the team as well!
My only thought about "what you're definitely thinking" was "I can not imagine the unbelievable terror you and your team must have experienced in that moment." Truly sorry about the terror y'all experienced.
Love your channel, and ill be a subscriber for life, very sorry to hear you were hacked, and what a great video to explain the issue. And good to see you got some cloths on, especially with them drive to the office.
Good on you for owning the mistake and not cascading the blame down. Great leadership right there.
Your wife helping you at 3am while you’re in your birthday suit is pure gold. Glad you’re back
Ya she seems to be the greatest sucess of his life :)
The kind of woman who pushes you forward to success, we all deserve one.
victornpb 2 meses atrás
There's no way he was completely naked. But still funny. xD
Linus, I'm so sorry this happened to you. Thank you for drawing from your experience with this hack to make this helpful video.
Thank you for this honest and open discussion about this important issues. I really think this is something that could happen to any of us. Hackers are very aggressive. We all need to be extremely careful online. I try to be very careful about what I install on my computers. You have to even be careful with files that don't seem like they could be dangerous. Word documents can have dangerous scripts hidden in them. Operating systems are not always as secure as they should be. There is so many ways for malware to sneak in.
Yep… just had this happen to my main channel, and now I’m praying Google will actually be willing to help me recover everything. I’m hoping 15K subs and monetization is enough to get them to take this seriously. I’m so heartbroken right now.
BRvid doesn't need to make your suggestions default to make it easy for most users but it should definitely be options for larger channels or users that want the added security.
I’m glad you got recovered. I hate that only big fish like you actually get support from google/BRvid.
Hey Linus, the worrying thing is that even checking the file extention is not enough. ThioJoe made a video about how file extentions can be spoofed.
Mr. Moray 2 meses atrás
Jay DKB Games
I had the same problem 10 years ago, maybe a little bit longer. I had a gaming channel called game labs reboot. Which I put my life hard work into it. I only had 5000 subscribers, but I lost everything on the channel was completely lost so I completely understand how you must’ve felt. I’m only now starting again, so I wish you the best of luck.
At least you got your channel back. I lost my channel permanently after it got hacked, I think it had a name change too. Ever since that incident I started using Security Keys.
Session tokens should be reconciled with IP address. Google engineers have just prioritized inflating engagement KPIs cause that’s how they move up in the organization.
@tayzonday would that make not make it less secure since it being stored locally like it is right now means that they would need an in to your device, but with it being linked to IP they would be able to get that info by just finding and connecting to your IP address? I am just asking I'm studying Compsci in Uni so I was just wondering
@Partson Mutambudzi session token being linked to IP address doesn't mean the IP is used for authorisation at all, it means the server checks if the token corresponds to the address the request is coming from, and adds additional authentication measures if there's a mismatch
As you said, hindsight is 20/20, and I wouldn't be surprised if you started having your teams open any docs in VMs first.
Hahaha I loved the sponsor's hits at you, made me check them out and I've actually wanted to buy this kind of products, so for you Linus, I'll get a phone case ;D
One more tip for big channels that can afford it, maybe have a separate system for interacting with public and promoters and a separate system for working and loging into your accounts. This way no malware can gain access no matter who is opening it even if by mistake. Or maybe a virtual system will also work.
for not holding tht employee accountable and blaming training linus seems like a great boss to work for
4:29 I knew that already and I'm eating a cookie atm lol Also it's great to see a boss that doesn't just make an employee take all the blame when it was in part caused by management failure
Linus was just so done, he couldn't even spell the offer code correctly anymore. Take care, everyone! And thanks for the hard work!
@Jamiezz I'm glad to hear I wasn't the only owne! 🤣
No it's cuz dbrand own him 😂
I came here to say this
He owned himself there.
Really informative, thanks Linus. Sorry its caused you so much hassle but it's started a useful security discussion. One more thought would be to have an account kill switch, perhaps accessible by a separate link known only to the channel creator (perhaps via a trusted device), with OTP/2FA etc. Activation of said switch would immediately lock the channel, deauthorise all sessions and report automatically to youtube. Would save much hassle at 3am... I know it wouldn't have helped the LTT hack, but as a result of watching this and recent events I've been taking security more seriously and setting up yubikey on my accounts, as it appears hackers are just getting smarter all the time. I'll also be extra careful with pdfs and file extensions now too.
people don't take phishing emails nearly as serious as they should imo. It's one of those things where everyone thinks it won't happen to them. They think their too smart, or it would be super easy to catch. But scammers aren't all stupid, and their scams are always going to keep getting more and more sophisticated. I hope this brings light to the fact that it can literally happen to anyone. And people take their training on safeguarding their company and personal data more seriously.
😂😂😂 shorty lmao, I am glad you were able to get your account back. Love your channel
Thanks for making this a learning opportunity not just for your employees but for you too. Great leadership actually taking ownership. 👍
Dang good looking Linus hope you get back up and running w/o too much headache 😮 love your channel!
