المدة الزمنية 10:15

Can a Spreadsheet Really Destroy Your Computer

بواسطة Hak5
17 782 مشاهدة
0
1.2 K
تم نشره في 2021/05/20

Can opening the wrong document really destroy your computer? We explore what could happen if a malicious office macro is lurking a document you open. -----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆ Our Site → https://www.hak5.org Shop → http://hakshop.myshopify.com/ Subscribe → /user/Hak5Darren Support → https://www.patreon.com/threatwire Contact Us → http://www.twitter.com/hak5 Threat Wire RSS → https://shannonmorse.podbean.com/feed/ Threat Wire iTunes → https://itunes.apple.com/us/podcast/threat-wire/id1197048999 Host: Kody Kinzie → https://www.twitter.com/kodykinzie Host: Michael Raymond → https://www.twitter.com/the_hoid -----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆

الفئة

عرض المزيد

تعليقات - 100
  • @
    @h-disconnected6612منذ 3 سنوات I love that y'all just set off a mortar on your porch 13
  • @
    @brianfreund1منذ 3 سنوات The quick not-so-hidden jokes in this are hilarious. Well done guys 15
  • @
    @bluegizmo1983منذ 3 سنوات Absolutely! If I could build a game with network multiplayer in a spreadsheet, you could surely do damage with spreadsheets. Years ago when I was working id="hidden2" class="buttons"> at a company, I made a Battleship boardgame style game in excel, with network multiplayer so you could play against other people at the company. ....وسعت 13
  • @
    @jmrمنذ 3 سنوات I wrote a spreadsheet that controlled three different printers and renamed files. I'm pretty sure someone with bad intentions could do worse. 12
  • @
    @alansungki7687منذ 3 سنوات lol this happened at my work. The whole office got sent a spreadsheet, I opened the file and realized it was malicious when it asked to enable macros so id="hidden3" class="buttons"> I declined and close the file and notified the IT guy and slacked off for the rest of the day while they got me a fresh system. Even though I could of done it myself, that's not what they pay me to do, so I act oblivious and enjoy my break. Even though I didn't open the file as the day went on co workers started opening the file and allowing macros. One by one ignorant coworkers started getting antivirus notifications, it was quite entertaining to watch. Whoever was working to breach out system wasnt very good and even if they were we dont even have any private or financial data on our servers as that is handled by third party companies. But the video is very accurate as most people are ignorant to any type of hacking methods, malicious data, backdoors, mitm attacks, and how they work. ....وسعت
  • @
    @chrijuvaz4862منذ 3 سنوات Make a video about silent office exploit, which doesn't need a user to enable macro feature and the payload executes once the user open the office document 4
  • @
    @stillchaosمنذ 3 سنوات I almost didn't recognize you Cody. U use to be the main mentor on Hak5. Well good to see u back in the stream.
  • @
    @YkComputerمنذ 3 سنوات In the world of Linux and Security Anything can happen.
    Love your videos sir. :)
    7
  • @
    @suurlohe9599منذ 3 سنوات Thank you! Also the layouting and setup for the vid was werry good ty! 3
  • @
    @coldblade666منذ 3 سنوات Some of the more advanced malware can detect whether it is in a virtual environment now. Opening it on a burner computer may be a better option, even though most people don't have something like that laying around.
  • @
    @iyeetsecurity922منذ 3 سنوات Interviewer: "Are you familiar with using Microsoft Excel and Outlook?"
    Me: (Giggle-giggle-giggle) Uh, yes. A little bit.
  • @
    @sambanna1982منذ 3 سنوات Would of been nice to see how to inspect the macro's?! 2
  • @
    @Jonathan_Hendersonمنذ 3 سنوات Another brilliant video Hak5. Loving the collabs with Null Byte
  • @
    @thefatmoopمنذ 3 سنوات Kills me that in electrical engineering, pdfs are the defacto standard. nothing more fun than opening very questionable pdfs on production machines 1
  • @
    @GL455_منذ 3 سنوات Lol that Russian google translation was really a true horror! XD lol
  • @
    @theBrightmanمنذ 3 سنوات So are Hak5 and NullByte a single thing now? Did I miss something? 2
  • @
    @yosefbernalمنذ 3 سنوات Nowadays you can use Windows Sandbox to quickly get an VM instance of Windows. I think you might need Windows Pro for this though.
  • @
    @vishals2576منذ 3 سنوات Looks like you guys destroyed a GoPro while filming the explosion. Great job guys BTW
  • @
    @happysprollieمنذ 3 سنوات Good vid, but did you screw up the live audio? Looks like you looped it later.
  • @
    @_BangDroid_منذ 3 سنوات Am I meant to be afraid or laughing at the goofy caricature of Russian hackers? 3
  • @
    @suyashcمنذ 3 سنوات I think easiest solution is to open such spreadsheets on Google Spreadsheet rather than using local software(MS Office).
  • @
    @Meleeman011منذ 3 سنوات that hacker isn't wearing a mask for corona. lolol.
  • @
    @tzisoreyمنذ 3 سنوات In all fairness, even if Macros etc. were completely and 100% risk free, I'd advocate for telling people not to open documents they weren't expecting id="hidden7" class="buttons"> to receive, just to get them into the habit of using their brain, and out of the habit of opening everything they're ever sent. ....وسعت
  • @
    @DoryanTheCriticمنذ 3 سنوات Since when did Cody become a HAK5 member? I thought he had his own thing (Null Byte).
  • @
    @UNcommonSenseAUSمنذ 3 سنوات So all Microsoft docs, Word, docx, & PDF are potentially affected ? 2
  • @
    @erikdz4938منذ 3 سنوات Microsoft recently did a crackdown on this. Now, creating any shell object on the VBScript of a MSOffice file, will trigger AV. Regardless wether it's outlook or not. Test it out for yourselves.
  • @
    @stillchaosمنذ 3 سنوات Its always good to be suspicious of anything that needs to be clicked in a email or doc. If u can not verify that it's legit. Treat it like a contagious disease.
  • @
    @ahrenbader-jarvis2317منذ 3 سنوات "Boring white void of an Excel file"? I'm not sure you know your audience. I'm sure I'm not the only one who gets excited about spreadsheets, data management and manipulation for everyday use not to mention getting into the macro realm. ....وسعت
  • @
    @spoozy666منذ 3 سنوات damn the russian references are fun lmao
  • @
    @peterkim9696منذ 3 سنوات Are malicious excel files work on android?
  • @
    @ChristianJackson47منذ 3 سنوات The Furry hacker community will not stand for this personal attack on Micheal (hope I spelled that right lol) Watch out Hak5, DedFurSec will be coming id="hidden11" class="buttons"> after you ;P
    PS, I'm a kittyscripter at best so rawr, watch out~
    PSS I do love ya'lls vids enough I guess I will excuse this attack just once until I actually learn how to be more than just a kittyscripter and hopefully become an ethical one myself one of these days ^_^
    ....وسعت
  • @
    @Jan-nu6zcمنذ 3 سنوات There is some meme potential with that russain hacker
  • @
    @kenny-kvibeمنذ 3 سنوات It seems like macros are just vbs files with some triggers that execute them, I don't know why people don't educate their selves before doing a id="hidden12" class="buttons"> big poo on their self.
    I always disable the app's internet access (via firewall rules) if I know it doesn't need it, like in real example: MS calc doesn't need it but yet it still has access..
    If you have time to meditate, then meditate for 10 mins, but if you don't have time to meditate, then meditate atleast for 1 hour, the choice is always yours.
    Anyway I never used macros in any spreadsheets, because I use python to create the spreadsheets for me, and I suggest people use LibreOffice because in this case it would alert you upon opening the document that it has macros that contain viruses, and then you'd need to add a trusted file location to use it or by disabling the security of macros.
    ....وسعت
  • @
    @KoRokjdمنذ 3 سنوات Do you make them cut away when you blink
  • @
    @TheRealZamFitمنذ 3 سنوات Need to find a pic of Putin in a furry suit. 1
  • @
    @williamjames0منذ 3 سنوات Hi people, could someone please explain to me how to do this? Thanks 1
  • @
    @maxthecomputerfox2215منذ 3 سنوات love the michael is a furry and the russian skit
  • @
    @neeleshpatel9312منذ 3 سنوات The stickkkkersssss. ;(
    @
  • @
    @talio-5469منذ 3 سنوات I think I would want that booby excel file
  • @
    @shaburusyntax385منذ 3 سنوات well if you get hacked, we'll know which country did it
  • @
    @exploit_avr4707منذ 3 سنوات Yea its basically bash scripting working with macro's
  • @
    @suyashcمنذ 3 سنوات People using Linux and don't have Microsoft Office: We don't Care
  • @
    @robmorgan1214منذ 3 سنوات "So, how do you avoid.blablabla?"
    Step one download linux.
  • @
    @eliyatos811منذ 3 سنوات hey bro i was looking your YouTube channel . you have almost 700k subscriber but your videos don't have that much view . why?
    i think id="hidden13" class="buttons"> you bought those subscribers..soo can you tell me the secret behind this
    ....وسعت 1
  • @
    @kishorebolt3065منذ 3 سنوات Is there a way to exploit Linux os with macros? 1
  • @
    @DoryanTheCriticمنذ 3 سنوات His mouth doesn't match with the audio.
  • @
    @lowlightevangelist9431منذ 3 سنوات Matthew 4:17 (KJV)  From that time Jesus began to preach, and to say, Repent: for the kingdom of heaven is at hand.
  • @
    @TheRealZamFitمنذ 3 سنوات Best one yet! Nice to have learned the identity of Kody’s secret crush.