Author Topic: How to secure a large fan based YouTube channel from hackers?  (Read 858 times)

0 Members and 1 Guest are viewing this topic.

Offline ControllerPlus

  • NULL
  • Posts: 1
  • Cookies: 0
    • View Profile
How to secure a large fan based YouTube channel from hackers?
« on: September 07, 2012, 12:47:19 am »
Hello! New to the forum.. really wish to have a bigger insight on the word "hacking". Yesterday I had my fare share of it after my Business YouTube channel was hacked and closed, www.youtube.com/controllerplus.


How can you secure your channel from hackers? How can they bypass a 2 step verification code? Its all just so crazy to me, and I just want some honest answers on how people can do this. And how I can secure myself from ever having this happen again. Worst thing that has happened to me for over a year.


Thanks guys.

Offline iTpHo3NiX

  • EZ's Pirate Captain
  • Administrator
  • Titan
  • *
  • Posts: 2920
  • Cookies: 328
    • View Profile
    • EvilZone
Re: How to secure a large fan based YouTube channel from hackers?
« Reply #1 on: September 07, 2012, 02:15:03 am »
First and foremost, Welcome to EvilZone. You should think about posting an introduction in the Introduction section on the forum located here:
https://evilzone.org/members-introduction/

Secondly, you must visit Dr. m0rph in room 32B (Up the stairs to the left)

Lastly onto your questions.

There are several methods to get access to a youtube account. The most simple way would be a phisher. If you're not careful you could have entered your log in information into a website called a "phisher" which will look like a common website, however when you enter your user name and password, that information gets inputed into a text file and there are your log in details.

Another possibility is malware called a stealer. If you save user names and logins there are several applications that can be used to get those either uploaded to a ftp server or even emailed to the attacker. This can happen a lot of different ways, simply downloading and running an application or visiting a malicious website that could have Java Drive By's, as well as other types of exploits to automatically download and execute software on your machine without your knowledge.

Yet another possibility would be a keylogger, there are hardware as well as software keyloggers that work similar to a stealer, however it logs all keystrokes instead of looking for saved passwords.

Another possibility would be Social Engineering in which the attacker tricked you into giving your user name and password. Or possibly get the information required for the security checks to reset the password.

The last possibility I can think of right now is someone sniffing unencrypted traffic over a wifi network. Say you go to starbucks and log into your youtube account, however the guy sitting in the corner with ethercap and other applications are sniffing all traffic going in and out of the router harvesting usernames and passwords.

------------

Now how to not have it happen again? There are several options.

1. Do not use open wifi networks/hotspots you never know who is on there
2. Make a habit for checking the URL making sure its hosted on the site... be careful when looking though a lot of attackers will use URLs that look similar (for example y0utube.com or even youtube.somesite.com)
3. Do not let your browser save your passwords
4. Never give your login information to anyone even if they claim to be part of a service, they will never ask for it.
5. Make sure to have good anti-virus software installed on your windows computer (ESET, AVG, Avast, are decent enough) OR run a nice linux distribution such as Ubuntu (great for beginners)

Without more information this is all I can give you
[09:27] (+lenoch) iTpHo3NiX can even manipulate me to suck dick
[09:27] (+lenoch) oh no that's voluntary
[09:27] (+lenoch) sorry