Veritasium - 2018-09-19
Or almost any garage - it's particularly good with fixed code gates and garages. Samy proposes other weaknesses with rolling codes. This video was sponsored by LastPass: http://bit.ly/2oscAe9 I don't condone malicious hacking of gates, garages or other property. The point of this video was to discuss how it could be done using fairly basic technology like this toy that was originally intended as an instant messaging device. I learned a lot in making this video about how codes are sent and received, how they are encrypted or not encrypted. I found out how hard it is to execute in practice something which in principle doesn't seem that difficult. Special thanks to Samy! His original videos on using the IM ME to open radio frequency garages and gates can be found here: https://www.youtube.com/user/s4myk He's got a really cool channel so be sure to subscribe if you're interested in this stuff. Music from http://epidemicsound.com "Critical thinking 2" "I think I was there" "Magnified X 3" And music by Kevin MacLeod http://incompetech.com "Marty Gots a Plan"
Me: Installs Last Pass
Hacker: Okay, now I have to crack only one password
@fudge nuggert sippinslide youre not very smart.. at all. Lmao
@A K T ..thanks sweet heart. Im sure that means a lot coming from whoever t f u r. And thus my self esteem is now low is shall shall crumble and slowly dissolve.. gooooooood byyyyyyyyyyyyyeeeee..... Or not.. cuz I have unlimited lives in this game.. look up the word sarcasm.. if you need help spelling it. It is L. O. S. T. O. N. Y. O. U. btw your borderline is showing..no big deal.
@fudge nuggert sippinslide just send me the virus link.
@Seth Adkins I may be easy but... .. hmm.. ... ... . ... ok why not ..
fudge nuggert sippinslide stoopid
And now imagine forgetting the password for lastpass..
@Misaka Mikoto
No, i dont have a bigger problem to worry about than my keys when my house is burgled.
I copy my password in note pad and leave it on a book shelf full of bs books I dont read or you can put it in your wallet
Does Veritasium actually use LastPass?
U could try asking the NSA, intel, Symantec, Google....
I did...
"An average person has at least 200 accounts"
Well then I must not be average
He looks like elon musk
most likely those click farmer people. (they get 1$ per 100~1000 clicks)
There must be one person in there with 10000000000000000000000000000000000000000000000000000000000000000000 accounts that screwed up the statistic
200 accounts? i have like 30 tops
@Volvith in that case, there's probably some guy with 48 passwords for every applicable site on the internet
Weird house flex but ok
Nice amount of likes
You think he needs to go to a friend's house to record a video?
Thank you
Yours sincerely,
Thief
Huh.
Is also ironic that He got sponored by lastpass
Thieves know this. It's regular people who don't.
Similarly, if you have a shitty lock a thief will open it regardless whether there are videos on YouTube about it. But if YOU watch those you may think about changing it.
Butt Why?? /r/ whoosh
@Lord Applesauce r/poeslaw
my garage door uses one bit.
But I won't tell you whether it's 0 or 1 ;))))
But if you use hexadecimal then you can have 0-9 and A-F
trick question. it's a tristate, so its Z
If u wanted to know 0 = off and 1 = on so it must be 1.
1000101
@JS Studio's But is on closed?
I remember that when I visited my great-grandmother in 1968, sometimes her garage door would open when military jets flew over.
@O ROUABAH Actually, I'm not gonna say that I'd expect a device from that time to have been developed around a shift register, but I absolutely wouldn't expect anything being 7-10 years newer to have been using something that simple either.
Early dedicated encoders/decoders appeared just some years later: I found a datasheet (check the second PDF on https://www.datasheetarchive.com/MM5320-datasheet.html - direct links don't work) showing that the MM53200 already existed at least in 1982 (14 years later, I know), and that's just a datasheet, the IC is, AFAIK, much older, like middle 70s.
I cannot believe that someone was still using a simple shift register to develop a decoder in the 80s, and, indeed, some of the remotes we see coming out of the bag in the video seems to belong to the 70s...
@O ROUABAH maybe it just wasn't available in your country. You would be amazed to know how long phones and cars has been around. Try Google if available in your area.
Just joking of course, don't take this the wrong way
I remember when my grand daughter's pet rock used to order chinese whenever 8 dogs barked at the same time.
Those pilots.. tsk tsk.. IM'in each other with their Mattels..😒
I remember when my Tamagotchi would crack my middle school locker combo when it died!
or maybe i just smoked too much herb then forgot to close my locker and forgot about the digi waste-o-time.
5:27
It opens the "DOOR" to other issues 😂😂
I like his expression
I have a brick that can open any window!!
@Blox117 I have something called a blowtorch
Botw ITB I have a screwdriver that can open anything
Sounds like the voice of experience.
William Mielenz 😂 I was on about the sonic screwdriver
hacks
Ooohhh this is the guy who hacked myspace right?
Yes he is
Yeah. Now he will get arrested for accidentally hacking everybody's garage.
Thanks for this! My neighbour has lots of cool stuff in his garage. Just ordered one! ;)
Lol
Oh no, you didn't did you?
Dorian did you forget? I got level 2 security.
But you dont know how to program it
4:35 the TOTAL number of codes is 4096, so it would take 262 seconds to try ALL the codes.
The door would probably open before.
that's less than 5 minutes
@Ahri wow, so it's less than 1/12th hour
@flowjob wow, so that's less than 263 seconds
To be precise, the expected time given an equal distribution of codes would be that you have to try on average half of the codes.
You threw in that last part so people wouldn't try breaking into your house.
This man speaks truth.
Good luck breaking in my garage. I have no lock on the door, no power opener and so much junk inside that no one can pass.
@spiciestt how is that a garage?
Mine is padlocked
Except a latch, you'll need your hand for that.
chadwpalm
Dont forget to factor in risk (likelihood) when calculating a score for a hazard.
Yea, we could be attacked by biological weapons, sure. But currently, chances are it won’t happen so I’ll leave the gas mask at home today....
The concurrent events that need to take place for you to find yourself requiring to exit your burning dwelling via the garage door are so highly unlikely for someone who lives in and knows their house, that your comment makes you sound like that bitching mootch that never has anything positive to say about others and thinks they are smarter than everyone else.
10000 min.
me: looks out window to every garage in my neighbourhood
"it's fun time"
I NEED HELP I FORGOT MY LASTPASS PASSWORD
use lastpass to store your lastpass password so you won't have to remember your lastpass password
A video about hacking into stuff that begins with an advertisement for a product to keep all your passwords in one place.
Hmm.
Nothing suspicious about that at all.
@DFX2KX
"This is my Facebook password" "This is my Google password" "This is my Twitter password"
These are all strong and unique passphrases :p
Of course someone might see the trend, so you could encrypt them with a simple system.
@caezar Except all those passwords would get rejected as "insecure" because they have no numbers or special characters. :(
@Marco Grubert It's so stupid to enforce numbers and special characters in 2019. People that aren't worried about password security will just go with "password@123", it's barely a small inconvenience for modern password crackers; while 4-words long passphrases have been shown to be quite effective and easier to remember.
@caezar You think those are unique? I know someone who uses those.
@Najwa Laylah "Unique" means you'd not be using the same exact password for all your services; although that specific pattern could be recognized easily
What kind of bourgeois gated community do you live in?
@Daniel Laverde I'm moving to TX!
Once you have 6.6M subscribers: "any damned bourgeois gated community I want to live in!"
Only the bourgeoisiest of the bourgeoisiest!
Jealous much?
Farhan Yousaf I wouldn’t bother, poor people in TX dont have them..
That’s Samy kamkar he was banned from using any computer with internet access in 3 years for hacking MySpace lol
@IamIUareU Again, he wasn't allowed on computers not just the internet. Also, the internet has been public since 1991. I guess you may not have had it but it certainly wasn't pre-internet. Also how are you supposed to keep up to date on new code advances without the internet? Also what constitutes as a good programmer? If they don't use the internet then I highly doubt that they are. "Good" programming is generally about speed, safety, and general efficiency all of which require you to be familiar with public libraries and use something similar to GitHub. As "good" as they may be there is no reason to program everything from scratch for every project.
@grey99p first of all, internet become widespread in my region around 2002-2003, before 1998 there was only 56kbps dial-up internet here that was only provided to companies or ngo's and the government, till 2006 there were only handful of people that had internet (i had internet at home since 1998 dial-up, then in 2001 i switched to adsl and in 2010 to cable internet), so yeah i am talking about my country and region not about global...
speed in programming is irrelevant, its only relevant if you are "office robot" and you are forced to "fast print" projects so that your boss and owner can get rich and you can pay your bills... thats not good programming, thats resourcefulness...
you cant talk about security if your software is based on someones else libraries, your software will be as secure as the weakest in security library that you are using in your project...
general efficiency, again your software will be as efficient as the weakest optimized library that you are using...
to be clear, at the moment i am working the way you are explaining too, in a company where we are "fast printing" projects for money, but thats not good programming, thats resourcefulness...
good programmers were the people who were writing and developing the libraries and systems that we are using today, nowadays we are all only "copy-paste office robots", just like those people working on factory lines... i do low level firmware development as a hobby nowadays to get out of that monotony...
the real good programming happens when someone says "you cant program that, its impossible" and you accept the challenge...
@IamIUareU Uh so you didn't get it at all. Safety isn't security. If someone designs a library then you don't have to spend the time making sure every test case the library goes through doesn't fail. That's what safe code is not security but making sure your code doesn't fail on its own. Speed isn't just about pumping as much code as you can, it's about being able to work on the parts of the code you actually need to work on. When making a car people didn't invent the wheel. That comes back to what you say as well. These libraries that were designed in the past were also written with libraries and so on. Coding in a bubble doesn't go far and is self defeating.
@JaytleBee Not css, javascript
SapphFire every time a person scrolled on to his profile (on myspace) they added him as a friend
"This toy can open any garage" Shows it opening 2 garage doors on the same house
The real question is, "will this work on my neighbors garage?" 😂
Remember when lastpass was malware installed by hamachi if you didn’t uncheck it’s box
NanoSync lmao remember hamachi?
NanoSync hamatchi is adware
@Yourmoms Asshole Nope. its a virtual private network. I used to use it to connect my network & pc, to my nephews, so we could both play FSX together. its actually a useful utility to have.
Edit:- https://en.wikipedia.org/wiki/LogMeIn_Hamachi
Most people don't need to open my garage door by using technology.
Most people just need to lift up the cardboard flaps.
10:40
that's similar to the Evil twin attache when hacking WiFi
Last Pass: I can store 200 passwords for money
Chrome: Am I a joke to you ?
firefox too
Using chrome to save your passwords is one of the worst thing you can do, I you go on any compromised website, like a pop up add or something like that, you can get a virus that grabs all the info from the browser. The browser doesn’t do any encryption, it’s just a plant txt file with all emails usernames passwords and credit card info
WITH THIS KNOWLEDGE WE CAN JUST FREE THE ALIENS IN AREA 51 FROM OUT SIDE
Why hasn’t this comment gotten more likes 😂
@Blake brummett
Cause the freed xenomorphs ate them.
0:47
Surprised, the "incorrect" wasn't common.
75% of the people watching this video wouldn’t even know where to begin on hacking garage doors.
90%
I gotsa CB with a big ole amplifier and I ain't done seen nothin it can't open. Can of Beenie weenies: opened. Preacher's daughters legs: opened. Source software: hit and miss
But what if you forget your LastPass password? ( ͡° ͜ʖ ͡°)
i am giv'in all this garage door opener info ( only can understand the first 30 seconds of the video ) , then spend two and a half hours trying to figure out as to how you made that face thingy after the end of your comment,
good grief !
@Steve Davis ( ◔ ʖ̯ ◔ )
https://www.lennyfaces.net/
Tattoo it on your arm camouflaged by another design. A lock, perhaps?
Dear Veritasium
Thank you for allowing to steal stuff from my own house
Sincerely,
Theif
"the average person has ABOUT 200 accounts" that is An AD average
An average AD lies 100% of the time period.
Just wait till you learn about the 300 year old key technology we use to secure our homes.
@Michael Hartman .. 9000? - Could it be you are a Proto-Creationist? - On 'good ol modder erf, fa treehounded dousand yers we Ugh and then we Ugh and then i have a new waifu nd a new garage. Ugh.
@Leahpar Suidualc post your proof or shut your mouth. dont just assume "anything is possible hurp hur hur!" just because you are ignorant.
@st1300 r buddy, hotels aren't meant to be THAT secure. Want an example of electronic locks you're NOT going to bypass? Bank vaults.
@MyBrothersMario Master locks are useless, watch Bosnian Bill or the Lock picking lawyer, they literally say BOOOO and the lock opens. I know it was a comedy edition, but their still crap, I think a cable tie is more secure -it takes longer to undo lol.
Electronic systems range from hackable by phone (mifare classic) to double key 3des encryption which is not hackable practically (as of now). Of course, physical break in is always easier...
We’re sorry, all IM-ME’s are sold out currently
Wow, he has a huge house with 3 garage doors and a gate... Jealous.
1:18 back up..."if there's a password breach." so it's "hackleberry"
Thanks for telling people how to steal my Ford Fiesta...
can't you make a garage door open with a manual key
3 garage doors and a gate, damn, youtube definitely dint demonetize Derek.
He was also wealthy prior to Youtube so there's that.
G+1121494 Yeah, lots of times recently he's said footage will be part of a documentary in Australia or Europe. That's where the bux come from. Let's just hope he doesn't get hit with retaliatory tariffs.
surprisingly that's not very lucrative
Then what's your secret? I could use an education in how to not be poor. Teach me, kthxbye <3
He also does other stuff and produces full length documentaries for tv-networks porn e.g. in Germany and France.
This whole video is him flexing with his mansion
Oh whatever! What's he supposed to do, hide where he lives? It's not a mansion either.
@CarbonGlassMan Nah that row of trees outside is the same kind that every mansion in Cali has, I swear.
@Amellow the same kinds of trees are in front of all different kinds of houses. He doesn't live in a mansion. He lives in a nice house. Oprah Winfrey wouldn't be caught dead living in the house like that. She lives in a mansion. I guess having part of your house in a video is a case of the video maker bragging, so long as the person watching lives in a house considered not as good or as large. This is a pathetic attitude for Americans to have.
@CarbonGlassMan i dont care what kind of box people live in. Oprah's home choices seem not as fashionable after the apparent lack of any barriers from wildfire. Oye
"This is insane"
What?
Why?
*Forgets LastPass account password like a boss*
Burglars: "It's free real estate"
Can't hack into a garage door when you're too broke to have a garage
its it a Olympic sport to open my garage door, it has no electronics, its just huge and heavy
Naganachiketh Chinnamuttevi
Got himmmm
better yet, in my case, I just leave my garage door opener unplugged when I know im not going to be using it or going to be not home for extended periods of time.
"Oh what a handy video to help me open my garage if I break my remote" I like the naivete. I like you.
@Zes ???
Are there any resources to learn more about how the chip inside the toy was reprogrammed? It seems interesting.
The chip inside is a CC1110. That's a chip made by Texas Instruments. I've used the CC3xxx series, and it's quite easy to program these chips. Assuming you know C, all you need is Code Composer Studio and a JTAG programmer. Look up the datasheet for the CC1110 and boom, you're in.
SmilingIpad check out Travis Goodspeed & Michael Ossmans Tooorcon talk from 2012 on the pink pager. https://youtu.be/WGU30mF_dgM
Finally I can steal my neighbor's microwave!
12:27 bottom right, looks like Riccardo
the crime rate for breaking and entering exponentially increases
"Opens the door to other issues.." ;-) Nice. I see what you did there
My neighbor really does leave her garage door unlocked all the time. Not even kidding.
Einstein got the joke guys
My favorite Samy line...
The moment you think all your issues are solved..
A door opens.
i door not believe it
having 'just' installed garage door automation on my garage... u had me worried there, for a bit #punIntended
its ironic cuz hes sponsored by a security company....
II - 2018-09-19
Now we all have to upgrade the security of our three-garage mansions.
tommi karsikas - 2019-12-02
Damn you science
Sarah Bovee - 2019-12-20
.
Magnus Juul - 2020-01-27
Yeah. wtf how does he afford that?!?
Magnus Juul - 2020-01-27
@Trekeyus Well it's quite a small niche of people who're actually interested in that stuff and/or cares about. Like it's probably 1/100000 people who cares about stuff like that.
Sheldon Edwardson - 2020-02-11
Somebody remind me in at least two years to eat my pasta.