
RAW videos from REAL hackers
Keywords
Summary
157 words
Critical Evaluation
Value of the Information & Strength of the Argument
The video provides high-value, real-world evidence of cyber attack techniques, offering a rare first-person perspective. The argumentation is solid, as Hammond explains each step clearly, linking the actions to broader concepts like session hijacking and info stealers. He effectively demonstrates that these attacks are not sophisticated but rely on readily available tools and stolen data. The inclusion of two different attack scenarios (YouTube and Microsoft 365) strengthens the argument that this is a widespread threat. However, the video is partly sponsored, which may introduce bias, but the technical content remains objective and educational.
Scientific Rigor, Source Quality, Title Accuracy
The video relies on primary sources: raw screen recordings from threat actors, provided by reputable cybersecurity firms (Flare and Huntress). The sources are credible, and Hammond correctly attributes them. The title accurately reflects the content. The video does not cite external academic sources, but the practical demonstration and expert commentary provide sufficient rigor. The redaction of sensitive information is handled responsibly. The sponsor segment is clearly identified, and the promoted product (Flare) is relevant to the topic.
185 words
Title / Content Match
The title accurately reflects the content: raw screen recordings of real hackers, as promised.
Quality & Reliability
8/10
The video presents raw screen recordings from real threat actors, provided by reputable cybersecurity firms (Flare and Huntress). The commentary is technically accurate and explains the attack chain clearly. However, the provenance of the videos is not independently verified, and some details are redacted, limiting full verification.
Key Moments
Markers derived by PSI from the transcript: the creator did not define chapters.
- Introduction: presenting two raw videos from real hackers.
- First video: threat actor using anti-detect browser and info stealer logs.
- Explanation of info stealer malware and cookie theft.
- Demonstration of dragging and dropping cookies to hijack session.
- Configuring residential proxy to mimic victim's location.
- Accessing victim's YouTube account without credentials.
- Sponsor segment: introduction to Flare's threat intelligence platform.
- Second video: threat actor using GraphSpy to access Microsoft 365.
- Reading emails and searching for financial information.
- Conclusion: emphasizing the ease of account takeover and need for protection.
Cited Sources
- Flare — Provided the first raw video and is the sponsor; threat intelligence platform.
- Huntress — Provided the second raw video; managed security provider.
- Octo Browser — Anti-detect browser used by threat actor in the first video.
- GraphSpy — Tool used in the second video for Azure AD/Office 365 exploitation.
Concurring Sources
External References
Contribution & Novelties
This video offers a unique educational value by presenting raw, unedited screen recordings from real threat actors, providing an unprecedented look into their methods. It demystifies cyber attacks, showing that they often rely on simple techniques like cookie theft and proxy configuration rather than sophisticated exploits. The video also highlights the importance of threat intelligence and monitoring the dark web for exposed credentials.
Pour aller plus loin :
- Session hijacking — Overview of the attack technique demonstrated.
- Info stealer — Explanation of malware that steals credentials and cookies.
- Anti-detect browser — Tools used to evade fingerprinting.
- GraphSpy — Open-source tool for Azure AD exploitation.
104 words
Radar Profile
The radar profile shows high scores in information quantity, quality, and reliability, with a slightly lower technical depth. This indicates a well-balanced video that is both informative and accessible, though it may not delve into advanced technical details for experts.
💬 Très positif. Sur les 30 commentaires analysés, la majorité exprime enthousiasme et appréciation pour le contenu unique et éducatif, avec des remarques humoristiques sur les stéréotypes des hackers.