Howdy! You must login or signup first!

This entry contains content that may be considered sensitive to some viewers.
Untitled-1

Submission   14,691

It was first created by 4chan.org's /b/ board to generate permanent comments. This generated a scrolling marque of red text, along the comment screen. This also deleted every previous comment, and deactivated every embedded link (This did not include the video and surrounding play/pause buttons, but the subscribe, post comment and other similar buttons). The example in the shown picture was the comment section of Justin Bieber's Baby Ft. Ludicrous. The code used to hack youtube was a cross-site scripting (XSS) vulnerability in the comment and video title sections of Youtube.

The date coincided with the 4th of July, and spread rapidly. The comments began as random insults to one or more people/videos, but began posting the phrase "Expect Us". One key side effect, however, was that this code disabled the ability to flag any video. This soon led to multiple users posting porn videos, disguised as titles such as "Justin Bieber". The complexity of the scrips grew to even javascript alerts such as "Justin Bieber has died in a horrific car accident. Please visit CNN.com for more information". Ironically, one of the only safe video/channels was the Scientology Channel, which required the comments to be reviewed before posting, leading to an immediate detection/removal of the malicious comments.

One of the later threads on /b/ discussing this incident was archived and is currently being viewed by the moderators. The picture of the thread had a trollface bursting through the Youtube icon, followed by flames. The title of the thread was originally Operation Jewtube, but was changed to Operation Porn Jewtube during the 2nd thread. The attack originally generated much lulz, however, due to the inanity of many statements, and the inconsistency of them, it failed to do much besides annoy Youtube and it's users. Only during the 2nd and 3rd threads did the comments became consistent, reading "Expect Us". 4chan raiders also posted comments such as "Ebaum was here" leading to much speculation to who caused the raid.

As of now, most of the affected videos have enacted a "Safe Mode" for comments, hiding them and not allowing any scripts to be run. Jay Nancarrow, a google spokesman, had released this statement:

"We took swift action to fix a cross-site scripting (XSS) vulnerability on youtube.com that was discovered several hours ago. Comments were temporarily hidden by default within an hour, and we released a complete fix for the issue in about two hours. We’re continuing to study the vulnerability to help prevent similar issues in the future."

This has ended most of 4chan's hacking/spamming of youtube.com.

Currently, there is no ED page, however one will undoubtedly be created within the next several days.



Share Pin

Recent Images 9 total


Recent Videos 0 total

There are no recent videos.




Load 24 Comments
Operation Jewtube

Operation Jewtube

PROTIP: Press 'i' to view the image gallery, 'v' to view the video gallery, or 'r' to view a random entry.

This entry contains content that may be considered sensitive to some viewers.
This submission is currently being researched & evaluated!

You can help confirm this entry by contributing facts, media, and other evidence of notability and mutation.

It was first created by 4chan.org's /b/ board to generate permanent comments. This generated a scrolling marque of red text, along the comment screen. This also deleted every previous comment, and deactivated every embedded link (This did not include the video and surrounding play/pause buttons, but the subscribe, post comment and other similar buttons). The example in the shown picture was the comment section of Justin Bieber's Baby Ft. Ludicrous. The code used to hack youtube was a cross-site scripting (XSS) vulnerability in the comment and video title sections of Youtube.

The date coincided with the 4th of July, and spread rapidly. The comments began as random insults to one or more people/videos, but began posting the phrase "Expect Us". One key side effect, however, was that this code disabled the ability to flag any video. This soon led to multiple users posting porn videos, disguised as titles such as "Justin Bieber". The complexity of the scrips grew to even javascript alerts such as "Justin Bieber has died in a horrific car accident. Please visit CNN.com for more information". Ironically, one of the only safe video/channels was the Scientology Channel, which required the comments to be reviewed before posting, leading to an immediate detection/removal of the malicious comments.

One of the later threads on /b/ discussing this incident was archived and is currently being viewed by the moderators. The picture of the thread had a trollface bursting through the Youtube icon, followed by flames. The title of the thread was originally Operation Jewtube, but was changed to Operation Porn Jewtube during the 2nd thread. The attack originally generated much lulz, however, due to the inanity of many statements, and the inconsistency of them, it failed to do much besides annoy Youtube and it's users. Only during the 2nd and 3rd threads did the comments became consistent, reading "Expect Us". 4chan raiders also posted comments such as "Ebaum was here" leading to much speculation to who caused the raid.

As of now, most of the affected videos have enacted a "Safe Mode" for comments, hiding them and not allowing any scripts to be run. Jay Nancarrow, a google spokesman, had released this statement:

"We took swift action to fix a cross-site scripting (XSS) vulnerability on youtube.com that was discovered several hours ago. Comments were temporarily hidden by default within an hour, and we released a complete fix for the issue in about two hours. We’re continuing to study the vulnerability to help prevent similar issues in the future."

This has ended most of 4chan's hacking/spamming of youtube.com.

Currently, there is no ED page, however one will undoubtedly be created within the next several days.

Recent Videos

There are no videos currently available.

Recent Images 9 total



+ Add a Comment

Comments (24)


Display Comments

Add a Comment