PewDiePie Promoted by Hackers Exploiting Router UPnP Vulnerability to Hijack Chromecasts

Advertisement
By Aditya Shenoy | Updated: 3 January 2019 18:25 IST
Highlights
  • Routers with poor UPnP implementation affected, Google said
  • Hackers suggest switching off UPnP for affected users
  • PewDiePie promoted in a video shown during the hack

PewDiePie is being promoted in a hack targeting Google Chromecast dongles

Photo Credit: The Verge/ TheHackerGiraffe/ YouTube

PewDiePie vs T-Series saga continues, with hackers exploiting a router vulnerability to target Google's streaming dongle, with the aim to promote the YouTuber. Thousands of Google Chromecasts, Google Home smart speakers, and smart TVs with inbuilt casting support have been targeted for two ostensible reasons - to show people that their devices are vulnerable, and second to promote PewDiePie. This hack casts a video on the Chromecast or a connected TV promoting the YouTuber. The hackers are able to pull this off by taking advantage of vulnerabilities on some routers. These let the hackers access connected devices like the Google Chromecast, Google Home smart speakers, or smart TVs, and then cast the video.

Chromecast users have reported seeing a video on their televisions playing a YouTube video on loop. It also displays a warning sign stating that “Your Chromecast/Smart TV is exposed to the public internet and is exposing sensitive information about you!” HackerGiraffe and j3ws3r have taken credit for the hack, though a separate tweet absolves the former. Both also claimed to be behind a hack in November that forced printers to print out messages asking people to subscribe to PewDiePie.

The video has since been pulled by Google, for "violating YouTube's policy on spam, deceptive practices, and scams." As for the number of hacked devices, the website for the attack claims over 21,000 devices have been made to show the video, with over 24,000 devices "exposed" at the time of writing. The website also claims that the hack isn't just to promote PewDiePie, but to also warn people of the vulnerability - "We want to help you, and also our favorite YouTubers (mostly PewDiePie). We're only trying to protect you and inform you of this before someone takes real advantage of it," the website reads, adding that they desire users fix their devices first, and "also subscribe to PewDiePie on YouTube! Also Pyrocynical, Dolan Dark and grandayy. Don't forget good ol' Keemstar!

Advertisement

These hackers are said to be capable of doing this by exploiting a vulnerability related to Universal Plug and Play (UPnP) on a few routers. The UPnP feature is intended to help smart devices like Google Chromecasts, Google Home Smart Speakers, Smart TVs, network printers to discover each other on the same network. UPnP is not intended to provide access to other devices on the Internet to your local hardware. However, if UPnP isn't properly implemented on the router then it could expose these connected devices to the Internet.

Advertisement

In a statement to The Verge, Google said that there is no vulnerability with the Chromecast but with the routers of the people affected by this hack. Both Google and the hackers suggest affected users to turn off UPnP in their router settings to stop this unauthorised casting. The hackers add that users who are "port forwarding ports 8008/8443/8009: should stop doing so.

While warning users about the vulnerabilities of their routers, the hackers have used this hack to promote PewDiePie. The famous YouTuber has the most subscribed channel, but has been fighting Indian record label T-Series for the crown.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Xiaomi's HyperOS 3 Update Is Rolling Out to These Phones, Tablets
  2. OnePlus 15R, OnePlus 15R Ace Edition Launch Today: All You Need to Know
  3. Filmfare OTT Awards 2025: Check out Full List of Winners
  4. OpenAI Says ChatGPT Will Soon Become an Operating System
  5. Astronomers Witness Longest-Lasting Gamma-Ray Burst in History, 8 Billion Light-Years Away
  6. Dhruv64: India's First Homegrown 64-Bit Dual-Core Microprocessor Unveiled
  7. Nothing Phone 3a Lite Review: The Best Mid-Range Design
  8. Honor Power 2 Key Features Leaked; Could Launch With a 10,080mAh Battery
  9. Realme Narzo 90 Series With 7,000mAh Battery Launched in India: See Pricing
  10. Microrobots smaller than a millimeter can think and act on their own
  1. OnePlus 15R, OnePlus 15R Ace Edition Launching Today: Know Price in India, Features, Specs and More
  2. Astronomers Witness Longest-Lasting Gamma-Ray Burst in History, 8 Billion Light-Years Away
  3. Sub-Millimeter Robots Can Sense, Think, and Act Autonomously, New Study Finds
  4. Earth’s Atmosphere Has Been Leaking Onto the Moon for Billions of Years, Study Finds
  5. New Orbital Clues Reveal How Hot Jupiters Moved Close to Their Stars
  6. Heartiley Battery Out on OTT: Know Where to Watch This Tamil Sci-Fi Series Online
  7. Raat Akeli Hai: The Bansal Murders OTT Release Date: When and Where to Watch it Online?
  8. Private Satellites Pinpoint Methane Emissions from Oil, Gas, and Coal Facilities Worldwide
  9. Ishq Vishk Rebound Out on OTT: Know Where to Watch This Rohit Saraf Starrer Romcom
  10. Theeyavar Kulai Nadunga Now Streaming Online: Where to Watch This Dark Psychology Thriller
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.