Investigating Discord's Fake Verify QR Code SCAM!

preview_player
Показать описание
Discord has been a haven of scams and frauds. In this video I'm going to show you how a widespread scam functions. I'll show how it steals discord accounts and mass DMs everyone on your friends list. I'm going to show you how this discord scam works when someone scans the QR code. I'm going to show you who is behind the scam and who programmed the bot. I'll also update you on what Discord is doing about this scam and how this scam could potentially be stopped.

Once again, do not scan any QR code using your Discord app unless you are trying to log in. If you don't listen to this warning, you will get your discord account token logged and you will become one of the many people that have been hacked.

Something something subscribe please so I can steal a play button from youtubes.

LINKS
-----------------------------------------------------------------------------
Discord Report Form

SOCIALS
-----------------------------------------------------------------------------
Discord Server

TIMESTAMPS
-----------------------------------------------------------------------------
00:00 - Start
00:14 - Recap: What is the Scam
00:55 - What happens when the QR code is scanned
02:37 - Who is behind this scam?
04:04 - What is Discord doing about this scam?
06:05 - How do we stop this scam?
09:57 - Outro

MUSIC
-----------------------------------------------------------------------------
C418 - Minecraft - Volume Alpha (Minecraft music)
Trance Music for Racing Game by Bobby Cole (Dream Speedrun Music)
Рекомендации по теме
Комментарии
Автор

i love that there’s minecraft music in the background

vexirale
Автор

Fun Fact: They don't actually get banned, they use an alt and give ownership to the server, because when discord removes a server, it permanently bans the one who owns it from discord.

karitalganger
Автор

They already "scan" images for being inappropriate, so I wonder how hard it would be to add a QR reader to that and if it's a 2FA link then uh oh, block that shit.

immortalaxolotl
Автор

If this has happened to you. Reset your password ASAP! They get your discord token and they can login to your account. When you reset your password the token will reset as well and the hackers can’t login anymore. Discord has said this them selves. I hope this helps y’all.

remcobosma
Автор

Props to you for bringing awareness to this scam, I almost fell victim to this!

toasty
Автор

Even if discord stops this scam people will eventually come up with new scam ideas
Which is why I agree that there should be a penalty for malicious behavior

solareclipse
Автор

Discord needs to retire the QR code feature. I think it's causing more damage than it is helpful.

the_synack
Автор

I fell victim to this scam, but I got my account back before they changed the email to it or anything so I would lose it completely. Thank God my nitro was paid for by a empty prepaid visa card. Only thing bad that happened that I was sad about is that people I friended but didn't have a mutual server with could have fell victim to the scam and I would have never known.

stayednateman
Автор

I love how the QR code on the thumbnail brings you to this video. You missed a perfect chance for a rickroll

SuchtiAT
Автор

This morning a friend sent an invite to a server with the message: check what happened in #general, i cant believe it!. So i joined the server because i was curious but i saw i needed to verify. Luckily i was on discord mobile so i couldnt scan the QR code with my phone because i already was on my phone and i was too lazy to open discord on my laptop. First time that being lazy actually helped for me

jorisbeugen
Автор

Online scamming should be against the law and it should result in active punishment irl. Scammers are just too confident that they won't get any consequences from their actions.

ToastyStuff
Автор

the fact the qr code in the thumbnail isn't a rickroll is a missed opportunity

lukewarm
Автор

Honestly the best solution Discord could do, even though I really don't want the images to be scanned (although its probably already happening...), is for Discord's Image API to find QR codes within images and cross verify them with their authentication system to prevent it. The QR code login feature is fantastic but since its been introduced its been used for so many scams.

Although it may take a year(s) for them to actually implement it but thanks for bringing attention to it!

importprogram
Автор

Two things:
2FA doesn't prevent token logging whatsoever (some people think this)
You can't just scan a QR code and get immediately token logged. A token logger runs on your computer, and if it was possible to scan a QR and a program run on your computer without any intervention from you, I'm very sure that the hackers could do way more. What normally happens is either the QR code is a login from phone, and even then, Discord has a warning to not scan QR codes you don't trust, or it redirects to a fake Discord login screen, and that is easy to catch out with the URL being different.

Too many people think that if you click a link/scan a QR you get instantly hacked, which is completely untrue.
Edit: Token logging works, regardless of if you have 2FA on your account.

gtxg.
Автор

Couldn't discord just have a bot scan every image to see if it contains a login QR code? They already scan for pornographic content which im guessing is a lot more resource intensive than just checking a QR code.

benaubrey
Автор

You definitely earned a sub, you teached and showed me things of the most important which no other youtuber would ever do

thewizardbrand
Автор

I just subscribed because all you are saying is true. I love that you are talking about this. You are the only YouTuber who does that. Thanks.

sahomes
Автор

Imagine if this dude is behind the scam the entire time and he’s making these videos to cover it up lmao. This prolly isn’t right but imagine

BILBRB
Автор

Discord should have a sort of test to help you better understand. I remember an update came to adopt me while I was monitoring my little sister on it, and it was a whole thing you had to go through to understand what kinds of scams there are and prove you know how to avoid them. Nothing annoying or too long, just something you have to go through in order to make an account. Personally, I'm very good at not falling for scams, but some people are not.

A server owner everybody trusted was warning people about a scam, and pinged *everyone* with the link to the scam. Some people didn't see the part telling them not to click it, and multiple people lost their accounts, it took us a while to get some back but we didn't recover them all.

god_._the_better_version
Автор

I'm so glad nothing happened to me when I fell for this, guess I was just really fast in changing my password and removing my billing info

zanesnep