fbpx

Streaming site Brand New Tube sees massive data breach with IP addresses and names of users revealed

BrandNewTube which was established in the UK as an alternative to YouTube has been hit with a massive security breach.

We have been contacted by a number of users who have received an email that reveals users details, gender, email and IP addresses.

The email also specifically mentions Mohammad Butt and Sonia Poulton criticising them for not taking the relevant action on it. Sonia Poulton is the popular host of Rise and Mohammad Butt is listed as the Sole Director of the Company BrandNewTube Ltd.

Hello………,

We are writing to you as “threat actors” to inform you of an attack the BrandNewTube operators refused to disclose themselves.

The site was impacted twice by attacks in 2020 and 2022 that resulted in the database being publicly posted on an online forum for everyone to freely download. Both were never disclosed. The link to that is……

Meanwhile, site operators have repeatedly tried to hide the fact that the site was indeed compromised, let alone twice, going as far to say that only “email data” had been leaked. This is plain wrong. The first concern Sonia had was implicating herself and her terrible show at the center of the attack, 3 separate times.

– Your username is ………. and you’re a male
– Your email address is…………..
– Your IP address is …………..
– Your password hash is…..  Your real password is…..

Mohammad Butt and Sonia Poulton were warned about these site issues 2 years ago, and promptly ignored the disclosure. They only care about the publicity and money made from this platform and nothing more. It’s highly likely that they don’t even believe in the stuff they say anymore, but it’s too profitable to give up the lie.

I don’t care what your politics are; whether you perceive the WEF or NWO as a threat or not. I advise you to not use BrandNewTube and instead switch to another platform that actually cares about it’s users.

Fun fact: BrandNewTube is not a censorship-resistant platform. We have accounted for over 1300 banned words, and many users banned on flimsy grounds.

[1] A “hash” is a one way, irreversible set length string comprised of an original set of text. It is typically used to ensure you cannot retrieve your plaintext password in the event of a breach.

However, BrandNewTube used an insufficient algorithm, SHA-1, which made it easy to “crack” many of the hashes and retrieve the original text.

Others have commented on their twitter account:

 

It does appear that on some forums all of this information has been leaked publicly in Zip Code files and we have reached out to BNT for comment. They have stated on their twitter account that they will be back bigger and better in the future but as of time of writing the site is completely down.

Sonia Poulton has just posted the following:

Leave a Reply

-->