vx-underground
47.6K subscribers
4.12K photos
440 videos
84 files
1.49K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
As Microsoft tightens loose ends and macro-based malware droppers become more difficult for Threat Actors to leverage - data traffickers are increasingly abusing SEO poisoning and/or malvertising.

Intel via malwrhunterteam & wdormann
๐Ÿ‘27๐Ÿคก6๐Ÿ˜ˆ2
We are happy to announce the latest sponsor to vx-underground: GuidedHacking.

GuidedHacking is a game hacking educational website - they're the individuals who published the "Game Hacking Bible"

GuidedHacking would like to note that they are the best penis enhancement pills.
๐Ÿ”ฅ43๐Ÿ†’8๐Ÿคก2๐Ÿ‘1๐Ÿ˜ˆ1
The United States Department of Justice is scheduled to make an announcement at 12PM EST regarding an International Cryptocurrency Enforcement Action

The broadcast will begin in 55 minutes.

https://www.justice.gov/live
๐Ÿคก2๐Ÿ˜ˆ2๐Ÿคช2
Someone sent us an image of their IDE. They said they believed the contrasting colors helped their vision.
๐Ÿฅด49๐Ÿคฎ29๐ŸŒš7๐Ÿ”ฅ6๐Ÿคก5๐Ÿ‘4๐Ÿฅฐ3๐Ÿ˜2๐Ÿคฏ2๐Ÿ˜ˆ1๐Ÿ—ฟ1
The Department of Justice has announced the arrest of Anatoly Legkodymov. Legkodymov, the Founder and Majority Owner of Bitzlato Ltd, is accused of laundering more than $700,000,000 in illicit funds from ransomware groups and Hydra Marketplace

More info: https://www.justice.gov/usao-edny/pr/founder-and-majority-owner-bitzlato-cryptocurrency-exchange-charged-unlicensed-money
๐Ÿซก18โšก4๐Ÿคก3๐Ÿ‘2๐Ÿ˜2๐Ÿคฌ1๐Ÿ˜ˆ1
Multiple Threat Intelligence and Anti-virus vendors have noted the rise of the MaaS Rhadamanthys Stealer. Rhadamanthys is noted as trafficking itself through malicious Google ads targeting AnyDesk, Zoom, Bluestacks, Notepad++, OBS, and more.

It also has a hard to remember name
๐Ÿ˜22๐Ÿคก8๐Ÿคฃ4๐Ÿ‘3๐Ÿ˜ˆ1
This media is not supported in your browser
VIEW IN TELEGRAM
Interview with a Russian ransomware operator arrested in Russia for attacking Western organizations
๐Ÿคก26๐Ÿ˜17๐Ÿ‘5๐Ÿ”ฅ5๐Ÿ‘Œ4๐Ÿ‘1๐Ÿณ1๐Ÿ˜ˆ1
2023 is going to be a big year for vx-underground. Besides the continual increase in malware samples, source code, and papers, we also intend on publishing 2 (maybe even 3!) books.

Also, as a reminder, we offer free malware database access to students of all ages

We are also discussing changing the website (again) to accommodate it's growth. Pages are too big and have too long of lists. The website will remain as grungy HTML, no flashy BS, WordPress, whatever. We just need to be better organized.

Have a nice day.
๐Ÿ‘36๐Ÿ”ฅ7โค5๐Ÿฅฑ3๐Ÿคก1๐Ÿ˜ˆ1
T mobile confirms it was breached (again) for the 6th.. or 8th time? Since 2018? We've lost count.
๐Ÿ”ฅ31๐Ÿคก11๐Ÿ‘4๐Ÿคฃ1๐Ÿ˜ˆ1
As Threat Actors continue utilizing Google-based malvertising campaigns - vx-underground has decided to step up to the plate and unveil a 1 of a kind solution to stop these nerds. Introducing ... an adblocker!

tl;dr we've done it, we've stopped cyber crime and saved the planet
๐Ÿ˜32๐Ÿคฃ15๐Ÿ‘7๐Ÿ‘2๐Ÿคก2๐Ÿ˜ˆ2๐Ÿคฏ1
Threat Actors when they see Google has laid off 12,000 employees, some of which are probably responsible for Google adwords
๐Ÿคฃ23๐Ÿ‘18๐Ÿ”ฅ2๐Ÿ˜ˆ2๐Ÿคก1๐Ÿฅฑ1
Current projects:

- Papers will be listed with an associated date of release (see attached image below)
- Continue archiving "The Old New Thing"
- Work on syncing data with HatchingTriage and HybridAnalysis
- Give more people access to our Malware Database
๐Ÿ‘10๐Ÿคก1๐Ÿ˜ˆ1
People new to Information Security will put literally anything on their LinkedIn to get more credibility
๐Ÿคก45๐Ÿ˜16๐Ÿ‘6๐Ÿ‘3๐Ÿฅด2๐Ÿ”ฅ1๐Ÿฅฑ1๐Ÿ˜ˆ1
Recently an incredibly large Information Security company contacted vx-underground about sponsoring us.

As you can see from the attached image below - we are the pinnacle of professionalism.
โค77๐Ÿคก10๐Ÿ‘9๐Ÿ”ฅ6๐Ÿ˜4๐Ÿ‘3๐Ÿ•Š3๐Ÿ˜ˆ2๐Ÿฅฐ1
We have closed the Telegram chatroom. Too many people argued, evaded the rules, or continued to express racist ideologies. We do not have the time or resources to moderate a chatroom closely.

tl;dr you nerds couldn't behave and now it is closed.

Have a nice day.
๐Ÿ˜ข87๐Ÿคก67๐Ÿ‘24๐Ÿ˜21๐Ÿ’”10๐Ÿ‘Ž9๐Ÿคฌ8๐Ÿ•Š5๐Ÿ”ฅ4๐Ÿฅฐ2๐Ÿ˜ˆ2
Grand Theft Auto V has been assigned CVE-2023-24059 for containing a partial Remote Code Execution exploit

More information: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-24059

Grand Theft Auto Online community discussion: https://www.reddit.com/r/gtaonline/comments/10hsosu/mass_reporting_the_dangerous_pc_exploit/
๐Ÿคฏ35๐Ÿ‘9๐Ÿคก4๐Ÿ’…3โค2๐Ÿ˜ˆ1๐Ÿ˜จ1
The newest @nico_n_art swag is absolutely disgusting

*not vx-underground merchandise
*purchases of this merchandise DOES NOT support us
*purchases of this merchandise DOES support our friend

https://transi.store/
๐Ÿคก20๐Ÿ‘Ž8๐Ÿ”ฅ8๐Ÿคฃ4๐Ÿ‘3๐Ÿ’‹2๐Ÿ˜ˆ1