vx-underground
47.7K subscribers
4.16K photos
443 videos
84 files
1.49K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
The newest @nico_n_art swag is absolutely disgusting

*not vx-underground merchandise
*purchases of this merchandise DOES NOT support us
*purchases of this merchandise DOES support our friend

https://transi.store/
🀑20πŸ‘Ž8πŸ”₯8🀣4πŸ‘3πŸ’‹2😈1
Due to the absurd volume of people DMing me - we have re-opened the chatroom. We are in search of moderators who will actively monitor chatroom and nuke nerds who disobey the rules.

Here, have your dumb chatroom back, please stop asking us about it: https://t.iss.one/+80U_oTH2thk3ZDYx
😁28πŸ‘6🀑5πŸ•Š3😈1
APT groups do not need to commit espionage to monitor foreign military threats. All that is required is making a WarThunder forum account
😁28❀4πŸ‘1🀑1πŸ’‹1😈1
January 18th: Microsoft announces 10,000 employees will be terminated

January 23rd: Microsoft to invest $10,000,000,000 into ChatGPT
🀣101πŸ—Ώ16❀10πŸ’©6🀑3πŸ‘2πŸ₯°1πŸ€”1🀯1πŸ₯±1😈1
Yesterday someone claimed to have successfully breached vx-underground.

They sent us footage of the attack. We have no idea what is going on in this footage.

Video link: https://streamable.com/6nnhd3
🀑56πŸ₯±6🀣6πŸ€ͺ4πŸ‘1😁1😱1🐳1😈1
Google malvertising campaigns are becoming an increasingly widespread (and seemingly effective) method of initial access.

Researchers 1ZRR4H and malwrhunterteam have identified malware campaigns for Ursnif, Redline, Cobalt Strike, and Rhadamanthy in Google ads.
πŸ‘9😈4
As we mentioned a few days ago, corg_e and Nico_n_art would result in some weird mixture of traditional vx-underground dark art with kawaii, or something weird, whatever

*Images via Nico_n_art inspired by corg_e
πŸ”₯32❀12🀑7πŸ‘5πŸ’©5πŸ₯°3🀯2πŸ†’2πŸ₯±1😈1
This media is not supported in your browser
VIEW IN TELEGRAM
As more and more people discuss malicious Google ads we have decided to produce a small video illustrating how malvertising campaigns deploy malware to steal user data
🀣32πŸ‘5😁3🀑3😈1
We've updated the vx-underground "InTheWild" collection. We have added volumes 0030 - 0034. It is 100,000 new and unique malicious binaries.

Special thanks to petikvx and our mystery donor for the samples.

Check it out here: https://samples.vx-underground.org/samples/Blocks/
❀15😈1
"someone is going to hack vx-underground and upload malware onto it"

lol sweet free malware
🀣77πŸ₯°13😁7🀑3πŸ‘2πŸ”₯2🌚2πŸŽƒ2🀩1😈1
Channel photo updated
Several days ago Riot Games announced they were victim to a "social engineering attack". They stated they were being extorted for $10,000,000. Riot Games refused to pay the ransom

The source code to League of Legends is now up for sale online
πŸ€ͺ50πŸ‘5πŸ‘3😈2
We are currently speaking with the individual responsible for the breach on Riot Games.

They have informed us they have also stole Riot Games anti-cheat, Packman. Packman is the anti-cheat for both Valorant and League of Legends.
πŸ”₯65😁5🀣5πŸ‘3😈2❀1
The individual responsible for the Riot Games breach has given us more information

- Social engineered an employee via SMS
- Initial goal was stealing Vanguard
- They pivoted through the network, was unable to get Domain Controller
- SOC detected them in approx. 36 hours
πŸ’…37πŸ‘9😈6
vx-underground
The individual responsible for the Riot Games breach has given us more information - Social engineered an employee via SMS - Initial goal was stealing Vanguard - They pivoted through the network, was unable to get Domain Controller - SOC detected them in…
- They did not deploy any malware to the network
- Managed to escalate privileges by social engineering a company director
- They stated they would not give us more information at this time, more information will be shared in the following days

There is your free DFIR report
❀41πŸ‘6πŸ’‹4πŸ‘2⚑1😈1
Last update for the Riot Games breach. Here is the file directory listing of (some) of the exfiltrated data.

Goodnight (or good morning to some of you).
πŸ”₯30πŸ‘9πŸ†3😈1
This media is not supported in your browser
VIEW IN TELEGRAM
Threat Intelligence the second a significant breach occurs
🀣65🀑8😈3😁2πŸ‘1