vx-underground
46.1K subscribers
3.96K photos
420 videos
83 files
1.45K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
Yesterday Lockbit ransomware group listed Boeing on their victims list. Boeing is a multinational American company with an estimated annual revenue of $66,610,000,000. They have over 150,000 employees worldwide. Boeing serves both the public and private sector.

We spoke with Lockbit ransomware group administrative staff yesterday regarding Boeing. They informed us that they have not yet spoke with a representative from Boeing and they will not disclose any information to us about Boeing - more specifically they would not give us insights into how long they had access to Boeing, how much data was exfiltrated, what kind of data was stolen, etc.

Lockbit stated their ransomware affiliate got access using a 0day exploit. However, Lockbit would not elaborate further on this exploit hence we cannot verify the legitimacy of these claims.

It is also probably worth noting that most victims listed by Lockbit are given 10 days (or more) to begin negotiations. Lockbit gave Boeing less than 6 days
πŸ”₯75😱19πŸŽ‰9πŸ‘7❀2πŸ‘1πŸ’―1🀣1😎1
We received our latest paycheck from Twitter. It is a mind boggling $39.36.

We do not believe this is sufficient enough to donate to a non-profit. Instead we will use this to giveaway 3 copies of Black Mass Volume II.

We will share information on this giveaway later.
❀80πŸ”₯16πŸ‘6😱4πŸ€“4😎4🀝3
This media is not supported in your browser
VIEW IN TELEGRAM
ZachXBT, an independent cryptocurrency investigator who monitors and tracks cryptocurrency scams, received a video from a group of scammers. They got full bottle service last night, somewhere in Canada, and held a sign taunting him with "ZachXBT is watching".
😁81🀣69❀‍πŸ”₯8🀯5❀4πŸŽ‰4😒2πŸ€”1😱1πŸ˜‡1
🀣127πŸ”₯27😁15πŸ€“7πŸ‘6🀯3πŸ˜‡3😎3πŸ€”2πŸ’―2😘2
This media is not supported in your browser
VIEW IN TELEGRAM
Around July, 2023 an individual operating under the alias "Blue" and "Trout", successfully phished someone and stole $213,000 from the victim.

They subsequently paid a group of men to dance and thank the victim for the money.
🀣201😁15πŸ‘11😒11❀5πŸ”₯5
K.I.S.S. (Keep It Stupid Simple)
πŸ”₯85😎12❀4❀‍πŸ”₯3πŸ‘3
There's been a bit of a debate lately about "whoami.exe".
πŸ”₯74🀣11πŸ‘7🀝6❀3
(there's 100% more unique ways, but this is meant to be funny and illustrate the possibilities other than whoami.exe, please do not start with the ACKCHYUALLY)
😁34πŸ€“24🀣14πŸ‘1😱1
Christmas is coming early for Android malware fans.
πŸ€“50πŸ‘7❀‍πŸ”₯3😁3😱3🫑3
This media is not supported in your browser
VIEW IN TELEGRAM
Sim swappers and crypto drainers seem to dislike ZachXBT. We received an anonymous message today with this video.
🀣133πŸ’―23❀6πŸ‘4πŸ€”4πŸ€“2😁1
We've updated the vx-underground malware source code collection on GitHub.

Yesterday the source code to banking trojans Android.Hook and Android.Ermac were leaked online.

*Hook is the successor to Ermac
*Thanks to 3xp0rtblog for the code

https://github.com/vxunderground/MalwareSourceCode
πŸ‘20πŸ₯°9πŸ”₯8❀3
This media is not supported in your browser
VIEW IN TELEGRAM
ZachXBT, an independent cryptocurrency investigator who monitors and tracks cryptocurrency scams, shared ANOTHER video of cryptocurrency thieves taunting him.

The sign says "Fuck ZachXBT. Chards"

That's 3 videos now 😭
😁79🀣42❀24πŸ‘10😒8😱3πŸ’―3πŸ€”2
This media is not supported in your browser
VIEW IN TELEGRAM
"Who is 29a labs?"
πŸ€”32😒16🀣5🫑5❀3
In the spirit of Halloween we will share something with you that is truly terrifying.

*Yes, this is real game made by EA
🀯89🀣65😁7πŸ”₯5😱3❀2πŸ‘1πŸ€”1
We keep getting pinged. Yes, Boeing has been removed from Lockbit ransomware groups website.

Lockbit administrative staff informed us they removed Boeing because negotiations have begun.

We don't know anything else. It is Halloween. Cya nerds tomorrow. We're busy.
😁71πŸ‘14πŸ₯°9πŸŽ‰8😎3❀2🀣1
Yesterday ALPHV ransomware group listed Advarra, a clinical research technology company

Advarra told ALPHV quote "We do not pay digital terrorists". Additionally, ALPHV tried contacting one of their executives via text message. She told ALPHV "go fuk yourself"

πŸ˜‚πŸ˜‚πŸ˜‚πŸ˜‚πŸ˜‚
🀣212😎34πŸ‘12πŸ”₯8❀4🫑3😱1
This media is not supported in your browser
VIEW IN TELEGRAM
This one simple trick will land you a job anywhere
🀣202πŸ”₯28πŸ‘10😁7πŸ‘5❀4πŸ’―3❀‍πŸ”₯1
> "DONT DO THIS!!! THIS IS A FELONY!!!"

No shit, Sherlock. It's satire
😁69🀣24πŸ€“13πŸ‘5😱2😒2❀1πŸ€”1
We are behind schedule on almost all of our tasks. 1/2 of our staff is sick.

Seasonal changes are illegal and for nerds
😒71🀣14❀‍πŸ”₯5πŸ™5