vx-underground
46K subscribers
3.95K photos
420 videos
83 files
1.44K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
Hello, how are you?

Selling merchandise has been an extremely painful task. We profit almost nothing from merchandise, roughly $5 per item sold, because it is all handled by an external manufacturer

When individuals are upset over merchandise, and request a refund, we lose A LOT of money which we already do not have.

We will be closing the merch store soon due to frequent refunds. We are losing money right now.
😒183🀣10❀9🫑9😁5πŸ‘3
vx-underground
Hello, how are you? Selling merchandise has been an extremely painful task. We profit almost nothing from merchandise, roughly $5 per item sold, because it is all handled by an external manufacturer When individuals are upset over merchandise, and request…
A few notes:

1. The store will come back at a later time. We need to assess our ability to sell merchandise, at a reasonable price, and doesn't financially hurt us.

2. We will still be selling harddrives on the store (when they're back in stock)

tl;dr customer support is dumb
❀75🫑17❀‍πŸ”₯4
The United States government has placed a $10,000,000 bounty on the leaders of ALPHV.

Additionally, any individual conspiring to participate in or attempting to participate with ALPHV has a bounty of $5,000,000.

https://www.state.gov/reward-for-information-alphv-blackcat-ransomware-as-a-service/
🀯74🀣20😱18πŸ‘9πŸ₯°7πŸ”₯6❀4😒3πŸŽ‰2
Today the United States Department of Justice was busy.

1. Vyacheslav Igorevich Penchukov a/k/a Tank was arrested. He was allegedly involved in the Zeus botnet and IcedId banking trojan

2. Mark Sokolovsky, developer of Raccoon Stealer, is scheduled to be extradited to the United States from the Netherlands

3. The Department of Justice announces the disruption of a botnet operated by the Russian GRU a/k/a APT28
🫑83🀣28😒17😱14❀3πŸ‘2πŸ‘1πŸ€“1
We've updated the vx-underground crime section. We have added dozens of court cases, past and present.

We have a lot of work to do:)

https://vx-underground.org/Crime/Legal%20Rulings
πŸ‘30❀10πŸ”₯7πŸ’―7πŸ‘6
Believe it or not, this is not a Unicode error. This is the child of a SQL developer
🀣183😱18🫑10πŸ€“6❀3πŸ”₯3🀯2πŸ‘1πŸ‘1
An individual online reported unusual activity when trying to charge their sex toy.

tl;dr vibrator downloads Lumma stealer?

https://tria.ge/240215-xvx86seb91
🀣230🀯18❀8πŸ€”5😁3🫑3❀‍πŸ”₯2πŸ”₯2πŸ₯°2😱1🀩1
It is Sunday. Today is a day for rest.

See ya tomorrow
πŸ‘62πŸ€“24❀15πŸ™14❀‍πŸ”₯4🀣4πŸ˜‡4🀯1
Today an unknown individual uploaded what appears to be sensitive Chinese government documents... to GitHub. They're labeled "IS00N".
😱67πŸ”₯18πŸ‘11πŸ€”4🀣2πŸ‘1
vx-underground
Today an unknown individual uploaded what appears to be sensitive Chinese government documents... to GitHub. They're labeled "IS00N".
Researchers have already begun digging in and sharing their key findings and opinions.

That's a Monday type of thing though. It is Sunday.

We'll keep you all updated, tomorrow. Have a nice night.:)
❀47🀣19🫑5πŸ₯°3😍2❀‍πŸ”₯1😁1
tl;dr archived stuff, see link below

Earlier today a GitHub titled "I-S00N" leaked supposedly sensitive Chinese government data - specifically related to offensive cyber security.

The initial discovery, and documentation of the documents, derive from AzakaSekai_. We have archived his research and notes on the material.

It should be noted that they *probably have not covered the material in totality and more information can be expected to be released in the following days from either Azaka, or other Cyber Threat Intelligence experts familiar with Chinese state-sponsored activity.

Furthermore, the materials are written in Mandarin. We have made no attempt to translate the material to English and we do not speak Mandarin, hence we cannot provide any opinion or speculation on the material. We will leave that painstaking task to individuals who speak Mandarin, or people who feel like trying to translate the documents accurately.

What an exciting start to the week:)

You can view the archived materials here: https://vx-underground.org/APTs/2024/2024.02.18%20-%20Summary%20of%20I-S00N%20leaks
❀82πŸ‘15πŸ”₯6🫑5😁4
Someone in China is having a very bad day
πŸ’―102🀣67❀11πŸ‘7🫑7πŸ€”5🀯4😁3πŸ₯°1πŸŽ‰1πŸ˜‡1
Thank you, IS00N (allegedly APT41, state-sponsored Chinese government contractor) for the constructive feedback left for readers on GitHub.

We don't know what it means, but we're sure it is a comment thanking the leaker for their valiant efforts.
πŸ₯°107🀣78❀7πŸ‘3πŸ‘2😁1
This media is not supported in your browser
VIEW IN TELEGRAM
🀣122❀‍πŸ”₯14❀5😁3πŸ”₯2😱2🀩1
🀣201😁24❀5😱5πŸ€“2πŸ‘1πŸ”₯1
vx-underground
Photo
Okay, we'll stop memeing the Chinese APT leaks. We just had a lot to get off our chest, the absurdity of the situation is too great.

Have a nice day.
😁80🀣22🫑9❀6😒6πŸ‘2πŸ‘1πŸ”₯1
Lockbit ransomware groups website has been seized by EUROPOL.
😱113🫑52🀣32πŸ‘15😒13πŸ‘12🀯5πŸ€”1
Every single known Lockbit ransomware group website is either offline or displaying a seized by EUROPOL page.

It appears law enforcement has seized and/or taken down, at minimum, 22 Tor sites, in what is labeled 'Operation Cronos'.
🀣85❀27🀯23🫑16😱8πŸ‘6πŸ€”4❀‍πŸ”₯3πŸ”₯3😁3😍2
"We can confirm that Lockbit's services has been disrupted as a result of International Law Enforcement action - this is an ongoing and developing operation.

Return here for more information at:

11:30 GMT on Tuesday 20th Feb"
🀣68πŸ”₯15❀8🀯7πŸ‘3😒3πŸ€”2
Lockbit ransomware group administrative staff has confirmed with us their websites have been seized.
🀣123😱20🀯19🫑14πŸ‘7πŸ‘1πŸ€”1😒1πŸ’―1