vx-underground
46.3K subscribers
3.98K photos
425 videos
84 files
1.45K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
Axel Springer says ad blockers threaten their revenue generation model and that using an ad-blocker illegally manipulates the HTML / CSS (and other web components) thus it is infringement of their intellectual property

INSPECT ELEMENT IS ILLEGAL AND FOR NERDS
😁86🀣39πŸ€“20πŸ’―5❀4😒1
Wtf why is Tulsi Gabbard doing something we all agree is good
😁64❀18πŸ”₯8🀣5😒1
vx-underground
Wtf why is Tulsi Gabbard doing something we all agree is good
Mfw a politician does something that makes sense
🀣60πŸ‘12πŸ”₯4❀2πŸ‘1😒1
Saw some report on a information stealer named MaksStealer, or MaksRat, or something.

Written in Java, multi-staged, delivered from some Minecraft place. The dude makes it pretty clear he's just a kid, probably around 17 years old. He seems pretty happy Threat Intelligence and Malware Analysts have looked at his work.

Proud of you, kid. You shouldn't facilitate crime and steal peoples identities and/or credentials, or operate a Malware-as-a-Service campaign, but the code looks pretty solid. You get a cat for being a clever kid.
❀92😁26πŸ”₯12😘4😒1😍1
Yesterday Seamus Hughes shared with us the recent court records on RapperBot which was operated (in an undefined capacity) by a United States citizen named Ethan Foltz.

Foltz was successfully identified by the United States Federal Bureau of Investigation when they discovered Mr. Foltz has purchased (rented) infrastructure in the United States (in the state of Arizona) under the moniker "Seth Rogan".

However, Mr. Foltz paid for the infrastructure using his PayPal. Upon this discovery, the FBI subpoenaed PayPal which unveiled his name, as well as personal Gmail accounts. The FBI then subpoenaed Google as well as the ISP they believed Mr. Foltz to be using.

Upon receiving data from Google regarding Mr. Foltz they discovered some interesting things.
- The source code to RapperBot in his Google Drive
- Search history including: "x86 x priv escalation linux", "poplin router firmwar", "poplin firmware reverse", and other incriminating searches
- Search history indicated Mr. Foltz frequently searched "RapperBot" to monitor discussions of the RapperBot operation
- Search history of Google Dorks on the RapperBot panel, looking for potential misconfigurations

When the FBI made contact with Mr. Foltz court records indicate he complied with every request they made. This includes allowing the FBI to perform test DDoS attacks against FBI controlled infrastructure to review botnet bandwidth capabilities.

Despite Mr. Foltz being an adult, having an estimated 300,000 IoT devices infected from his RapperBot botnet, conducting DDoS attacks against an approx. 370,000 targets (18,000 unique targets), making an undisclosed amount of money, and (basically) admitting guilt by allowing the FBI to use his botnet for testing, Mr. Foltz has RECEIVED ONLY ONE CHARGE.

He has received 1 count of aiding and betting computer intrusions which carries a maximum of 10 years in prison. However, as noted by the Department of Justice, "a federal judge will determine any sentence after considering U.S. sentencing guidelines and other statutory factors"
🀣56❀7πŸ‘5πŸ€”1😒1
vx-underground
Yesterday Seamus Hughes shared with us the recent court records on RapperBot which was operated (in an undefined capacity) by a United States citizen named Ethan Foltz. Foltz was successfully identified by the United States Federal Bureau of Investigation…
No idea what he did, but he some how managed to evade a nuclear bomb of a charge. They could have gotten him on wire fraud, identity theft, money laundering, etc. What the fuck did he do to only catch one charge???
❀29πŸ€”14🀣13🫑2😁1😒1
vx-underground
No idea what he did, but he some how managed to evade a nuclear bomb of a charge. They could have gotten him on wire fraud, identity theft, money laundering, etc. What the fuck did he do to only catch one charge???
Maybe the FBI just thought he was silly and thought, "Well, he likes Seth Rogan. That's kind of cool. Let's go easy on him".
❀25😁16🀣10πŸ‘5😎3🀩2😒1
Noah Urban a/k/a King Bob, alleged member of Scattered Spider, was sentenced earlier today to 10 years in Federal Prison for his crimes performed with the group. Additionally, he has been ordered to pay $13,000,000 in restitution.
❀27😒14😁9🀣8πŸ‘4😘2😱1
Lots of news circulating today from Russia Today and their exclusive with "hacker group" Killnet.

Killnet claims to have compromised the Ukraine government and alleges information discovered in this data breach shows Ukraine has suffered 1,700,000 casualties in their war against Russia which began February, 2022.

Ukraine has a population of approx. 38,000,000

I find it incredibly suspicious Russian state-sponsored media would accept information from a suspected Russian state-sponsored hacktivist group and would assert Ukraine has lost nearly 5% of its population.

As of this writing, the war has been continuing for 1,274 days. This means, according to Killnet and Russia Today, the Russian military is killing on average 1,330 Ukrainian soldiers a day.

The largest terrorist attack on American soil, the September 11th, 2001 attacks, resulted in the loss of 2,997 lives. Russia Today is asserting the Russian military is killing nearly the same number of September 11th victims every 2 days.

Absolutely preposterous numbers, completely detached from reality.
❀74😁22🀯12🀣7🫑5πŸ€“4πŸ€”3πŸ’―3πŸ‘2😱2😎2
Oh, God. Please help me. I did DRIVERQUERY /V and have found dozens upon dozens of kernel modes. Oh, Lord. Save me from the ROOTKITS and BOOTKITS. Oh, sweet baby Jesus

They (the Illuminati) even managed to ROOTKIT me with BEEP.
🀣61❀8πŸ€“7❀‍πŸ”₯1😒1
Was hanging out with my new born baby boy. Heard my wife scream bloody murder. I safety put down the baby, run into living room, and see some weird thing flying around.

Absolutely terrified, I killed an animal today concerned it might harm my baby. I'm a murderer:(
😒128🀣13❀9πŸŽ‰6😱3🫑3πŸ€”2πŸ™2🀝1
Recently some people reported EUROPOL had placed a $50,000 bounty on Qilin ransomware group. However, Eduard Kovacs quickly ascertained this was false after speaking with EUROPOL regarding the so-called bounty.

tl;dr Threat Actor runs counter-intelligence op. Good photoshop
🀣65❀6πŸ€“3πŸ”₯2🀝2😒1
I've said it once and I'll say it again.

People with anime profile pictures are the most dangerous people on the internet.
🀯44🀣33❀11😎9πŸ₯°8πŸ‘6πŸ‘3😒3🀝1
Chat, is this true?
❀114πŸ₯°31πŸ‘21πŸ’―7πŸ€”4🀣4❀‍πŸ”₯3πŸ”₯3🀝2😒1
Smart kitty
❀61πŸ₯°8πŸ”₯4πŸ‘3😒1
Fuzzing continuing fuzzingly.

Over 100 potentially vulnerably drivers identified.

amd_dpfc is especially cool and badass. There is no CVEs or alerts on it, probably worth looking into.
πŸ”₯42❀11😒5πŸ€”1
INTERPOL ran a massive operation dubbed "Operation Serengeti 2.0".

tl;dr the EU squad came and arrested a bunch people in Africa for committing cybercrime for so long with zero repercussions.

Dawg, they arrested 1,209 people. They're sweeping entire blocks of people
🀣37❀27🀯17❀‍πŸ”₯4πŸ”₯2🀝2😒1
Some kind of drama happening on Reddit. Some internal changes about moderating

In summary, they're restricting how many subreddits an individual person can moderate. Their actions is to prevent power-mods, or something.

Info via reddit_lies
🀣66❀10😒6πŸ‘3πŸŽ‰1