vx-underground
47.5K subscribers
4.1K photos
438 videos
84 files
1.49K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
yx6HByVP3gAxmF97cpf7uLTN9iaTyFe3sXjsLf+IbGYogJf4lHItWphTW98ZjRpnLmi9SUizL8jGWLlfUQhtP3ocBWOYQbfFzilxgAZzdg0usZvAb7WvlITSUsbn9E4Y4ffzh4sODejXmdsr8oIiDA==
πŸ€”15🀯9πŸ₯°3🀑3πŸ‘2😈2
We've updated the vx-underground Windows malware paper collection

- 2022-09-26 - Sacrificing Suspended Processes
- 2023-02-01 - Weird things I learned while writing an x86 emulator
- 2023-02-07 - Lets Make Some OneNote Phishing Attachments

https://www.vx-underground.org/windows.html
πŸ₯°11πŸ‘6❀1🀩1🀑1🍌1😈1
😁43πŸ’Š12🍌8🌭5🫑3πŸ†’3😍2🀑1😈1
Exciting to see search engines implement ChatGPT, or something similar, into their products. It will be exciting receiving disinformation, propaganda, or advertisements from the highest bidders
πŸ₯°53πŸ‘7🀑6🫑3πŸ’―2🀣1😈1
The absolute state of "hack tools". Hahahahaha. Image courtesy of malwrhunterteam
🀣57πŸ‘10❀3πŸ™Š2πŸ”₯1πŸ’©1πŸ‘Œ1😈1
Reddit was breached February 5th - the threat actors were able to exfiltrate internal documents and source code. Reddit confirmed the attack was conducted via a spear-phish.

Reddit is currently doing an AMA regarding the incident:
https://www.reddit.com/r/reddit/comments/10y427y/we_had_a_security_incident_heres_what_we_know/
πŸ‘18😁9πŸ¦„5πŸ™Š2πŸ€”1😈1
vx-underground
Reddit was breached February 5th - the threat actors were able to exfiltrate internal documents and source code. Reddit confirmed the attack was conducted via a spear-phish. Reddit is currently doing an AMA regarding the incident: https://www.reddit.com/…
We would like to advise companies, of any size or demographic, to not hold public "AMAs" following a breach. The questions and comments presented by users on Reddit are ... interesting... posing questions such as "Why didn't the employee use a password manager?"
😁16πŸ™Š6⚑1πŸ‘1πŸ”₯1😈1
This media is not supported in your browser
VIEW IN TELEGRAM
Modern day cyber security explained featuring:

- Reddit
- Microsoft (Bing)
- Rockstar Games
- NVIDIA
- Okta
- Uber
- Ubisoft
- Samsung
- Riot Games
🀣105😁24πŸ‘5❀2😈1😭1
We've updated the vx-underground paper collection

- 2022-10-22 - WAM BAM - Recovering Web Tokens From Office
- 2023-02-09 - Transitioning from UM to KM - Extravagant Prick
- 2023-02-10 - Forensic Log-Based Detection of Keystroke Injection BadUSB Attacks

https://www.vx-underground.org/
πŸ‘7πŸ”₯2🀑1😈1
February 8th Avast announced the discovery of a Threat Actor targeting users through DOTA2.

DOTA contained an outdated build of V8 which the Threat Actor exploited through malicious game mods. V8 was not sandboxed.

Incredible read here: https://decoded.avast.io/janvojtesek/dota-2-under-attack-how-a-v8-bug-was-exploited-in-the-game/
🀑15πŸ‘6πŸ’‹2πŸ”₯1😈1
This media is not supported in your browser
VIEW IN TELEGRAM
The Windows OS needs to stop forcing updates on users before this man implodes like a dying sun

*Warning: extremely loud, swearing. Don't wanna blow your ear drums:)
πŸ‘27😁15🀣9🀬4😈1
We've updated the vx-underground malware sample collection.

- Virusshare 0458, Virusshare0459
- 80,000+ unique samples
- All named using Kaspersky naming convention

Check it out here: https://samples.vx-underground.org/samples/Blocks/
πŸ‘7πŸ’©1🀑1😈1
Twitter administration have determined making access to the Twitter API exclusively an enterprise privilege to be ... not ideal.

They have implemented free and limited usage which will suffice for our RansomwareNews bot.

tl;dr RansomwareNews bot not going anywhere.

https://twitter.com/RansomwareNews
❀20πŸ‘4πŸ’‹2πŸ’©1🀑1πŸ₯±1🐳1🍌1😈1
We've updated the vx-underground Windows malware paper collection. The latest additions demostrate the following:

- Unhooking NTDLL from Disk
- Unhooking NTDLL from KnownDlls
- Unhooking NTDLL from Remote Server
- Unhooking NTDLL from Suspended Process

https://www.vx-underground.org/
πŸ‘8🀑7πŸ’©4πŸ”₯3πŸ’‹2😈1
Ransomware but instead of encrypting files and extorting your company, it makes you watch corporate compliance training videos on repeat
🀯44😁14πŸ”₯6😱4πŸ’©3πŸ‘2😈2πŸŽ…2
Microsoft in 2023: Windows 11 will allow tabs in the Windows Explorer!

Microsoft in 1995:
😭67πŸ‘27😁19πŸ’©8😐7🀑4❀2πŸ₯°2😱1πŸ’”1😈1
The Israel Institute of Technology was hit by ransomware this morning.

- DarkBit ransomware (???)
- Ransom note is political
- Attackers want $1,700,000+ (80 BTC)
- Ransom note is written using an English translator

Image courtesy of CyberIL
🀑49πŸ‘39🀣9❀7πŸ’©7πŸ‘2🐳2😈2😁1
We've made some improvements to The Old New Thing archive. All papers from Raymond Chen are organized by year, month, and now date.

Thanks _BradleyVX for the additions

Check it out here: https://www.vx-underground.org/the_old_new_thing.html
❀17πŸ’©2😈2🀑1