vx-underground
47.5K subscribers
4.1K photos
437 videos
84 files
1.48K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
Symantec Threat Hunter Team discovered the X-Trader supply chain attack, which resulted in the 3CX supply chain attack, hit critical infrastructure - European and American electrical grid suppliers

More information: https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/xtrader-3cx-supply-chain
😱14πŸ‘2🫑2❀1πŸ‘1
There is a direct correlation between hours of anime watched and reverse engineering skills.

The longer someone watches anime, the better they are at reverse engineering.

Scientists do not know why.
πŸ‘57🀣32😱17🫑11🀯7❀5πŸ”₯3😁3πŸ’―3😒2🀩2
Andy Greenberg's book "Tracers in the Dark: The Global Hunt for the Crime Lords of Cryptocurrency" is an incredible book. It reads well. It allows a reader to understand the flaws in cryptocurrency and truly emphasizes the incredible research by people like Sarah Meiklejohn.

This isn't an advertisement for him - this book is genuinely an amazing read. Shoutout to Andy.
πŸ’―56❀14πŸ‘9πŸ”₯7πŸŽ‰3
We've updated the vx-underground malware sample collection. We have added new samples for the following families:

- AgentTesla
- AsyncRAT
- WhisperGate
- RagnarLocker
- YoungLotus
- Blackmoon
- Emotet
- Remcos
- Trickbot

Check it out here: https://samples.vx-underground.org/samples/Families/
πŸ”₯16πŸ‘5
Suicide is not the answer. Seeking help is a sign of strength.
❀123πŸ‘12🀣12🫑9❀‍πŸ”₯6πŸ€”3πŸ€ͺ3πŸ‘1
We've updated the vx-underground malware source code collection. We've added Win32.SimpleWalletClipper.Xss.

Special thanks to BasssterLord/NationalHazardAgency for getting the source code for us.

Check it out here: https://github.com/vxunderground/MalwareSourceCode/tree/main/Win32/Stealers
❀‍πŸ”₯10❀4πŸ‘1πŸ”₯1😁1
We've updated the vx-underground malware collection.

- InTheWild.0067

We have added new samples for the following families:

- BlackCatRansomware
- FormBook
- AsyncRAT
- Amadey
- Danabot
- Emotet
- WhisperGate
- LokiBot
- Remcos

Check it out here: https://vx-underground.org/malware.html
πŸ‘14❀‍πŸ”₯3
The password to all of our archives is 'infected'

The compressed files we create, which is created from Linux or Windows OS's, are not natively compatible with MacOS

MacOS uses a different methodology to compress files and directories. The 'unzip' utility will not work, sorry.
😁47😒5πŸ™3😘2
Hey Blue Team nerds in the Northern parts of the United States and Canada - does your contingency plan cover G4 Geomagnetic Storms?
❀‍πŸ”₯30πŸ€”10😱9😁5πŸ‘1
Lockbit ransomware group put out an advertisement today. They are hiring an entry-level QA tester.

Primary requirements include:
- No social life
- Be greedy

Intel via crocodylii
🀣67😁12πŸ€”3❀2πŸ‘2πŸ‘1
You may not like it but this is what a true 1337 hacker looks like
🀣82🫑26🀯11πŸ‘3😁3πŸ‘2πŸ’―1
Today VirusTotal announced that each sample uploaded will be accompanied by "Code Insight". Code Insight uses Sec-PaLM, one of the generative AI models by Google, to explain what the malicious binary is doing.

Code Insight is available to all users.

tl;dr "they took my job"
🀣82πŸ”₯13❀8πŸŽ‰4😒2❀‍πŸ”₯1
We cannot fathom the amount of computational resources required to programmatically send each sample on VirusTotal, which is roughly 13PB, through an AI sandbox to generate a description for it.

Google going he-man with the malware samples
🀣37❀5❀‍πŸ”₯4🫑3🀯2
The vx-underground C2 is superior to every Red Team tool on the market.

- Simple
- Robust
- Customizable
- Cross-platform
- Evades all AVs/EDRs
- Reliable
- Not affected by geomagnetic storms
- Immune to EMPs and (probably) nuclear explosions

Requirements: 2 old cans and string
πŸ€ͺ48🀣21πŸ‘9πŸ”₯7🫑5πŸ₯°2😁1😍1
Reminder that we have a Discord server dedicated to monitoring ransomware group postings, government alerts, and dozens of cyber security vendors.

VX Feed Discord invite:
https://discord.gg/BBtPURBaJW
❀‍πŸ”₯17πŸ€”6❀4🫑3πŸ‘1
This media is not supported in your browser
VIEW IN TELEGRAM
vx-underground has received exclusive footage of a young ransomware operator receiving his first pay out.

Viewer discretion is advised.
🀣77πŸ‘5🫑5πŸ”₯4πŸ€ͺ4❀2🀯2πŸ’―2😁1πŸ€”1😘1
Lockbit ransomware group claims to have ransomed ElektrizitΓ€tswerk Wanfried von Scharfenberg KG.

EW Wanfried is an electric company.

They have attacked critical infrastructure.
😱37😘10πŸ”₯6😍5😁2❀1πŸ‘1
We've updated the vx-underground malware sample collection. We have added new samples for the following families:

- RtPOS
- SysJoker
- StrifeWater
- Micropsia
- zLoader
- LokiBot
- AgentTesla
- StrRAT
- CoinStomp

Check it out here: https://samples.vx-underground.org/samples/Families/
😘9🀣4❀1πŸ€”1
AtlasOS, a modified version of Windows 10, is being discussed on YouTube. AtlasOS is described as a "transparent and streamlined modification of Windows".

AtlasOS is designed for gamers. To improve Windows they have removed Windows Defender, Restore Points, and Security Updates
🀣136πŸ€”17πŸ‘10πŸ”₯6πŸ₯°6πŸ€ͺ3❀2❀‍πŸ”₯2🫑2
tl;dr epic gamer move - remove all security features to get 10 extra frames on Fortnite
😁82🀣54πŸ‘9πŸŽ‰5πŸ’―4🫑3πŸ₯°2😱1