vx-underground
47.4K subscribers
4.09K photos
436 videos
84 files
1.48K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
Russia: Kaspersky and the Russian FSB disclose information on an iOS 0day exploit

NATO Territory: Security vendors are disclosing news on a MOVEit 0day exploit being exploited in the wild to mass exfiltrate data from organizations.

Yay! 0day Thursday! =D
ðŸ”Ĩ60ðŸĪĢ21👍5ðŸŦĄ5âĪ3🎉1
Someone has purchased vx-underground.com.

The domain tries to trick users into downloading malware and/or into calling a phony tech support phone number.

Unusual decision considering our userbase is people whose entire lives revolve around malware....
ðŸĪĢ110😁23ðŸĪŠ9👍7ðŸŦĄ3âĪ2🎉1
👍27ðŸĪŠ21ðŸĪ”7ðŸ˜Ē4âĪ2âĪ‍ðŸ”Ĩ1🎉1
American Intelligence agencies are filled with nerds.

The Kaspersky Operation Triangulation report cites mobilegamerstats[.]com as C2 domain. Its AWS host houses other listed C2 domains.

The SOA_EMAIL is a reference Tonari no Kaibutsu-kun (My Little Monster) - a manga 😭😭😭
ðŸĪŠ25ðŸĪĢ17ðŸŦĄ5👍1👏1🎉1
The NSA/CIA is filled with a bunch of anime nerds
ðŸĪŠ37ðŸĪĢ23âĪ2👍1🎉1
Operation Triangulation used an iOS zero-click 0day exploit. It then leveraged additional 0day exploits pulled from a C2 to escalate privileges.

We've said it before and we'll say it again: anime nerds are the most dangerous people on the planet
ðŸĪĢ85âĪ14ðŸ’Ŋ3👍1ðŸĪ”1🎉1
- vx-underground releases research on infecting Discord ASAR files for persistence and abuse, September 20th, 2021

- Twitter nerds: ðŸ˜ī

- Threat Actor uses it exactly as described in the paper and uses some of the code

- Security Vendors:
ðŸĪĢ91👍11âĪ8âĪ‍ðŸ”Ĩ3ðŸŦĄ3👏2ðŸ’Ŋ2🎉1
The 'A' in CIA and NSA stands for Anime.
ðŸĪĢ94😁12😘9ðŸĪŊ8ðŸĪŠ7ðŸŦĄ6👍5âĪ1🎉1
You have no idea how hard it is to not relentlessly meme the NSA and/or CIA for the anime reference in Operation Triangulation.

The only thing holding us back is the fear of a friendly autonomous drone strike or the Guantanamo Bay Detention Camp
ðŸĪĢ92😁5âĪ4👍3ðŸ’Ŋ3ðŸŦĄ3ðŸĨ°2ðŸ˜ą2🎉1ðŸĪŠ1
BreachedForum will resume its activities later this month.

It has new administration. It will be lead by the infamous ShinyHunters group.
ðŸĪŊ72ðŸĪ”19âĪ13ðŸĪĢ8👏4👍3ðŸ˜Ē2ðŸŦĄ2🎉1
Today Threat Intelligence firm Hudson Rock shared some information with us.

A Threat Actor who was active on BreachForums named "IntelBroker" managed to anger the United States government a little bit.

The Five Eyes (FVEY) are actively hunting him down.
ðŸŦĄ79😁7âĪ6ðŸ”Ĩ5ðŸ˜ą5👍3ðŸ’Ŋ2ðŸ˜Ē1🎉1ðŸĪĢ1😘1
Have a nice weekend && spend it with people you care about.
âĪ58ðŸĪŠ10👍6âĪ‍ðŸ”Ĩ4ðŸ˜Ē3🎉1
Today in http://discord.gg/onlymalware we will be hosting two events:

1. Book Club Session 1: The Art of Computer Virus Research and Defense (Chapters 1-3) - 5:30PM GMT
2. RE for Noobs by 0x6D6172636F - 8:00PM GMT

Come join us if you want to talk about malware and more!

//THIS IS NOT A VX-UNDERGROUND DISCORD
âĪ‍ðŸ”Ĩ14👍7👏6âĪ5😁2ðŸĪŊ1🎉1
The most sophisticated Threat Intelligence team on the planet is the Nintendo Corporation Intellectual Property Legal Team.

If ransomware groups used a Super Smash Bros logo they'd be caught in 48 hours.
ðŸĪĢ60😁57👍5ðŸĨ°2ðŸĪŠ2🎉1
If you walk into the bathroom, turn off the light, and say "Pikachu" three times slowly, a Nintendo Corporation legal representative will appear behind you with a cease and desist letter.
ðŸĪŊ55ðŸĪĢ49😁13ðŸ˜ą7âĪ5👍1ðŸ”Ĩ1🎉1
If you like what vx-underground does; the memes, the news, the information we aggregate and archive - please consider becoming a monthly donor or buy some merch from us.

*Reminder that our merch website is vx-underwear.org because you degenerates seriously voted for it
âĪ40👍5😁4🎉1
Also, reminder that not everything on there is vx-underground branding such as the Ransomware Aktivist swag.

Also, also, because you degenerates very seriously voted for it, we do sell vx-underground underwear because ???
âĪ39😁26ðŸĪŠ12ðŸĪ”4🎉1