We've updated the vx-underground malware sample collection
- Amadey
- AppleSeed
- BlueFox
- CobaltStrike
- DTrack
- Gafgyt
- GraceWire
- LockBitRansomware
- NetWireRAT
- Orcus
- QakBot
- RaccoonStealer
- Rapperbot
- Vidar
https://www.vx-underground.org/
- Amadey
- AppleSeed
- BlueFox
- CobaltStrike
- DTrack
- Gafgyt
- GraceWire
- LockBitRansomware
- NetWireRAT
- Orcus
- QakBot
- RaccoonStealer
- Rapperbot
- Vidar
https://www.vx-underground.org/
β€21π5π₯°1
cl0p ransomware group has created a clearnet domain to distribute stolen data from Ernst & Young.
As you can see, from the attached image below, cl0p runs on some of the most sophisticated infrastructure known to man. Their previous domain downloaded at 90KB/s. This one?
As you can see, from the attached image below, cl0p runs on some of the most sophisticated infrastructure known to man. Their previous domain downloaded at 90KB/s. This one?
π€£102π€―8π7π«‘5π2π’2π€ͺ2
As part of the vx-underground x @SentinelOne Malware Research Challenge, DLL_Cool_J released a paper on state sponsored Threat Actors targeting security researchers by weaponizing tools such as Ghidra.
This paper also provides historical examples.
https://www.sentinelone.com/blog/analyzing-attack-opportunities-against-information-security-practitioners/
This paper also provides historical examples.
https://www.sentinelone.com/blog/analyzing-attack-opportunities-against-information-security-practitioners/
SentinelOne
Analyzing Attack Opportunities Against Information Security Practitioners
Security researchers are increasingly targeted for attack. In this guest post, Jared Stroud explores the risks and how practitioners can protect themselves.
π23β€7π₯5
How do you pronounce "CVE"?
1. C. V. E.
2. Svye
3. KaVooEe
1. C. V. E.
2. Svye
3. KaVooEe
π€91π€£65π―14π«‘12π5π3π€―3β€βπ₯2π2π₯1π1
People have been discussing the "death" of infosec Twitter. They have defined it's decline based on the number of KaVooEe's discussed each month.
Infosec is more than just KaVooEe's.
Infosec is more than just KaVooEe's.
π€£72π7β€2
We've updated the vx-underground malware source code collection on GitHub
- Javascript.Kaoom.Unknown
- Panel.BlackHole.IonCube.a
- Win32.GreenDamCensor.Exploit.a
- Win32.Bootkit.BlackLotus.b
https://github.com/vxunderground/MalwareSourceCode
- Javascript.Kaoom.Unknown
- Panel.BlackHole.IonCube.a
- Win32.GreenDamCensor.Exploit.a
- Win32.Bootkit.BlackLotus.b
https://github.com/vxunderground/MalwareSourceCode
GitHub
GitHub - vxunderground/MalwareSourceCode: Collection of malware source code for a variety of platforms in an array of differentβ¦
Collection of malware source code for a variety of platforms in an array of different programming languages. - vxunderground/MalwareSourceCode
β€29β€βπ₯7π6π±2π«‘1
Group-IBβs co-founder, Ilya Sachkov, has been convicted of treason and sentenced to 14 years in prison by a Moscow court.
More information:
https://www.group-ib.com/media-center/press-releases/statement-on-the-conviction-of-ilya-sachkov/
More information:
https://www.group-ib.com/media-center/press-releases/statement-on-the-conviction-of-ilya-sachkov/
Group-IB
Statement on the conviction of Ilya Sachkov, co-founder of Group-IB
Group-IB has today learned that Group-IBβs co-founder, Ilya Sachkov, has been convicted of treason and sentenced to 14 years in prison by a Moscow court following an unreasonably rushed trial.
π’53π€£21π«‘10π6π₯3π2π1π€ͺ1
Today David Grusch, an individual who served 14 years with the United States Air Force and National Geospatial Intelligence Agency, testified under oath that the United States government possesses 'Unidentified Anomalous Phenomena' and has been reverse engineering it for decades
More info: https://www.cbsnews.com/news/ufo-hearing-congress-uap-takeaways-whistleblower-conference-david-grusch-2023/
More info: https://www.cbsnews.com/news/ufo-hearing-congress-uap-takeaways-whistleblower-conference-david-grusch-2023/
CBS News
UFO hearing key takeaways: What a whistleblower told Congress about UAPs
A former military intelligence officer-turned-whistleblower told House lawmakers that Congress is being kept in the dark about unidentified anomalous phenomena.
π€£48π±14π7π5π€―5π₯4β€2β€βπ₯1
Today haveibeenpwned announced they have acquired the Breached Forum database. An individual using the alias "breached_db" compromised Breached in November, 2022. This was when Pompompurin was the administrator.
This database leak exposes PII on 212,000 users.
This database leak exposes PII on 212,000 users.
π57π€―19π15π’8