Graf, while we appreciate the 5-star review, we are disappointed you would disrespect us with such hurtful words.
Of course the book has anime girls.
Of course the book has anime girls.
😁79🤣42🫡18👍6🤓3❤1💯1
We've updated the vx-underground APT collection. We've added papers ranging from August, 22nd 2023 - October 13th, 2023.
See attached image for list of all additions.
Have a nice day.
https://www.vx-underground.org/
See attached image for list of all additions.
Have a nice day.
https://www.vx-underground.org/
❤25🔥13👍3🎉1💯1🫡1
We've had people continually inquire on buying a physical copy of vx-underground.
This is a difficult thing for us to do. It is 5TB+ and continually growing. A 5TB harddrive would be required, shipping, and payment for our time and effort.
Est. cost $150 - $300+
This is a difficult thing for us to do. It is 5TB+ and continually growing. A 5TB harddrive would be required, shipping, and payment for our time and effort.
Est. cost $150 - $300+
❤53🤣32🤝14🔥8🫡7👍4👏4😎3❤🔥2😢1
October 17th - Ukrainian Cyber Alliance takes down Trigona ransomware group, taking down servers and seizing wallets.
October 19th - EUROPOL takes down RagnarLocker ransomware group
Image 1 & 2: Ukrainian Cyber Alliance
Image 3: Ragnar Locker
October 19th - EUROPOL takes down RagnarLocker ransomware group
Image 1 & 2: Ukrainian Cyber Alliance
Image 3: Ragnar Locker
😎57👍15😢11🤣8🫡8❤7💯3🤔2
vx-underground
This is Maksim Yakubets. Feel old yet?
It appears people do not know (or remember) Maksim Yakubets.
Yakubets is a member of Evil Corp. He is behind Zeus, Dridex, and suspected to have ties to ransomware groups.
He married an FSB officers daughter and owns a Lamborghini with the license plate "Thief".
Yakubets is a member of Evil Corp. He is behind Zeus, Dridex, and suspected to have ties to ransomware groups.
He married an FSB officers daughter and owns a Lamborghini with the license plate "Thief".
🤣121🫡21❤11😎8🔥7❤🔥3🤔3👍2🙏1
We have a reverse engineering challenge for you nerds.
In Black Mass Vol. 3, scheduled for October, 2024, we will unveil "Matryoshka". Matryoshka is a strange malware proof-of-concept. We would like you to reverse engineer it to tell us how you think it works.
* Matryoshka only works on Windows 10 or above
* proof-of-concept is not malicious
* you're free to reverse engineer it by any means necessary: static, dynamic, sandbox, making your friend do it, whatever.
* malware proof-of-concept is NOT packed
* Matryoshka does not possess any anti-debug or anti-VM functionality
* source code and full explanation of code will be released in Black Mass Vol. 3
* best write up goes in Black Mass Vol. 3 to show the defensive aspect to Matryoshka!
* binary is being shared in .7z with a super 1337 password!!!!11
inb4 someone reverse engineers it in totality in 2 minutes because they've seen "Kob*".
Matryoshka download: https://samples.vx-underground.org/root/Samples/Matryoshka.7z
In Black Mass Vol. 3, scheduled for October, 2024, we will unveil "Matryoshka". Matryoshka is a strange malware proof-of-concept. We would like you to reverse engineer it to tell us how you think it works.
* Matryoshka only works on Windows 10 or above
* proof-of-concept is not malicious
* you're free to reverse engineer it by any means necessary: static, dynamic, sandbox, making your friend do it, whatever.
* malware proof-of-concept is NOT packed
* Matryoshka does not possess any anti-debug or anti-VM functionality
* source code and full explanation of code will be released in Black Mass Vol. 3
* best write up goes in Black Mass Vol. 3 to show the defensive aspect to Matryoshka!
* binary is being shared in .7z with a super 1337 password!!!!11
inb4 someone reverse engineers it in totality in 2 minutes because they've seen "Kob*".
Matryoshka download: https://samples.vx-underground.org/root/Samples/Matryoshka.7z
👍47❤🔥21❤10🫡10🤣6🤔5💯1
Yeah, Okta's support system was compromised. Yeah, they had access for over 2 weeks. Yeah, the Threat Actor(s) probably went through some pretty sensitive stuff...
But they offer SSO at $2/user, so it's not really that big of a deal, right?
But they offer SSO at $2/user, so it's not really that big of a deal, right?
🤣57😁8👍4🫡2❤🔥1🤔1😍1
vx-underground
Yeah, Okta's support system was compromised. Yeah, they had access for over 2 weeks. Yeah, the Threat Actor(s) probably went through some pretty sensitive stuff... But they offer SSO at $2/user, so it's not really that big of a deal, right?
Yeah, Okta wasn't aware of the breach until a customer alerted them to a potential compromise.
But they offer MFA at $3/user, so it's not a big deal, right?
But they offer MFA at $3/user, so it's not a big deal, right?
🤣88😁5❤2👍1🤔1😎1
We are aware our Twitter ransomware bot is still offline.
We do not know where the individual maintaining it went. We last spoke with them approx. 2 months ago. They disappeared without a trace.
We do not know where the individual maintaining it went. We last spoke with them approx. 2 months ago. They disappeared without a trace.
😱61🫡38🤣13🤓7🙏3👍1
Uhaul was breached. 13GBs of data was exfiltrated from their SharePoint. Initial access was granted by social engineering an employee through text messages.
tl;dr another day in Shangri-La
tl;dr another day in Shangri-La
❤32💯14😁6😱5👍3🤣2
CloudFlare did a blog yesterday about how the company they use (Okta) was breached (again) and how the Threat Actor tried to pivot into their network (again) and how they mitigated it (again).
The blog gives recommendations to Okta 😂😂
https://blog.cloudflare.com/how-cloudflare-mitigated-yet-another-okta-compromise/
The blog gives recommendations to Okta 😂😂
https://blog.cloudflare.com/how-cloudflare-mitigated-yet-another-okta-compromise/
The Cloudflare Blog
How Cloudflare mitigated yet another Okta compromise
On Wednesday, October 18, 2023, we discovered attacks on our system that we were able to trace back to Okta. We have verified that no Cloudflare customer information or systems were impacted by this event because of our rapid response.
🤣68❤6😁6❤🔥2