vx-underground
45.8K subscribers
3.93K photos
418 videos
83 files
1.43K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
The more we read about the xz supply chain attack the more we realize that everyone needs to move to Windows XP.

This wouldn't have happened on Windows XP
🀣140πŸ’―20❀11πŸ‘4πŸ‘2🀝2❀‍πŸ”₯1πŸ€”1🀯1
women are scary
πŸ”₯134🀣48😱12😁9πŸ€“8🫑6πŸ’―5πŸ₯°4❀3πŸŽ‰3πŸ‘2
vx-underground
Checked in with Lockbit ransomware group administrative staff yesterday. We haven't spoken with them in a few weeks. They're now looking to expand operations into Violence-as-a-Service. Very cool – malware, extortion, money laundering, and now violence πŸ‘
Lockbit has clarified this is not to intimidate potential victims of ransomware. Lockbit administrative staff claim they were recently robbed and need to get their money back.
🀣113πŸ€”14❀5πŸ‘1😱1πŸ’―1
meemaw shows nerds how to use ffmpeg, uses a 2 character password, uses neofetch, and complains about bloat on her 4gb linux box

based and linux pilled

https://www.youtube.com/watch?v=YVI6SCtVu4c
❀182πŸ‘11πŸ‘7🀯6πŸ’―4πŸ”₯3πŸ€”3😁1
The xz situation is absolutely insane and almost certainly state sponsored.

This is an excellent example of a widely used software being maintained by basically one person.

Read this web article and then frown and become sad.

https://boehs.org/node/everything-i-know-about-the-xz-backdoor
😱81πŸ€“15πŸ”₯8🫑7πŸ‘4🀯4❀3🀣2❀‍πŸ”₯1😒1
😭😭😭 which one of you nerds did this
🀣195😁19❀11πŸ’―6😎6😒4πŸ€“3πŸ”₯2πŸ˜‡2🫑1
Times like this we need a reminder that only one person can protect us from OSS supply chain attacks

meemaw. She would know immediately
❀170πŸ’―26🀣11πŸ”₯5πŸ₯°4😒2
The xz backdoor was initially caught by a software engineer at Microsoft. He noticed 500ms lag and thought something was suspicious.

This is the Silver Back Gorilla of nerds. The internet final boss.
πŸ”₯186🫑84πŸ€“25😁12🀣11❀8πŸ’―7πŸ‘5πŸ‘1πŸ˜‡1
Microsoft engineer: 500ms lag in liblzma? Something's up.

Also Microsoft engineer: 45 minute lag in Microsoft Teams? Perfect.
🀣373πŸ”₯42😁29❀14πŸ‘12πŸ’―5πŸ₯°3πŸ€“3
JiaT75 on GitHub pretending to be an OSS enthusiast and 100% NOT a state-sponsored Threat Actor
🀣250❀10πŸ˜‡7πŸ‘6😎3🀯2❀‍πŸ”₯1πŸ’―1πŸ€“1
We made a post congratulating and praising Andres Freund for his discovery of the xz backdoor

Dorks immediately started freaking out

>i WouLd hAvE cAuGhT ThiS
>i dO bEnChMarkS liKe tHiS tOO

How about you be happy for someone? Not everything is an attack on your ego 😀😀
❀213🀣71πŸ’―31πŸ‘20🀯5πŸ‘3πŸ€“3πŸ˜‡3❀‍πŸ”₯2
Most difficult things to do:

- Climbing Mt. Everest
- Mastering a second language
- Overcoming addiction
- Syncing Outlook
🀣193πŸ‘12❀10😁7πŸ’―5πŸ”₯3πŸ€“3πŸ‘2❀‍πŸ”₯1πŸ€”1😱1
Hello, how are you?

It is Sunday. Today is a day to rest. We hope everyone had a good week. We hope all of you have a good weekend.
πŸ‘85❀55πŸ₯°30😒8🀣8❀‍πŸ”₯5πŸ€“5πŸ˜‡4🫑3πŸ™2
😎183πŸ”₯25🀣12🫑6πŸ‘5❀‍πŸ”₯4😁3πŸ₯°2πŸ€”2πŸ€“1πŸ˜‡1
PandaBuy has been breached by Threat Actors operating under the names "Sanggiero" and "IntelBroker". Exfiltrated data includes:

- UserId
- First name
- Last name
- Phone number
- Email
- Login Ip
- Full address
- Order information

Breach patrons are relatively excited
πŸ‘82🀣52πŸ”₯17😒13❀12❀‍πŸ”₯1😁1
We have no April Fool's day joke planned this year. Please accept this image of a cat instead.
❀279😒33🀯22πŸ₯°16🀣10πŸ€“9πŸ‘6🫑2❀‍πŸ”₯1😱1πŸ’―1
Discord has announced they will begin displaying ads to boost revenue
🀣167😒30🫑11🀯8πŸ€”7πŸŽ‰3πŸ€“3πŸ₯°2❀1😁1
We've uploaded 85,000+ malware samples to vx-underground.

Download it.
❀123πŸ”₯25❀‍πŸ”₯11πŸ€“8🀣6🀯5πŸ‘3πŸ’―2😎1
Today we learned RecordedFuture's Insikt group is pronounced 'In-sikt' and NOT 'in sync'. No idea where we got the 'N' from – but we did. For several years we thought the organization was named after Justin Timberlake's hit 90's boy band
🀣66❀10😁5πŸ‘3πŸ€“3😎1