vx-underground
45.5K subscribers
3.91K photos
414 videos
83 files
1.42K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
Was browsing random Discords last night.

Stumbled into some random "Hacker" discord. Upon entry I was asked to define my skill level.

Am I ...

A beginner Hacker?
An Intermediate Hacker?
An Expert Hacker?

I selected beginner. Then they placed me in the noob room and wouldn't let me do much else until I could complete some various CTF challenges.

This is the 2nd Discord server I've come across where people power trip and abuse noobs. I'm sick of it.

Noobs rise up! There's more noobs than experts. Usurp the kingdom!
🫑127πŸ”₯26❀9πŸ‘8😁7🀣7πŸ€“4😒1
You can read more than just books about computer stuff.

Read some books on history or science. It's good for you.
πŸ€“86❀30πŸ”₯10🫑6😒3πŸ‘2πŸ€”2😱2πŸ’―2πŸ™1
🀣68❀2πŸŽ‰2
On August 4th, 2025, APCS, Access Personal Checking Services, one of the largest organizations in the United Kingdom for performing "Disclosure and Barring Services" a/k/a background checks, determined its data has been compromised as a result of a 3rd party company named Intradev.

APCS works with over 19,000 organizations.

APCS is certified under the UK National Cyber Security Centre Cyber Essentials program.

APCS has stated the following:
- They don't know when it occured
- They don't know what was accessed
- They don't know if anything was exfiltrated
- They don't know the scope of the compromise

However, per the e-mail APCS has sent to customers, they believe data impacted includes:
- Basic personal information
- Passport
- Drivers License
- National Insurance details

APCS has asserted they're still investigating the matter.

BUT DON'T PAY ATTENTION TO THIS. The United Kingdom NEEDS YOU to keep the kids safe by giving companies your drivers license and/or passport. They NEED to see your information so they can make sure you're sufficiently aged to view YouTube, Discord, Spotify, or Wikipedia. We NEED to keep the kids safe. Give these companies your sensitive information. It's totally safe.
🀣70πŸ‘14❀6πŸ”₯5πŸ’―2😒1πŸŽ‰1
Silly discussion thread whereas we gave invaluable insight into the topic at hand
❀48🀣27πŸ”₯4😱1😒1
vx-underground
Silly discussion thread whereas we gave invaluable insight into the topic at hand
Someone else's screenshot. Realized the absurdity of it all.

Argue about anti cheats then the fuckin Minecraft dude randomly appears
❀39πŸ’―16🀣7😒1
Hello, it's time for an administrative update

- More malware samples in pipeline. Will announce them when they're done syncing

- More malware papers in queue

- More vulnerable drivers being fuzzed. When fuzzing operation is complete it will be available for bulk download

- We're aware some download API calls fail for virus-dot-exchange, we're fixing that. Have to re-index stuff

- Something else but I forgot

Ok ttyl
❀30❀‍πŸ”₯13πŸ”₯7😒1
Across social media platforms Xitter and Telegram we now have 410,000 followers.

That's a big number.

To put that into perspective: that's the same size pants yo momma wears

Ok ttyl love u
❀67😁29πŸ₯°8πŸŽ‰5😒3❀‍πŸ”₯2πŸ”₯2πŸ’―1
This media is not supported in your browser
VIEW IN TELEGRAM
❀69🀣44πŸ₯°9😒4😁3πŸ‘2πŸ”₯1
A disgruntled employee inserted a "kill switch" into his employers network. In the event he was laid off, his malicious code would trigger.

The code included the function "IsDLEnabledInAD"

His name was Davis Lu

Truly an epic gamer moment. He got sentenced to 4 years in prison
🀣119🫑30😒9πŸ”₯6❀1🀩1πŸ€“1
Seeing some people discuss cybersecurity and/or job stuff. One of the worst experiences in my career in cybersecurity was about 10 years ago. I was new to the field.

I was interviewing for a position working on an anti-malware engine. I was so excited.

The recruiter called me. She was from India. She had a heavy accent. The accent was so heavy I had a hard time understanding her. I got really nervous when I was unable to understand her because I didn't want to be sound rude or not get the job.

I told her I was having phone problems and told her "One moment, please". I put the phone down and freaked the fuck out because I had no idea what the fuck she was saying.

I returned to the phone, still zero idea what's going on. I tell her I'm having a hard time understanding her and if she can speak a little slower. I could immediately tell she got irritated and began speaking slower and raising her voice. Her tone made me feel like I was an idiot for not understanding her. She was being a bitch about it.

I move to the technical interview. It's another dude from India. He also has a super heavy accent. He's asking me a bunch of questions. When I was unsure, he also got audibly frustrated with me. It made me extremely nervous. During the interview I almost felt like he was power tripping over me because I needed the job and he had a job.

About 15 minutes into the interview, which was scheduled for one hour, he let out a heavy sigh when asking me to demonstrate some coding solutions to him. He then told me he was going to wrap up the interview. I once again got very nervous because his tone, attitude, passive aggressive sighing, all seemed extremely condescending.

Once the interview ended I never heard back from the recruiter. I contacted for a follow up and I was ignored.

The interview went so bad, I felt like dirt. I got really sad and it really bothered me. I've never been treated so horribly before in an interview. It was such a surreal and terrible experience. Thankfully I was able to get a programming job somewhere else shortly after that interview.

I was desperate for a job, I was new to the cybersecurity and/or IT industry. It was a big opportunity for me.

In retrospect, and for anyone reading this, if you're ever in a position such as I was 10 years ago+, just hang up or leave. It's not worth being treated like shit. Fuck those people and fuck people who use their power to abuse others.
❀157🫑21πŸ’―17🀣14πŸ‘6πŸ”₯4❀‍πŸ”₯3πŸ€”3πŸ‘1😒1
Meta (Facebook) was found guilty for violating United States California wiretapping laws. Meta illegally eavesdropped on women through the "Flo" app.

Flo Health is an app used by women for tracking periods, ovulation, and pregnancy.

Meta used the data for targeted advertising
❀55🀣27πŸ‘10😒1
Gayfemboy botnet uses the string β€œmeowmeow” as a trigger to activate its backdoor functionality.
🀣100πŸ”₯21πŸ€“11πŸ₯°3🫑3😒2❀1
vx-underground
Gayfemboy botnet uses the string β€œmeowmeow” as a trigger to activate its backdoor functionality.
/me sighs

I name ONE project something silly and now I'm public enemy number 1. This is anti-kitty cat picture propaganda
πŸ₯°31🀣27😒7❀2πŸ‘1
August 14th we posted this and mocked, sayiny it was probably North Korea. Some people (for reasons I don't understand) said it was probably safe (it's not)

Thankfully, infrawatch_app went way out there way to investigate the company mentioned in the Reddit post (DSLRoot) and much more

The tl;dr:
- Guy in Belarus owns the company
- Owner travels between Minsk and Moscow
- He pays you $250/month to plug in devices
- He connects to it with Remote Desktop Software
- He sells network access to your home to other people
- Advertises on BlackHatWorld
- Random people use your residential IP for ???
🀣74❀19πŸ₯°5πŸ‘3🀝2πŸŽ‰1
WHAT THE FUCK IS THIS PIECE OF SHIT
🀣100🀩7😒5❀2πŸŽ‰1
Microsoft deleted the AI slop

It was all thanks to you, Battousai
❀‍πŸ”₯66😁24πŸ‘4πŸ”₯4πŸŽ‰3❀2🀝2😒1
vx-underground
Microsoft deleted the AI slop It was all thanks to you, Battousai
tldr Microsoft did some security announcement thing, they used cheap AI slop to illustrate it. It looked like shit. I had a psychiatric melt down that a company worth $3,700,000,000,000 used AI slop. Commenters also went schizo. Microsoft removed slop

Yay we won
🀣92❀20πŸ‘9🫑4πŸŽ‰2😁1😒1🀩1