vx-underground
45.4K subscribers
3.9K photos
413 videos
83 files
1.42K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
I'm not a forensics expert. I couldn't forensic my way out of a forensics thing.

However, this cyber weapon thingy leaked from the Iranian government has a program debug file thingy and it contains a debug file path

What could it mean?
πŸ₯°49😁18🀣18πŸ€”6😒2❀1πŸ€“1🫑1
vx-underground
I'm not a forensics expert. I couldn't forensic my way out of a forensics thing. However, this cyber weapon thingy leaked from the Iranian government has a program debug file thingy and it contains a debug file path What could it mean?
Myself personally, whenever I am performing a state-sponsored campaign to infiltrate a foreign adversary of the government in which I reside, I too name the directory structure after our primary target.

This makes it easier for me to remember who our Commander has instructed us to target. Furthermore, in the event of a compromise or whistleblower, analysts whom are employed by our foreign adversaries can easily identify our objectives and modus operandi
πŸ₯°45🀣26😁8❀‍πŸ”₯4❀1πŸ‘1
TIL "Bella Ciao" is an anti-Nazi and anti-fascist Italian folk song.

The Iranian government named their malware payload "Bella Ciao".
πŸ₯°91🀣47πŸ€“11❀7❀‍πŸ”₯6πŸ€”3πŸŽ‰2
πŸ₯°147❀29πŸ’―26🀣22πŸ‘5πŸ”₯4😁3😒2🀝1
Reddit-bro goes on schizo rant about how anti-malware services are garbage. In the middle of schizo rant he writes that his 1337 hack is allocating memory in a target process and running calc.exe

WHY ISNT THE AV DETECTING CALC BRO

https://www.reddit.com/r/antivirus/comments/1o4nq5o/the_shocking_state_of_premium_antimalware/
πŸ₯°24😁17🀣8❀3πŸ™2🀯1😒1πŸ€“1
I've got students messaging me asking if cybersecurity is still a "safe" field to go into because of the advancements of AI

Dawg, our career value has fucking EXPLODED. Are you fuckin' with me right now?

- AI vibe coded slop as far as the eye can see
- AI deep fakes as far as the eye can see
- AI written emails, scams, as far as the eye can see

On top of that, due to how accessible the internet is now, there is a "cyber attack" literally every god damn second. It's nonstop. The internet is still very much the wild, wild, west.

Like, bro, this shitty little malware website I run brings in 20,000+ malwares a day with a budget of $15, a slice of pizza, and cat pictures. Do you have any fucking clue how widespread cybercrime is?

Don't even fucking start me on crypto theft

I'll lose my mind writing this post, bro. It's literally nonstop, around the clock, weekends and holidays. It never ends. Cybersecurity is only getting bigger.
πŸ”₯161❀37πŸ’―15πŸ₯°12😁4πŸ€“4🀣2πŸ€”1😒1
Xitter has announced an interesting method to combat misinformation campaigns.

Soon Xitter will display country of origin on the profile. While obviously this can thwarted with a VPN, existing accounts may end up exposing themselves as a bad actor.
😁122🫑17❀6πŸ‘4πŸ”₯2😒2πŸ™1
Moments ago I was bombarded with questions.

I was informed I was made a channel administrator for an alleged Threat Actor operating under her moniker "Sevvy".

I wasn't sure of these claims, I was enjoying a wonderful convection oven baked pizza (it distributes the heat better, cooks the dough really good), so I hadn't had an opportunity to verify whether or not these rumors were true.

It is indeed true. I am an administrator in her channel.

Why? I don't know. But I am now.

This is a very surprising plot twist. This wasn't in the Dragon Ball manga so I don't understand what is going on or what will happen next.
🀣90❀22πŸ₯°8😒4πŸ”₯3😱2πŸ€”1
vx-underground
Moments ago I was bombarded with questions. I was informed I was made a channel administrator for an alleged Threat Actor operating under her moniker "Sevvy". I wasn't sure of these claims, I was enjoying a wonderful convection oven baked pizza (it distributes…
I am now receiving questions on Twitter, Telegram, and Discord, my opinions on convection cooked pizzas.

This is (apparently) the really interesting news as pizza enthusiasts are eager to learn more about convection heat.

I have ZERO idea what the fuck is going on now
❀59🀣21πŸ”₯6πŸ₯°4πŸŽ‰2😒1
Sevvy has requested I share her channel invite.

I would like to inform all of you her channel does not discuss malware, or cyber security, in any capacity. It is primarily her documenting herself abusing alcohol and/or narcotics and flashing excessive wealth.

I still don't quite understand what's going on, but I guess it's going on, I guess.

I am very confused and will be taking a nap soon. Enjoy this week's episode of internet schizophrenia.

https://t.me/+631xqBxi4eE4NTk0
🀣65πŸ€“12❀8πŸ₯°8πŸ‘4🫑3😁2πŸ”₯1πŸ€”1😒1πŸ’―1
Happy Birthday to leahcmd!
πŸŽ‰177❀12🀣12πŸ€“5πŸ”₯2😒1
😁86πŸ₯°16🀣5😒4🀝4πŸ”₯3🀩2
October 15th, 2025, F5 networks submitted SEC 8-K disclosing they had suffered a network compromise.

tl;dr some source code stolen, some customer data stolen, potentially impacts usa gov national security

F5 reports that they had detected a compromise through a suspected nation state Threat Actor on, or around, August 9th, 2025. Representatives from F5 reported that they believe the Threat Actors responsible for the compromise may have achieved access as far back as 12 months ago.

F5 reports they believe this unidentified Threat Actor gained, and maintained, persistent access to their production environments for their product BIG IP. Additionally, F5 believes this Threat Actor successfully exfiltrated proprietary source code for their product.

F5 states they do not believe any BIG IP and/or F5 vulnerabilities are being actively exploited. They do not believe any of their other products have been compromised (iHealth, CRM, etc). It was noted a small number of customers may have had information stolen. However, no details were provided on the number of customers impacted. Due to the size of F5, a "small" number could be 5 customers, or it could be 1,000 customers.

Due to the nature of compromise, and the potential impact to the United States national security (Item 1.05(c) of Form 8-K.), the United States Department of Justice allowed a delayed public disclosure for F5 products on September 12th, 2025.

Furthermore, the report discloses one of their Directors on the Board of Directors, has "stepped down". They are now acting as the Chief Technology Operations Officer reporting to F5's CEO to focus on and/or improve the companies security posture.
❀27😁7πŸ‘2😒2🀣1
vx-underground
October 15th, 2025, F5 networks submitted SEC 8-K disclosing they had suffered a network compromise. tl;dr some source code stolen, some customer data stolen, potentially impacts usa gov national security F5 reports that they had detected a compromise through…
Correction has been made.

I initially wrote the compromise occurred in August. F5 detected* the compromise in August. The initial compromise (per F5) may have been as far back as 12 months ago.

Thank you to the commenter who noticed my poor choice of wording.
❀30πŸ‘5🀣5😒1
This is true.

When we pushed one large cat picture collection exceeding 100gb, several thousand people tried to download it at once. It caused our infrastructure to implode.
😁80🀣36❀20πŸ₯°5🫑4😒1
πŸ₯°46πŸ€“12😱7πŸ’―7🀯5😁4πŸ€”1😒1
Mr. Beast, a well-established financial analyst with an emphasis on cryptocurrencies, has filed a trademark application for "MrBeast Financial".

Per the trademark application, MrBeast Financial will be a downloadable application for mobile devices which will aim to do the following:
- Banking services
- Short-term cash advances
- Cryptocurrency exchange services
- Investment bank services
- Investment management service
- Consumer lending services
- Insurance services
- Financial advisory services
- Consultancy services
- Financial planning services
- Financial education wellness services

This is excellent news as I have always personally wanted to take financial advice (especially regarding cryptocurrency) from a borderline sociopathic YouTube content creator.

I am so excited I am calling my bank this afternoon to liquidate my retirement 401k in totality and ensure him and his star-studded team of financial experts expertly invest in the latest shitcoins (I'm going to lose everything in a week)
🀣169❀15πŸ‘5😁2🀯2😱2πŸ”₯1πŸ€”1πŸŽ‰1😍1🫑1
vx-underground
Mr. Beast, a well-established financial analyst with an emphasis on cryptocurrencies, has filed a trademark application for "MrBeast Financial". Per the trademark application, MrBeast Financial will be a downloadable application for mobile devices which will…
> Insurance services

Took out a $200,000,000,000 life insurance policy from MrBeast. It costs me $800/month. It only pays out if I die in a plane crash as a result of a shark tornado.

Chat, my family and I are safe.
🀣98❀15πŸ”₯9πŸ‘4🀝2😒1