tl;dr 49,000,000 customer records stolen from DELL. Additional information and statistics in attached link.
May 9th DELL began sending notifications to customers stating their personal information was stolen in breach. Data stolen includes customer order data, warranty information, service tags, customer names, installation locations, customer phone number, and order number.
BleepingComputer spoke with the Threat Actor, operating under the moniker Menelik, who initially tried selling the stolen data. In summary, they became an authorized partner in 24hrs - 48hrs using (using presumably bogus information) and began brute forcing the DELL partner API with 7-digit service tags looking for valid data.
They reportedly were sending 5,000 API requests a minute for 3 weeks. DELL took no action stopping the API brute forcing.
Read the full story and get more information here: https://www.bleepingcomputer.com/news/security/dell-api-abused-to-steal-49-million-customer-records-in-data-breach/
No, that's not a bunny. Stop being ignorant. That is an ultra rare Russian Forest Jumppity Cat
Читать полностью…We always avoided discussing the name of IntelBroker's group because it was so wildly inflammatory. Twitter doesn't care though 💀
Читать полностью…Someone requested we post a picture of their cat. We said "Okie". This is Nugget. It's a kitty cat.
Читать полностью…What CloudFlare configurations do we need to defend against a G5 Geomagnetic Storm that introduces several Earth-directed Coronal Mass Ejections (CMEs) created by a large, complex sunspot cluster that's roughly 17 times the diameter of Earth?
Читать полностью…The 5 horsemen of the apocalypse: Spyware, Ransomware, Botnet, Stealer, and Adware
Читать полностью…We got offered a super cool job at Costco. We're actively working on joining their team to launder money, or get scammed, or something.
(Miranda thinks it's cool we watch anime)
Today on Breached a Threat Actor operating under the moniker IntelBroker claimed to have compromised EUROPOL.
We have no way to validate its authenticity, but it sure looks real.
¯\_(ツ)_/¯
Zscaler confirmed Wednesday that they've been breached. They state they can confirm it was one of their test environments that was compromised.
They state no customer information was stolen and no businesses have been affected
Lockbit ransomware group has made a post today about a contest (titled: contest.omg) to contact Dmitry Khoroshev – they assert the FBI is wrong and LockbitSupp is NOT Dmitry Khoroshev.
They're offering $1,000 if you can contact Dmitry Khoroshev to see if he is alive and well
We've updated the vx-underground APT collection for April, 2024.
Download the malware
Download the malware
Download the malware
Download the malware
Download the malware
Download the malware
Download the malware
Download the malware
Download the malware
Download the malware
We stand with StackOverflow nerds (even though they'll fist fight you all night over a repeated question you didn't know existed because it was posted 13 years ago).
Читать полностью…We've updated the VXUG source code repository on GitHub and our builder collection
Builders:
-Win32.MetaStealer
-Win32.WhiteSnakeStealer
-Win32.TitanStealer.b
Source code:
-Panel.Amadey.d.c
-Android.BrkwlLoader
-Android.OctoBankBot
-Android.Phoenix
https://github.com/vxunderground/MalwareSourceCode
We're releasing a super top secret TLP:RED document. It is a secret wallpaper. It is password protected.
https://vx-underground.org/tmp
Someone requested we share a picture of their shoe (it's cat disguised as a shoe, they're very sneaky)
Читать полностью…You bought a domain name for a project you either didn't start or didn't finish.
Meanwhile on Minecraft nerds are rebuilding Bloodborne
Today we've discovered a new DoS technique
Trigger a G5 Geomagnetic Storm and introduce several Earth-directed Coronal Mass Ejections (CMEs) by creating a large, complex sunspot cluster that's roughly 17 times the diameter of Earth
This will cause computer problems somewhere
Our opinion is LockbitSupp is indeed Dmitry Khoroshev. However, Mr. Khoroshev is a wealthy man, with multiple businesses, and arguably the longest running ransomware empire in modern history.
He's a stone cold psychopath and he's playing 3d chess with the FBI 😂😂😂
FBI Most Wanted Wazawaka a/k/a Mikhail Pavlovich Matveev has returned with a nice video of him in a luxary car.
Wazawaka, Вы выглядите счастливым и здоровым. Твоя прическа и очки выглядят очень красиво, братан.
Video via azalsecurity
Good morning,
Heads up to anyone who follows our RansomwareNews bot on Twitter: Lockbit ransomware group has listed 70+ companies today — we assume these are repeat posts and are retaliation to recent law enforcement action.
Anyway, expect your timeline to be flooded.
StackOverflow is in the midst of a civil war.
Recently StackOverflow established a partnership with OpenAI. Users have begun to rebel against this by deleting answers. StackOverflow has retaliated by doing sweeping bans
https://www.tomshardware.com/tech-industry/artificial-intelligence/stack-overflow-bans-users-en-masse-for-rebelling-against-openai-partnership-users-banned-for-deleting-answers-to-prevent-them-being-used-to-train-chatgpt
A performative dance isn't going to impress nerds. It might impress business people – but def' not nerds.
Want to impress nerds? Bring a bunch of old printers and let nerds smash them with a hammer. You'll have nerds brawling for a chance to smash a printer.