We're still in the process of restoring the virus exchange data. In the meantime, as we process and restore data, we can now get real accurate data.
Unique samples:
APTs: 36,547
APK Collection: 24,553
Virusshare.00000: 87,072
Virusshare.00001: 70,927
Virusshare.00002: 37,847
Virusshare.00003: 122,306
Virusshare.00004: 113,896
Virusshare.00005: 99,708
Samples restored: 592,856
Remaining: idk, like, 39,400,000
Try not to cringe level: DEATH WISH
The entire 71 minutes of the pilot episode. Do you have what it takes? Can you survive 71 raw action packed minutes of Erik Martin and his hacker skills?
Viewer discretion advised. Cringe is lethal.
https://www.dailymotion.com/video/x9cu5dq
The fight between our previous hosting provider has escalated. Instead of exchanging passive-aggressive (yet professional) e-mails, we will be restoring the entire 20TB collection from a local NAS on a residential line.
We keep it gangsta, dawg
Correction:
We made a post about the recent legislation changes between the United States and Canada impacting social media. We have been corrected by our Canadian friends that this has been the case for several years in Canada now due to laws to combat misinformation.
We were mislead by social media discussions to believe that this is the result of tariffs. Current discussions (primarily from Americans) suggest these blocks are new.
tl;dr misinformationed by Americans, or political agendas, whatever
Besides being malware experts, we're also business extraordinaires (we're bad at both)
Читать полностью…Updates:
- Massive APT paper and APT sample ingestion. It ranges from October, 2024 to January, 2025. All papers were aggregated from the work of staff member f0wlsec. You can stop asking about APT collection updates. The updates are here. It is roughly 2,000 malicious binaries.
- Migration of primary website (vx-underground) is virtually complete. All backend content has been moved. Front end performance issues have been resolved. This is thanks to staff member guessthepw and our friends at TorGuard
- We are actively working on migrating virus-dot-exchange still. Due to the large size of the bucket (in excess of 20TB, approx.) we've been exchanging passive-aggressive (yet professional) words with our previous hosting provider. They are sort of unhappy with us writing code which is indexing, and rcloning, 40,000,000+ malicious binaries. We are forced to break the previous bucket down into sub-buckets and then migrate them.
- Black Mass Volume III is still in production. However, we regretfully announce following the release of this issue, staff member b0t will be resigning from his position. He is moving to greener pastures.
If no one else does it, we'll unironically make this, open source it, make it available for download because ???
Clippy is back mfer
In other words, for the low price of $848, you can purchase (probably) state-sponsored malware that was designed to exfiltrate your healthcare information
Читать полностью…More information: https://www.justice.gov/opa/pr/four-members-online-neo-nazi-group-exploited-minors-charged-producing-child-sexual-abuse
Читать полностью…> wake up
> go poop
> get out of bed
> check dms
> scammers asks "how were you scammed"
> never said we were scammed
> tries to scam us
> doesnt elaborate
United States foreign adversaries and financially motivated Threat Actors seeing the new FBI Director
Читать полностью…This is a clip from: "You Fired A Tech Genius" produced by ReelShort.
Originally found by malwrhunterteam, cross-posted from X
We're throwin' up gang signs at the computer monitor to some underpaid help desk representative in Massachusetts (we're gangsta, dawg)
Читать полностью…United States***, sorry. Our smart man paper reading thingies are from taco place and maple syrup land, can no think good no more
Читать полностью…To comply with United Stated law any user visiting our website from Canada or Mexico will be tariffed 25%. Chinese users will be tariffed 10%
Visitors from Mexico fee: $0.
Visitors from Canada fee: $0.
Visitors from China fee: ¥0
We apologize for this inconvenience.
Chat, we were lied to this entire time. It's been nothing but anti-clippy propaganda.
Someone has produced a new clippy for Windows 10 and Windows 11
https://github.com/FireCubeStudios/Clippy
> make clippy guy
> provide him with basic animations
> install local deepseek
> put deepseek in clippy
updates to vxug but its saturday and playing roblox with da homies (were hardcore gamers) (need free robux plz)
Читать полностью…Today the US Cybersecurity and Infrastructure Security Agency (CISA) reported a backdoor on two patient monitors.
As cybersecurity people, we find this deeply troubling. As malware people, we find this cool and badass.
https://www.bleepingcomputer.com/news/security/backdoor-found-in-two-healthcare-patient-monitors-linked-to-ip-in-china/
[Content Warning: This post contains graphic descriptions that may be disturbing to some readers]
On January 30th, 2025, the United States Department of Justice released a statement on the arrest of 2 individuals residing in the United States on charges of ... "participating in a neo-Nazi child exploitation enterprise that grooms and coerces minors to produce child sexual abuse material (CSAM)." known online as CVLT (pronounced CULT).
- Colin John Thomas Walker, 23, of Bridgeton, New Jersey
- Clint Jordan Lopaka Nahooikaika Borge, 41, of Pahoa, Hawaii
Both individuals made initial court appearances on January 30th, 2025 before a grand jury.
Additionally, the United States Federal Bureau of Investigation, in conjunction with foreign partners, brought more charges against 2 individuals currently in prison.
- Rohan Sandeep Rane, 28, of Antibes, France
- Kaleb Christopher Merritt, 24, of Spring, Texas
Both Mr. Rane and Mr. Merritt are being charged with one count of engaging in a child exploitation enterprise.
Between 2019 and 2022 Mr. Rane, Mr. Walker, Mr. Merritt, and Mr. Borge, acted as leaders and administrators of CVLT. They were responsible for hosting, running, and controlling membership of the group.
Mr. Rane, Mr. Walker, Mr. Merritt, and Mr. Borge worked collectively to entice and coerce children into self-producing CSAM. The individuals groomed children for eventual production of CSAM by means of degradation. Mr. Rane, Mr. Walker, Mr. Merritt, and Mr. Borge, often exposed children to extremist and violent content. They often collectively targeted vulnerable victims, including children who suffer from mental health issues or have a history of sexual abuse.
Mr. Rane, Mr. Walker, Mr. Merritt, and Mr. Borge, often encouraged their victims to perform dehumanizing acts such as:
- Eating their own hair
- Drinking their own urine
- Punching themselves
- Calling themselves racial slurs
- Self-strangulation with belts
- Inserting knives or cacti into their genitals
- Pornography involving pets or animals
- Having victims produce pornography of other children
- Having the children carve "CVLT" into themselves
... in one documented instance Mr. Rane, Mr. Walker, Mr. Merritt, and Mr. Borge, escalated the harassment and tried to convince a child to commit suicide on live camera.
Often when victims refused, or threatened to notify parents or law enforcement, Mr. Rane, Mr. Walker, Mr. Merritt, and Mr. Borge, would increase harassment and begin sending CSAM footage produced by the child to their friends and/or family.
Due to the severity of the crimes — Colin John Thomas Walker, Clint Jordan Lopaka Nahooikaika Borge, and Kaleb Christopher Merritt are facing life in prison. Although, Mr. Merritt is currently serving 50 years in prison in Virginia. If found guilty, Mr. Merritt will receive an additional life sentence on top of his 50 years.
Today the United States Department of Justice released a statement regarding the Nulled, Cracked, and Sellix takedown.
Cracked (and Sellix):
The United States Department of Justice has stated they believe Cracked has performed cybercrime and fraud which has impacted over 17,000,000 United States citizens.
A notable example, provided by the United States Federal Bureau of Investigation, was Cracked user(s) using data and services provided by Cracked to perform sextortion campaigns. According to the Federal Bureau of Investigation, a woman in the Western District of New York City was a victim of sextortion campaign from Cracked user(s). Using this woman's leaked credentials online, these individuals allegedly cyberstalked her, sent sexually demeaning messages, and threatened the woman.
Additionally, the Department of Justice unveiled while working with foreign partners they have seized and retrieved all of Cracked's servers and infrastructure, including their alleged payment processor provider Sellix.
Nulled:
The Department of Justice unveiled the arrest of a 29 year old Argentinian citizen residing in Spain. Nulled's administrator, Lucas Sohn, was apprehended a few days pursuant to United States affidavits and International Law. The Federal Bureau of Investigation notes Mr. Sohn to have profited in excess of $1,000,000 per year as the administrator of the forum.
Furthermore, the Department of Justice unveiled all infrastructure used by Nulled has been seized by law enforcement.
There is no information regarding if the United States government is attempting to extradite Mr. Sohn to the United States. However, in Spain Mr. Sohn is being charged with:
- Conspiracy to traffic in passwords and similar information through which computers may be accessed without authorization
- Conspiracy to solicit another person for the purpose of offering an access device or selling information regarding an access device
- Conspiracy to possess, transfer, or use a means of identification of another person with the intent to commit or to aid and abet or in connection with any unlawful activity that is a violation of federal law.
In accordance to Spain's law, per the United States Department of Justice, Mr. Sohn (if found guilty) is facing a maximum sentence of 30 years in prison. Unlike the United States, Spain does not perform consecutive sentencing, meaning the sentences may be stacked charges.*