40629
The largest collection of malware source, samples, and papers on the internet. Password: infected https://vx-underground.org/
We've received our additional computer equipment, which we received from you beautiful nerds. Before we proceed with updates to vx-underground we need to move 7TB of data.
However, due to the poor host machine with the new equipment, it might take sometime...
We've updated the vx-underground malware defense collection. We've added 164 new malware analysis papers.
You can check it out here: https://www.vx-underground.org
Thank you to our friend LaurieWired for this incredible video. She is a queen
Читать полностью…
We're back on our meme spree. We have a bunch of malware samples and papers to add.
First we need to adjust our focus to the new VXDB by making sure all samples are available there. The intermediate period will be memes and news on cybercrime, or something.
Hackers hacking the unhackable password
Part 1.
Our malware database, https://virus.exchange, is an open source and free database where you can easily search through our malware collection.
It currently possesses roughly half of our malware samples.
Lockbit ransomware group, which has been relatively inactive for a few months, just dropped 20+ victims in a single day.
They've also reindexed their entire site, over 100+ previous victims are now listed as being leaked today.
Medusa ransomware group claims to have ransomed 'SkynetWisp'. SkynetWisp is satellite internet service provider, primarily serving rural communities in the Houston, Texas area.
They are asking for $100,000
Information via AlvieriD
Initial discovery as a banking trojan goes as far back as 2007*, others state 2008*, some note the current instance of the known Qakbot as starting in 2015 or 2016*
Malware analysts all across the world will proclaim today an internationally recognized holiday.
Just purchased a copy of the one of the most dangerous books in history!!!11 😎
Читать полностью…
Hello,
Special thanks to the wonderful people at Akamai - they removed the block on our domain. Spectrum users should (eventually) be able to access our CDN soon once things are updated on their end.
Thank you everyone who helped us. Love you 😘
Hello,
A kind soul informed us that Spectrum has issued a company wide block on our CDN samples.vx-underground.
Spectrum labeled us as such because Akamai ThreatAvert has labeled us as malicious.
Akamai employees: please fix this 🥺
Russian law enforcement have begun arresting hackers in Russia.
June, 2023 - Six individuals in Rostov arrested for identity theft
August, 2023 - Malware developer from Krasnodar arrested, sentenced to 5 years in prison
All arrested committed crimes to NATO countries 🤔
Today it was reported an unknown Threat Actor successfully compromised Poland's railway system.
The Threat Actors triggered an emergency stop signal which brought 20 trains to a stop near the city of Szczecin
More information: https://www.bbc.com/news/world-europe-66630260
An internationally wanted cyber criminal, and an individual on the FBIs Most Wanted List, is running a poll on Twitter. He is asking if individuals are interested in purchasing ransomware swag.
He is selling t-shirts with his FBI Most Wanted poster on them. He does not respect the FBI or the United States government. 😂
We've updated the vx-underground malware sample collection.
Bulk downloads of malware:
- InTheWild.0086
- InTheWild.0087
- InTheWild.0088
- 60,000 unique binaries
Malware family collection updates:
- BlackBastaRansomware
- Cl0pRansomware
- DoubleZeroWiper
- Emotet
- Gh0stRAT
- Havoc
- IcedId
- PhobosRansomware
- RoyalRansomware
- SystemBC
- TitanStealer
- ViperSoftX
- Xenomorph
You can check it out here: https://www.vx-underground.org/
Dear Microsoft Edge,
Please stop flagging our GitHub repo as malicious.
Thanks,
Hackers hacking the unhackable password
Part 2.
We understand the the malware database website is offline for some users.
Nerds are DDoSing us. This is why we can't have nice things. If we find you dorks DDoSing us we're going to bonk you with 1,000 monkeys.
You may not like it but this is how network administrators and network engineers are made
Читать полностью…
POV you've walked into a book store and browse the computer science section
Читать полностью…
We've updated the vx-underground malware sample collection... sort of?
We've added FBI Operation Duck Hunt 'Untether'. This is the payload the FBI deployed to untether infected machines from the QakBot botnet =D
Check it out here: https://www.vx-underground.org/
Arm sent cease-and-desist letters to Azeria Fox for the domain names containing the word 'arm'. Thankfully their jackass lawyers can't claim leg 😂
http://leg-assembly.com/
Today the Federal Bureau of Investigation announced they have dismantled the Qakbot botnet. Qakbot has been one of the longest standing botnets in history, dating back to 2011.
FBI Director Christopher Wray made an announcement regarding the takedown: https://www.youtube.com/watch?v=mIeUT0QmqfU
Arm has sent Azeria Fox a cease-and-desist letter for 'copyright infringement'. Arm will own 4 of her domains related to Arm reverse engineering, internals, basics, and exploitation. Her blog (https://azeria-labs.com) is also currently blocked. They may soon discontinue her book.
Читать полностью…
We've updated the vx-underground malware sample collection
- AresLoader
- Remcos
- CobaltStrike
- CerberRansomware
- Emotet
- Limerat
- AgentTesla
- RedLine
- Gopuram
- RedCap
- TrickBot
- FormBook
- QakBot
Check it out here: https://www.vx-underground.org
We are receiving reports from people in the greater Los Angeles area that they are unable to retrieve content from vx-underground. They are informing us Spectrum (their ISP) has blackholed vx-underground's CDN which is samples.vx-underground.
Using Google DNS resolves the issue
Arion Kurtaj, a member of the LAPSU$ group, is still in the middle of his court case in the UK.
Court physicians have deemed him not fit to stand trial because he is intellectually disabled
The jury are debating whether or not Kurtaj had criminal intent while a member of LAPSU$
We've updated the vx-underground paper collection
- 2022-12-23 - (Yet another) Simple PE Loader
- 2023-08-16 - Understanding Syscalls Direct & Indirect
- 2023-07-15 - Unveiling Secrets in Binaries using Code Detection Strategies
Check it out here: https://www.vx-underground.org/