vxunderground | Unsorted

Telegram-канал vxunderground - vx-underground

40629

The largest collection of malware source, samples, and papers on the internet. Password: infected https://vx-underground.org/

Subscribe to a channel

vx-underground

Hello.

We are aware Anonymous Sudan is DDoSing us.

We are a free educational library for everyone - researchers, students, the morbidly curious. We profit very little, we rely on monthly donations and sponsors to survive.

If nerds want us offline - guess we'll stay offline😕

Читать полностью…

vx-underground

tl;dr free advertisement for the FBI 😂😂😂

Читать полностью…

vx-underground

Hi,

We are behind on things right now. We have not announced the Mullvad VPN giveaways winners, given the MATLAB malcode people their VXUG merchandise, and we are facing issues from our publisher on Black Mass.

We'll get everything resolved. Sorry for the delays:(

Читать полностью…

vx-underground

Thank you for the lovely image, Lockbit ransomware group.

Читать полностью…

vx-underground

vx-underground is temporarily offline again.

Lockbit ransomware group is hitting us with a colossal DDoS attack.

Читать полностью…

vx-underground

Hello, how are you?

In this edition of Black Mass Volume II. we had over 8 individuals agree to submit work. 4 of those individuals backed out during development.

Any person which backs out after agreement will be permanently banned from vx-underground.

Have a nice day.

Читать полностью…

vx-underground

For those wondering: Yes, this is the same "USDoD" listed on the Pompompurin indictment. They are believed to be behind many other high profile breaches.

Читать полностью…

vx-underground

If you have any recommendations for non-profits, please send us an e-mail at staff@vx-underground.org.

We will be donating our Twitter revenue every 2 weeks.

Читать полностью…

vx-underground

After we complete our data migration vx-underground will have a new look again. Sponsors will be listed on top as soon as you view the website.

If any of you nerds complain, we will send you the monthly bills and ask you to pay staff member salaries.

So shut up, it's all free.

Читать полностью…

vx-underground

Hackers don't wear hoodies.

You may not like it, but this is what hackers actually look like.

Читать полностью…

vx-underground

In celebration of Black Mass Volume II's soon release, everything on the vx-underground merch store is 20% off.

Go to https://vx-underwear.org and use code BLACKMASS. The discount ends September 20th, 2023.

Читать полностью…

vx-underground

Thank you to the person who sent us a lovely poem... from Greece's... Hellenic Army?

Image 1. Lovely poem
Image 2. Email headers

Читать полностью…

vx-underground

We have passed 23,000 subscribers on Telegram.

Thank you for the love and support. ❤️

We look forward for continually serving you all with malware source code, samples, papers and our dumb memes.

Thanks,

Читать полностью…

vx-underground

While everyone is focusing on the catastrophe of the MGM breach, it should be noted that it is business as usual for other ransomware groups.

Note: Publicly listed victims on ransomware websites indicate the victim did not pay and/or negotiations are still on-going.

- Cactus ransomware group was the most active this month (so far), with 30 new victims publicly displayed. Their victims are primarily agricultural and industrial organizations.

- ALPHV ransomware group claims 19 new victims in September. Besides MGM, they have claimed law firms, architecture and design companies, real estate companies, physicians offices, investment companies, and media analysis companies.

- Lockbit ransomware group claims 19 new victims as well. Lockbit ransomware group most notably targeted a non-profit hospital, a Behavioral health center for the mentally ill, 2 school distracts located within the United States, and law firm which represents American Veterans who need legal assistance.

- CryptBB, a new and emerging group, claimed 8 victims, most notably a school district in the United States.

- NoEscape claims to have compromised US-Canada water organization, the International Joint Commission, and threatens to leak sensitive government data.

- BianLain attacks Save the Children International, a 104 year old non-profit which aided children who were victims of WW2 nazi concentration camps (among many other incredible deeds).

- RansomedVC claims 30 new victims this month, primarily leveraging web exploitation and intimidation tactics.

Other active ransomware group activity this month: RagnarLocker, Threeam, CiphBit, Trigona, Knight, Akira, Monti, Stormous, Blacksuit, Play, RansomHouse, IncRansom, Lorenz, BlackByte, Qilin, RaGroup, Everest, Mallox, Medusa, Rhysida, 8base, Abyss.

In the month of September, 2023, there have been over 200 newly documented ransomware attacks. Again, this does not include victims who have paid.

The most notorious groups still remain on top: ALPHV and Lockbit. Both have existed (in some manner) since at least 2019.

Читать полностью…

vx-underground

U+4VeZwaR37JIofFHKafYTXVXQhP278yfarcWWRwZlI=

Читать полностью…

vx-underground

Today Elon Musk announced intentions to make ALL users pay fees to use Twitter. He has not stated how much he would charge other than ... "a small fee"

More information: https://www.cnbc.com/2023/09/18/musk-says-twitter-now-x-is-moving-to-monthly-subscriptions.html

Читать полностью…

vx-underground

Per the request of Mikhail Matveev - we will sell his FBI Most Wanted poster on vx-underground. This will be on t-shirts and posters.

Due to sanctions placed on him by the United States government he will not be paid for any purchase on merchandise.

He is crazy 😂😂😂

Читать полностью…

vx-underground

Black Mass Volume II is being delayed. We're having problems with our publisher.

Читать полностью…

vx-underground

We're back.

Thank you for the complimentary DDoS attack, Lockbit.

Читать полностью…

vx-underground

Thank you to the wonderful people at Lockbit ransomware group for the complimentary DDoS attack.

Читать полностью…

vx-underground

Today our friend DissentDoe did an interview with the Threat Actor "USDoD". In the interview he discusses his childhood, his personal beliefs, and how he got access to NATO using a compromised Greece military e-mail address

... (the same email we got an email from) ...

... and how after gaining access it appears it triggered a NATO incident response and he lost access. It is a fascinating interview. It is also remarkably impressive how fast NATO potentially identified a compromise.

It appears NATO takes it cyber security seriously.

Read the full interview here: https://www.databreaches.net/im-not-pro-russia-and-im-not-a-terrorist-infragard-and-airbus-hacker-usdod-unveils-his-new-campaigns/

Читать полностью…

vx-underground

Today a Threat Actor named "USDoD" leaked sensitive data from TransUnion. This won't be the last of "USDoD" today though. He also compromised NATO. We'll discuss that later. But first, TransUnion.

The leaked database, over 3GB in size, contains highly sensitive PII on 58,505 people. The database appears to be compromised March 2nd, 2022. This leaked database has information on individuals all across the globe including the Americas (North and South), as well as Europe.

Leaked data includes:

- First name
- Last name
- Internal TransUnion identifiers
- Sex
- Passport information
- Place of Birth
- Date of Birth
- Civil Status (?)
- Age
- Their current employer
- Information on their employer
- Summary of financial transactions
- Credit Score
- Loans in their name
- Remaining balances on the loans
- Where they got the loan from,
- When TransUnion first began monitoring their information

Читать полностью…

vx-underground

We have received our first Twitter payout. We received $285.63. We donated the full amount to WiCyS (Women in CyberSecurity).

We will continue to donate our monthly Twitter revenue to non-profits.

Have a nice day.

Читать полностью…

vx-underground

ChatGPT is becoming so advanced it can now emulate being a jackass

Читать полностью…

vx-underground

How to make nerds rage

Читать полностью…

vx-underground

Today it was reported an unidentified Threat Actor(s) compromised Mark Cuban - an American Billionaire, Investor and owner of the Dallas Mavericks. The Threat Actors stole approx. $870,000 worth of cryptocurrency.

More information here: https://www.dlnews.com/articles/people-culture/mark-cuban-loses-870k-to-a-crypto-scam/

Читать полностью…

vx-underground

Today Lockbit ransomware group issued a poll to all of their affiliates

Lockbit is considering implementing new rules for Lockbit affiliates due to their frustration with ransomware negotiators. Currently, Lockbit ransomware group has no rules in place for how much (or how little) affiliates can ransom a company for. They are considering "regulating" ransom demands

They state newer affiliates are giving large discounts to victim companies out of desperation for money, whereas more experienced affiliates do not cave to negotiator's proposed payment from the victims

National Hazard Agency, a subdivision of Lockbit ransomware group, has stated they will no longer accept payments below 3% of the companies annual revenue. They will immediately retaliate against any negotiator who approaches them with an offer of less than 3% of the companies revenue. The retaliation will be complete destruction of company data

Image 1. Original Lockbit poll
Image 2. Translated poll
Image 3. Message from National Hazard Agency

Читать полностью…

vx-underground

For Black Mass Volume II we spent an extra shiny penny, from our own pockets, to hire an artist who is an illustrator for Magic: The Gathering, Mythgard Tcg, Hit PointPress, Adi Shankar/Netflix, Legendary Games, and more.

Thanks to Wero Gallo Arias for the amazing work.

Читать полностью…

vx-underground

Okay, we deleted the previous tweet because now we're giving away 4 one year subscriptions to MULLVAD. Hahaha.

It on Twitter:)

https://twitter.com/vxunderground/status/1702720582293311896

Читать полностью…

vx-underground

Thank you to the ALPHV ransomware group administrative staff for correcting their blog post and correcting the misattribution to us.

We wholeheartedly appreciate.

Читать полностью…
Subscribe to a channel