У вас закончился пробный период!
Для полного доступа к функционалу, пожалуйста, оплатите премиум подписку
Возраст канала
Создан
Язык
Английский
3.67%
Вовлеченность по реакциям средняя за неделю
10.12%
Вовлеченность по просмотрам средняя за неделю

The largest collection of malware source, samples, and papers on the internet.

Password: infected

Сообщения Статистика
Репосты и цитирования
Сети публикаций
Сателлиты
Контакты
История
Топ категорий
Здесь будут отображены главные категории публикаций.
Топ упоминаний
Здесь будут отображены наиболее частые упоминания людей, организаций и мест.
Найден 651 результат
VX
vx-underground
63 503 подписчика
161
43
2.7 k
tl;dr long written opinion on being new to cybersecurity, list my experience as a reference to a "jr" role requirement list, show how much of a noob i am, yapping like a yapper

funny_cat_picture_with_caption.png

Non-tldr:

Earlier someone made a comment on one of our posts about requirements for Juniors in cybersecurity. The list was pretty extensive. This isn't a diss to this person, but I strongly disagree with their opinion. Here is what they listed as a requirement to be a Junior in cybersecurity:

• Strong experience in Linux servers and AD
• Must hold at least CCNA, CCNP, CompTIA
• Strong knowledge of cloud computing like AWS, Azure, GCP
• Must have Security+, CEH, CISSP, Cisco CyberOps
• Knowledge of SQL, Oracle db, with Java, Python, C++

If these were required, I wouldn't have a job.

- Never attended a university. Never attended a college. Finished High School (primary school for nerds in UK, EU?) with average grades.

- I use Linux as a daily driver (Ubuntu), and I use Windows 11 for video games and doing C/C++ development. I would not consider myself "strong" in Linux — there are some seriously hardcore Linux nerds. I can use it, I can Google stuff, but I am not "strong" (in my opinion).

- Little to no experience with AD. I've used it in enterprise environments, I'm aware of basic concepts of exploitation of it and lateral movement, but I am nowhere near capable of doing anything serious or important with it. Shoutout the Network and/or System administrators who do stuff with Forests, or something, some buzzword I remember.

- I don't possess any certificates. My understanding of networking is limited to the TCP/IP model (can barely remember OSI model), and basics of headers. My knowledge of networking primarily revolves around using it when programming. I will instantly fail any Cisco related certificate. I can use Wireshark. Am I cool enough?

- I possess little to no knowledge on Cloud computing. I can upload and download files, I can copy and move things, I know how to list files. I know the basics of creating a bucket and doing permissions, but I am by no means an expert. I praise the nerds who do Cloud stuff and DevOps because I think it's boring.

- I've been coding in C for 19 years. I consider myself strong in it. However, I still don't know "everything". I've been studying and/or doing Windows internals stuff for over 10 years. I consider myself "strong", but there are some truly brilliant people who I believe can walk circles around me and make me look like an idiot. There are many, many, many times I realize I have a knowledge gap or make a really obvious and dumb mistake (probably like, every day)

I can code (without using AI like a total dork) in C, C++, Visual Basic .NET framework), C# (.NET framework), Python, AutoIT, Python, x86/x64 MASM, T-SQL. However, my usage of them is varied and many of them I'm extremely rusty.

My opinion is that if you want to do something in cybersecurity, do what you enjoy and do it well. If you want a job you need to apply places, talk to people, get involved, and try hard. You don't need to go to conferences, but cybersecurity is a rapidly evolving field and (similar to Doctors of Medicine), is it profoundly important to remain actively engaged (Continual Education*). Things change daily. You need to be somewhere, doing something, to pay attention and understand what is happening.

- smelly
26.04.2025, 12:44
t.me/vxunderground/6430
VX
vx-underground
63 503 подписчика
23
2
2.9 k
Updates to the vx-underground collection:

- 2011-07-04 - Mixing x86 with x64 code
- 2018-04-11 - WoW64 internals
- 2023-04-19 - WOW64 Callback Table - FinFisher
- 2025-04-16 - Control Flow Hijacking via Data Pointers
26.04.2025, 12:05
t.me/vxunderground/6429
VX
vx-underground
63 503 подписчика
143
3
4.0 k
Imma be real with you, Chat. I've been unfathomably busy IRL and it's brought me immense joy schizo-posting satirical nonsense to thousands of people.
26.04.2025, 03:38
t.me/vxunderground/6428
VX
vx-underground
63 503 подписчика
153
27
4.2 k
The naming convention "Trojan" easily confuses people i.e. Remote Access Trojan. Unfortunately, due to successful media campaigns, the term Trojan is now closely affiliated to condoms.

Instead we petition to formally change the term to something which is reminiscent of the term "Trojan Horse", and carries the same meaning

Suggestion: Horse

Example(s):

- Remote Access Horse
- Sophisticated Horse
- "... The Threat Actors inserted a Horse payload into the Word document..."

Laymen can easily identify a horse and they will understand the concept of a horse on the loose is very dangerous. You can explain to customers there is a horse loose in their computer and the horse is causing serious damage.
26.04.2025, 03:34
t.me/vxunderground/6427
VX
vx-underground
63 503 подписчика
140
19
4.6 k
This is pretty much what it's like dealing with malware droppers

You're like, oh sweet, it's a kitty cat. But then you discover it's actually a barrage of kitty cats and that's fine but you didn't expect so many at once
25.04.2025, 22:34
t.me/vxunderground/6426
VX
vx-underground
63 503 подписчика
177
52
5.0 k
It's so privacy focused, it takes images of what you're doing every 90 seconds to ensure you're not making any opsec mistakes.

It then saves it in a super secure location (APP DATA) so then you can review it later if you want
25.04.2025, 22:09
t.me/vxunderground/6425
VX
vx-underground
63 503 подписчика
206
41
5.0 k
Windows 11 is the more secure and privacy focused Operating System

Only real privacy enthusiasts use it
25.04.2025, 22:07
t.me/vxunderground/6424
VX
vx-underground
63 503 подписчика
308
48
5.6 k
Hello,

To work in IT and/or cyber security...

You don't like have to like Linux, you don't have to like C (or Assembly), you don't have to like Mr Robot, you don't have to go to conferences or meetups, you don't have to prefer IRC over Discord, you don't have to have a fancy setup

You can like or dislike whatever you want. Don't feel pressured to think or behave a certain way.

ok ttyl love u, kissies
- smelly
25.04.2025, 20:23
t.me/vxunderground/6423
VX
vx-underground
63 503 подписчика
161
37
6.2 k
TeamSpeak is in the restroom, shadowboxing in their underwear, praying to God that Discord does something stupid(er) and results in a user base collapse
25.04.2025, 07:57
t.me/vxunderground/6422
VX
vx-underground
63 503 подписчика
192
89
6.7 k
Discord CEO stepped down. The new upcoming CEO was previously the CEO of Activision. His resume includes the implementation of micro-transactions in Call of Duty.

Imagine if Discord suddenly introduces micro-transactions, like paying $10/month for unlimited call times 😂
25.04.2025, 07:56
t.me/vxunderground/6421
VX
vx-underground
63 503 подписчика
31
9
6.0 k
Updates to the vx-underground collection:

- 2025-03-02 - Abusing IDispatch for Trapped COM Object Access Injecting into PPL Processes
- 2025-04-03 - CreateFileMapping to replace ReadFile
- 2025-04-08 - Notes on bypassing mailbox audit logs
25.04.2025, 07:01
t.me/vxunderground/6420
VX
vx-underground
63 503 подписчика
245
43
6.1 k
No idea what's going on, but the bucket they reference has millions upon millions of malicious binaries.

How did miss the other 36,999,999 malwares
24.04.2025, 17:15
t.me/vxunderground/6419
VX
vx-underground
63 503 подписчика
328
61
6.2 k
Today virus exchange was banned from our (other) hosting provider (Wasabi). They claim our domain virus-dot-exchange has malware on it.

They cited 1 specific file hash and stated virus exchange is disabled until we can explain why we have 1 malware on the server

What the fuck?
24.04.2025, 17:13
t.me/vxunderground/6418
VX
vx-underground
63 503 подписчика
135
25
5.8 k
getting emotional right now, thinking of windows xp and listening to evanescence

https://www.youtube.com/watch?v=5anLPw0Efmo
24.04.2025, 04:48
t.me/vxunderground/6417
VX
vx-underground
63 503 подписчика
40
7
5.5 k
Updates to the vx-underground collection:

Papers:
- 2004-06-06 - Execution redirection thru Image File Execution Options key
- 2025-04-07 - Bypass WDAC WinDbg Preview
- 2025-04-17 - Notes on RtlGetUnloadEventTraceEx

Malwares:
- InTheWild.0152
- InTheWild.0153
- InTheWild.0154
- InTheWild.0155
- InTheWild.0156
- InTheWild.0157
- InTheWild.0158
- InTheWild.0159
24.04.2025, 04:27
t.me/vxunderground/6416
VX
vx-underground
63 503 подписчика
214
24
6.1 k
I hate seeing people write and/or say "cyber" in the context of cybersecurity i.e. "I'm studying for cyber right now".

The word "cyber" is an adjective — do you study big, tall, short, tiny, blue, stinky?

/me flips desk
23.04.2025, 10:43
t.me/vxunderground/6415
VX
vx-underground
63 503 подписчика
163
45
6.2 k
April 14th, 2025, David M. Dorbish Jr., passed away as a result of a suspected drug overdose.

David M. Dorbish Jr. was a prolific online serial swatter who plead guilty to 15 charges in 2020.
23.04.2025, 04:21
t.me/vxunderground/6414
VX
vx-underground
63 503 подписчика
106
36
6.0 k
wtf my cat has a computer virus
23.04.2025, 01:09
t.me/vxunderground/6413
VX
vx-underground
63 503 подписчика
95
71
5.9 k
Cats 🤝 Malware
23.04.2025, 01:06
t.me/vxunderground/6412
VX
vx-underground
63 503 подписчика
68
11
5.5 k
>be me
>work on crappy computer virus website
>uploading 200gb of bad computer programs
>bored
>listening to Primer 55
>looking at cat pictures

ok ttyl, gonna let stuff upload
23.04.2025, 00:55
t.me/vxunderground/6411
VX
vx-underground
63 503 подписчика
106
57
5.6 k
ultra rare kitty cat
23.04.2025, 00:53
t.me/vxunderground/6410
VX
vx-underground
63 503 подписчика
125
4
5.7 k
After we reassessed and improved our malware builders collection we've had a significant influx of people asking for the password.

Chat, the noobs are looking for malware
23.04.2025, 00:04
t.me/vxunderground/6409
VX
vx-underground
63 503 подписчика
123
6
6.2 k
Hello,

Currently uploading 175,000 new malwares. We've also got some papers and other stuff we've gotta add.

cat_picture.png
22.04.2025, 19:48
t.me/vxunderground/6408
VX
vx-underground
63 503 подписчика
239
40
6.9 k
4chans last words were, "Chicken Jockey"
22.04.2025, 17:25
t.me/vxunderground/6407
VX
vx-underground
63 503 подписчика
305
54
7.4 k
wtf why this dissin us
21.04.2025, 23:49
t.me/vxunderground/6406
VX
vx-underground
63 503 подписчика
173
31
6.1 k
Happy Easter

He has AMD Ryzen
20.04.2025, 19:52
t.me/vxunderground/6405
VX
vx-underground
63 503 подписчика
199
71
5.6 k
We've seen a bunch of dorks on Twitter use this meme format to insert mathematics and physics stuff into the Chad thought bubble.

Hate to be the bearer of bad news, but if you've ever actually spent your day doing something "intellectual intensive", your brain requires brain rot. You physically cannot brain science non-stop everyday. Do gym bros stay in the gym 24/7? Do athletes train 24/7? No. You need down time. The brain is (in some capacity) a muscle too which requires training.

The only people we've seen brain science hardcore non-stop are one of the following (sometimes multiple):

1. Autistic nerds (not memeing), some autistic people have God levels of focus
2. ADHD nerds, if you get them on that weird hyper-focus stuff they'll lock in for like, 4 days and not bathe or eat
3. Nerds on drugs, more common than you'd think, but the nerds abusing amphetamines (or nootropics in general) lock in pretty hard too, until they crash out and they're worthless slabs of meat for like, a week or more

Anyway, the entire point of this micro-rant is to tell some of you to not be brain washed by pseudo-intellectual grifters on social media. The entire part of braining is to have fun, explore, and learn. It isn't a competition, it isn't a "lOoK hOw SmaRt i Am" competition, it isn't a race to who can do the newest and coolest research.

When you're bored of a video game do you force yourself to like it? Same as brain stuff — you might try to force yourself through the boring parts, but eventually you'll be like, "this shit is lame", and move onto something you like more.

Look at cat pictures, laugh at edgy memes, understand there is time for braining and there is time for brain rot.

Okay, talk to you later, love you, mwah kissies kissies
-smelly smellington
20.04.2025, 09:46
t.me/vxunderground/6404
VX
vx-underground
63 503 подписчика
100
51
5.3 k
20.04.2025, 09:33
t.me/vxunderground/6403
VX
vx-underground
63 503 подписчика
200
37
5.4 k
One of my fondest memories of Lockbit ransomware group was when Lockbit ransomed a small nonprofit healthcare clinic in South America.

They begged him to decrypt the machines so they can provide treatment to people in need. They primarily provided healthcare to people in remote areas who have little to no money, education, or work.

Lockbit said: "If you have money for computers, you have money to pay me"

Wow, truly a heartwarming moment. Very cool.
20.04.2025, 09:04
t.me/vxunderground/6402
VX
vx-underground
63 503 подписчика
155
15
6.1 k
Please drink and drive responsibly
20.04.2025, 00:10
t.me/vxunderground/6401
VX
vx-underground
63 503 подписчика
194
80
6.4 k
Removed weird balloon thing from car. Now can safely store beer in car
20.04.2025, 00:09
t.me/vxunderground/6400
VX
vx-underground
63 503 подписчика
222
68
6.5 k
18.04.2025, 20:49
t.me/vxunderground/6399
VX
vx-underground
63 503 подписчика
165
10
6.0 k
Hello,

We've removed the post on the Bubble zero day. The purpose of the post was to draw attention to the issue — which was indeed addressed.

As a recap, 2 researchers published a paper on Bubble-dot-io and how to exploit it. Bubble ignored them. We were requested to relay the issue loudly so it was addressed. It was addressed. Bubble asserts they do not consider this an exploit because this is the result of users failing to RTM and follow the Bubble security guidelines.

I will personally take the L that it was a stretch to classify this as zero day when this is the result of users not following the Bubble best practices guide. It does not impact Bubble in totality.

tl;dr 2 guys 1 bubble
18.04.2025, 20:09
t.me/vxunderground/6398
VX
vx-underground
63 503 подписчика
157
14
6.0 k
They also called us an embarrassment and said our post is borderline malicious because it is misleading because (or the researchers, whoever), did not read the security guidelines.
18.04.2025, 18:13
t.me/vxunderground/6397
VX
vx-underground
63 503 подписчика
165
16
6.0 k
Bubble-dot-io employees have responded.

Bubble (or individuals representing the company) assert the code we shared yesterday is not a zero day exploit and we (or the researchers mentioned) failed to take appropriate measures to read the documentation provided by Bubble

In summary, they state each user is responsible for the security of their data and users must follow the appropriate Bubble-dot-io security guidelines. The issues we relayed yesterday do not impact Bubble-dot-io in totality, rather these are customers who failed to follow the guidelines
18.04.2025, 18:11
t.me/vxunderground/6396
VX
vx-underground
63 503 подписчика
1
After we made this post several companies listed here contacted us (or rather, employees).

Every single one who contacted us correctly identified Bubble and were able to assess what we would release

Some of these big companies do NOT play games with security 😂
18.04.2025, 08:48
t.me/vxunderground/6395
VX
vx-underground
63 503 подписчика
86
76
6.2 k
https://github.com/demon-i386/pop_n_bubble
18.04.2025, 07:17
t.me/vxunderground/6394
VX
vx-underground
63 503 подписчика
50
32
2.0 k
In 2024, 2 security researchers discovered a flaw in Bubble-dot-io, a self-described AI-based app development and publishing service.

Upon discovering the vulnerability, these 2 researchers notified Bubble. Unfortunately, for whatever reason, this fell on deaf ears.

These individuals subsequently did a talk on the vulnerability, published a proof-of-concept, and even wrote a paper on it. The code and paper show how easy it is to compromise websites and/or applications on Bubble. Despite all of this, Bubble still did nothing.

These 2 individuals then contacted me to request I relay the message loud and clear: you need to fix your software immediately.

In essence, this exploit allows the execution of arbitrary requests to the applications Elastic search which allows data dumping and/or exfiltration.

The applications encryption workflow is performed in the front-end, because Bubble-dot-io uses fixed IV's (shared between ALL clients), exploiting Bubble-dot-io is possible due to the creation of arbitrary payloads by abusing the recovery keys.

All tables can be dumped, including custom tables defined as "custom.(table_name)".

Furthermore, it's possible to attack other clients from Bubble-dot-io because the application does all hosting internally (shared).

- Cryptography keys do not rotate, hence an attacker can reuse the same keys in new Elastic searches
- Timestamps are not verified
- Attackers can enumerate customer subdomains by fuzzing *.bubbleapps-dot-io domain, making identification of targets easier
- If domain doesn't match target, response header will return correct target in 'X-BUBBLEAPP-NAME'

Please note the time date stamp in the attached images.

See subsequent post for link to paper and proof-of-concept.
18.04.2025, 07:17
t.me/vxunderground/6392
VX
vx-underground
63 503 подписчика
31
2.2 k
18.04.2025, 07:17
t.me/vxunderground/6393
VX
vx-underground
63 503 подписчика
79
7
2.1 k
Chat, it's Friday.

Please hold.
18.04.2025, 07:05
t.me/vxunderground/6391
VX
vx-underground
63 503 подписчика
360
65
3.3 k
We've got a 0day exploit.

The 0day impacts an organization which provides managed services for Danone, SeaGate, Unity, Shopify, Paramount Pictures, HubSpot, Amazon, PWC, Yamaha, L'Oreal

The exploit was reported, but the vendor ignored it.

Chat, do we drop a 0day on a Friday?
18.04.2025, 03:37
t.me/vxunderground/6390
VX
vx-underground
63 503 подписчика
1
Oh, it's UK underground, the font is just weird.

Font is illegal and for nerds
17.04.2025, 22:56
t.me/vxunderground/6389
VX
vx-underground
63 503 подписчика
1
Someone found this in an antique store today.

Before us there was another vx-underground (apparently) and they were also cool and badass
17.04.2025, 22:54
t.me/vxunderground/6388
VX
vx-underground
63 503 подписчика
146
19
6.2 k
Use TorGuard VPN.

I didn't have to append this is this post, but they're our hosting provider and the owner uses his company resources and time to collect cat pictures with us.
17.04.2025, 18:51
t.me/vxunderground/6387
VX
vx-underground
63 503 подписчика
113
12
6.0 k
Hello, how are you?

tl;dr doing stuff

Right now we've got 250GB+ of new malwares we need to push. We're in the process of syncing it, making local backups, etc. We also temporarily stopped migrating virus-dot-exchange, but it's still on the todo list.

As many of you have noticed, updates on things have been volatile and shakey. I greatly miscalculated the difficulty of preparation and deployment of mini-human. I had thought, to some degree, it was an exaggeration that it would require a great deal of effort — it turns out the entire planet (past, and present) was not lying.

Despite the deployment of Smelly Smellington Jr, the general plan will be as follows:

- Continue daily ingests and malware sample distribution from petikvx, JaffaCakes118, and Neiki__. These 3 act as the back bone of our malware ingestion cycle.

- If or when _BradleyVX returns from his family duties: continual archival of The Old New Thing, cat picture collection (semi-joking), and his work on malware collection. Bradley has primarily been responsible for the malware family collection and he will continual doing so.

- Cryakl will continue working on the malware builder collection. Cryakl has done an excellent job ensuring we're up-to-date on malware builders historically and present...ly (?)

- f0wlsec will continue his work on the APT malware samples and papers collection. If you do not see an update in a significant period of time, feel free to poke him with a stick.

My request to anyone who reads this: PLEASE do not hesitate to contact me (or whoever) regarding malware papers (reverse engineering, development, history, whatever). Even if the paper doesn't make it into the collection it is super-duper appreciated when someone notifies us of a potential paper. It makes my life so much easier. If you've written a paper for yourself, or your group, or your company — DON'T hesitate to notify me (or whoever in our group) so it can be archived.

How to send us a paper: literally just send the link on Discord, Twitter, Telegram, e-mail. That's all you have to do. If you send me enough cool stuff maybe you can take my job and be given a pretty staff sticker and I can focus more on other administrative tasks.

Anyway, i'll be AFK. You'll see a spike in silly posts and cat pictures. If this upsets you, I don't know bro, we're busy and this is all for free. You gotta deal with it for awhile.

Love you
- smelly smellington
17.04.2025, 18:45
t.me/vxunderground/6386
VX
vx-underground
63 503 подписчика
146
29
5.7 k
Anyway, let that echo in your head tonight when you're trying to sleep. 2007 was 18 years ago.
17.04.2025, 07:06
t.me/vxunderground/6385
VX
vx-underground
63 503 подписчика
152
44
6.6 k
People who are 18 years old, as of 2025, were born the same year as the release of Halo 3 — the same year the original iPhone was released when Steve Jobs was alive.

The people you will be interviewing in the next couple of years do not know a world without smart phones.
17.04.2025, 07:05
t.me/vxunderground/6384
VX
vx-underground
63 503 подписчика
125
8
5.5 k
For those young ones reading this: XChat is an IRC client

For those young ones reading this: IRC is kind of like Discord, except way slimmed down, way less features but way more flexible and you can host a server yourself
17.04.2025, 06:50
t.me/vxunderground/6383
VX
vx-underground
63 503 подписчика
106
14
5.6 k
X employees shared online they're rewriting the X DM system and naming it 'XChat' — which is strange because I recall using XChat sometime in the late 90's, or early 2000's
17.04.2025, 06:47
t.me/vxunderground/6382
VX
vx-underground
63 503 подписчика
159
13
5.5 k
hello tiny people living inside my computer
17.04.2025, 06:16
t.me/vxunderground/6381
VX
vx-underground
63 503 подписчика
148
68
6.6 k
16.04.2025, 20:16
t.me/vxunderground/6380
VX
vx-underground
63 503 подписчика
337
38
6.3 k
If we had $1,000,000/yr, Bradley and I would travel to Russia to physically meet Lockbit in person and challenge him to a Yu-Gi-Oh duel to end his operations
16.04.2025, 07:21
t.me/vxunderground/6379
VX
vx-underground
63 503 подписчика
196
18
6.2 k
If we got $1,000,000/yr (never will happen), vx-underground would transcend space and time, pull malware from the 4th dimension — we'd be producing malware content like we were in the Dragon Ball Z hyperbolic time chamber
16.04.2025, 07:17
t.me/vxunderground/6378
VX
vx-underground
63 503 подписчика
145
23
6.2 k
We've been surviving for almost 6 years by begging nerds for spare change, sucking the dicks (and clits) of small business owners, and praying X payouts give us more than $50/month

For $500,000/yr we'd be a fuckin' MALWARE REPO MACHINE (3,000 years to spend $1,500,000,000)
16.04.2025, 07:12
t.me/vxunderground/6377
VX
vx-underground
63 503 подписчика
140
39
6.1 k
According to USASpending, MITRE has received approx. $1,500,000,000 since 2008 from the United States government.

We could survive approx. 30,000 years with that much money 😂😂😂
16.04.2025, 07:07
t.me/vxunderground/6376
VX
vx-underground
63 503 подписчика
135
66
7.4 k
Hi,

We've archived the MITRE CVE database. The CVE DB is free and open source on GitHub. However, we're providing a backup location for the data. We doubt it'll magically disintegrate in ash, but if it does we have a copy.

https://vx-underground.org/Archive/CVE
16.04.2025, 06:47
t.me/vxunderground/6375
VX
vx-underground
63 503 подписчика
160
24
5.9 k
Hold up — let 4chan speak. They're onto something here
16.04.2025, 04:34
t.me/vxunderground/6374
VX
vx-underground
63 503 подписчика
186
38
7.1 k
Slop as a Service
16.04.2025, 02:11
t.me/vxunderground/6373
VX
vx-underground
63 503 подписчика
169
28
6.1 k
MoistCritical will probably name it, "The 4Chan situation is crazy". He'll open the video with a weird reference to semen, erections, or anime, then say "I'm not an expert on the subject". It'll conclude with "That's pretty much it, see ya".
16.04.2025, 02:06
t.me/vxunderground/6372
VX
vx-underground
63 503 подписчика
103
31
5.9 k
Here is what's going to happen

SoyJak nerds will meme 4chan mods for awhile. In the midst of it YouTubers will make videos discussing it (MoistCritical, MeatCanyon, TurkeyTom, etc).

Then in like, a year, it'll kind of be back to normal
16.04.2025, 02:03
t.me/vxunderground/6371
VX
vx-underground
63 503 подписчика
148
32
6.5 k
what do u mean a website historically used for memeing and trolling forked and the memesters and trollsters decided to meme and troll?? how could this have happened???
15.04.2025, 21:44
t.me/vxunderground/6370
VX
vx-underground
63 503 подписчика
142
79
8.2 k
This random document fell off the back of a bus. Weird.

This random document which randomly fell off the back of a bus (randomly) says MITRE is no longer supporting the CVE program as of April 16th, 2025. Which is crazy, because this random document is dated April 15th, 2025.
15.04.2025, 21:00
t.me/vxunderground/6369
VX
vx-underground
63 503 подписчика
104
30
6.7 k
BreachForum domain not seized. I misread something from my daily drama nerds cycle I go through.

BreachForums is offline — nerds speculated it will be seized. Or maybe it's just infra problems, or something.

No one knows anything. I can't read
15.04.2025, 19:38
t.me/vxunderground/6368
VX
vx-underground
63 503 подписчика
186
477
16 k
tl;dr nerds from /qa/ raided /lgbt/, mods got irritated, shut down /qa/. Nerds migrated to SoyJak Party instead.

SoyJak Party nerds discovered 4chan was using a dangerously outdated version of PHP and compromised the site. They were able to get access to virtually everything on the site. There is a thread on SoyJak Party about it

Drama escalated when moderators were discovered using emails as firstname-lastname with a .edu because it made it very easy for SoyJak Party nerds to find and meme 4chan moderators.

Drama only intensified more when SoyJak Party nerds memed and forged fake .gov email's into the 4chan moderator images shared. It result in hysteria as conspiracy theory nerds went off the deep end.

tldr tldr nerds raid some gay place, mods get mad, nerds go ballistic and all hell breaks loose
15.04.2025, 19:22
t.me/vxunderground/6367
VX
vx-underground
63 503 подписчика
171
93
7.0 k
15.04.2025, 19:06
t.me/vxunderground/6366
VX
vx-underground
63 503 подписчика
203
149
7.4 k
4chan compromised by SoyJak Party people over some conflicts with raiding LGBT image boards — databases dumped, emails leaked, source code leaked

It's Tuesday
15.04.2025, 19:02
t.me/vxunderground/6365
VX
vx-underground
63 503 подписчика
203
20
6.1 k
We have discovered the krabby patty secret formula for making people give a fuck about cybersecurity research and news.

If you make a brief post explaining what has happened, or what a paper and/or code is doing, it will be ignored — even if you share a link.

However, if you make a post explaining what has happened, basically spoon feeding the subject or paper to the readers, your engagement rate will skyrocket.

SOME of you are really, really, REALLY lazy and can't be bothered to click a link. You want the information hyper-compressed and delivered on a golden-plate with little rose petals and cool and badass cat pictures.
15.04.2025, 02:33
t.me/vxunderground/6364
VX
vx-underground
63 503 подписчика
146
53
5.9 k
me on the internet
15.04.2025, 02:25
t.me/vxunderground/6363
VX
vx-underground
63 503 подписчика
100
33
5.7 k
Hasherezade just unveiled another process injection method. There are probably 20 or 30 different process injection methods now, and nerds are still using CreateRemoteThread like it's 2005
15.04.2025, 00:48
t.me/vxunderground/6362
VX
vx-underground
63 503 подписчика
84
58
6.0 k
Hello,

For several years we've had people ask us something along the lines of, "what's your favorite paper?". Well, today I've begun putting together a "Best Of" list.

This isn't a complete list, I'll add more later.

https://vx-underground.org/Best%20Of
14.04.2025, 21:34
t.me/vxunderground/6361
VX
vx-underground
63 503 подписчика
197
10 k
14.04.2025, 19:47
t.me/vxunderground/6360
VX
vx-underground
63 503 подписчика
198
10 k
14.04.2025, 19:47
t.me/vxunderground/6359
VX
vx-underground
63 503 подписчика
197
10 k
14.04.2025, 19:47
t.me/vxunderground/6358
VX
vx-underground
63 503 подписчика
247
202
11 k
"North Korea has ceremonially opened its first computer club — with Kim Jong Un himself attending the event.

Now, North Korean hackers will be able to comfortably steal billions of dollars from “Western capitalists” for their leader." — Nexta TV

... Based and/or cyber criminal pilled?
14.04.2025, 19:47
t.me/vxunderground/6357
VX
vx-underground
63 503 подписчика
169
98
6.9 k
14.04.2025, 12:00
t.me/vxunderground/6356
VX
vx-underground
63 503 подписчика
227
38
6.6 k
13.04.2025, 23:04
t.me/vxunderground/6355
VX
vx-underground
63 503 подписчика
383
155
7.2 k
This generation was the first to be raised online

Google harvested my data
Tumblr harvested my data
YouTube harvested my data
Vine harvested my data
DeviantArt harvested my data
Blogger harvested my data
Facebook harvested my data
Instagram harvested my data
Etsy harvested my data
Twitter harvested my data
13.04.2025, 10:16
t.me/vxunderground/6354
VX
vx-underground
63 503 подписчика
91
15
5.9 k
April 11th, 2025, Waylon Wilcox of Dillsburg, Pennsylvania, United States, plead guilty to two (2) counts of filing false individual income tax returns to the United States Internal Revenue Service.

Mr. Wilcox lied to the United States Internal Revenue Service regarding his profit from non-fungible tokens (NFTs).

Mr. Wilcox answered "no" to the United States Internal Revenue Service when asked: “At any time in 2021, did you receive, sell, exchange, or otherwise dispose of financial interest in any virtual currency?” (and any and/or all relevant questions in 2022)*

Mr. Wilcox in actuality collected 97 of 10,000 unique characters of CryptoPunks NFTs* (corrected, edit). He under-reported $8,511,238 in 2021 and $4,599,532 in 2022 in income — far beyond his actual income.

This was in sharp contrast to his (now private) social media which displayed luxurious travels.

Mr. Wilcox owes the United States Internal Revenue Service approx. $3,200,000. He is also facing 6 years in prison.

tl;dr guy makes millions from nfts, clicks "no" on checkbox to tax collection on monies, lies and says doesnt have a lot of monies, doesnt launder money and has millions, the us gov was like "lolwtf how this guy spending so much but says hes broke", looks inside, sees nft monies
13.04.2025, 10:06
t.me/vxunderground/6353
VX
vx-underground
63 503 подписчика
145
52
5.8 k
me on the internet
13.04.2025, 07:03
t.me/vxunderground/6352
VX
vx-underground
63 503 подписчика
136
38
5.5 k
Chat, why are Law Enforcement agencies happy people are staying on Telegram? 🤔
13.04.2025, 01:02
t.me/vxunderground/6351
VX
vx-underground
63 503 подписчика
77
103
5.6 k
April 9th, EUROPOL did a press release regarding the arrest of affiliates using IcedID, SystemBC, PikaBot, Smokeloader, and Bumblebee.

EUROPOL memes the malware authors databases for not being 'GDPR compliant' and (in some capacity) reaching out to and identifying affiliates via Telegram.

Furthermore, EUROPOL put out a warning for customers of 'Superstar' and state they're actively doing arrests, home searches, issuing arrest warrants, doing 'knock-n-talks'.

5 unnamed individuals have been apprehended and are being 'interrogated' (quite literally the words used by EUROPOL, the connotation sounds like they're sending people to Guantanamo Bay).

They also released another mini-anime episode

¯\_(ツ)_/¯
13.04.2025, 00:58
t.me/vxunderground/6350
VX
vx-underground
63 503 подписчика
230
18
5.1 k
Yeah bro, it's super cool a bunch of cat pictures is more widely shared, appreciated, and praised than 6 years of work of archiving malware related educational material
12.04.2025, 22:37
t.me/vxunderground/6349
VX
vx-underground
63 503 подписчика
138
28
5.2 k
Oh, and based on seeds and stuff, a guesstimate is over 1 petabyte of cat pictures have been distributed. Cat pictures are x100 more popular than anything we've ever shared or produced
12.04.2025, 22:34
t.me/vxunderground/6348
VX
vx-underground
63 503 подписчика
86
8
5.1 k
Due to insanely high-demand, we will be working on a kitty cat picture repack. The repack will have non-cat images removed. We will also increase the number of kitty cat pictures present.

Special thanks to DiffeKey for fixing the entire thing.
12.04.2025, 22:34
t.me/vxunderground/6347
VX
vx-underground
63 503 подписчика
80
37
5.2 k
A visual representation of cybersecurity
12.04.2025, 22:19
t.me/vxunderground/6346
VX
vx-underground
63 503 подписчика
225
99
6.0 k
Malware 🤝Cat girls
12.04.2025, 08:27
t.me/vxunderground/6345
VX
vx-underground
63 503 подписчика
55
11
5.5 k
Still not as oopsie-doopsie as when the Indian military left the PDB data present which displayed the developers first name and last name, but making the path "hack" is pretty oopsie too.
12.04.2025, 08:19
t.me/vxunderground/6344
VX
vx-underground
63 503 подписчика
90
12
5.2 k
Congratulations to APT "Stately Taurus".

Throughout 2021 and 2022 Palo Alto was tracking their activity because they left debug symbols in their DLLs.

They've since learned to remove the debug symbols. Good job, buddy. It took a few years, but you're getting better!
12.04.2025, 08:17
t.me/vxunderground/6343
VX
vx-underground
63 503 подписчика
88
5.5 k
12.04.2025, 07:37
t.me/vxunderground/6342
VX
vx-underground
63 503 подписчика
134
89
5.3 k
The National Police Agency (NPA) of Japan recent documentation of state-sponsored Threat Actors from China is interesting.

A group they believe to be a subset of APT10, abuses WSB (Windows Sandbox) by creating a .wsb configuration file and using it to spin up an instance of the Windows Sandbox.

This is interesting because Windows Defender cannot access the Windows Sandbox (image 1).

The payload enables folder sharing, network access, clipboard access, microphone access, and video access.

tl;dr abusing the sandbox, sandbox as a c2
12.04.2025, 07:37
t.me/vxunderground/6341
VX
vx-underground
63 503 подписчика
1
1
for mr underscore.txt
12.04.2025, 05:27
t.me/vxunderground/6340
VX
vx-underground
63 503 подписчика
1
Hello,

We would like to speak with the administrative staff at RussianMarket.

Thanks,
12.04.2025, 04:52
t.me/vxunderground/6339
VX
vx-underground
63 503 подписчика
184
203
6.3 k
Windows 10 support ends October 14th, 2025. It is the calling of the Linux nerds.
11.04.2025, 23:28
t.me/vxunderground/6338
VX
vx-underground
63 503 подписчика
121
18
5.2 k
> wants to add to blocklist
> tweets it
11.04.2025, 23:20
t.me/vxunderground/6337
VX
vx-underground
63 503 подписчика
220
167
7.9 k
uhhh ok
11.04.2025, 23:16
t.me/vxunderground/6336
VX
vx-underground
63 503 подписчика
99
10
5.5 k
"Nothing is certain except computer viruses and cat pictures" — Benjamin Franklin
11.04.2025, 20:26
t.me/vxunderground/6335
VX
vx-underground
63 503 подписчика
366
59
6.4 k
Someone contacted us and said they 0day'd their school, infected every machine with a custom RAT, and displayed a MessageBox to everyone in the school at the same time. After that, the school hired him to be in charge of cybersecurity

What the fuck are you talking about
11.04.2025, 10:24
t.me/vxunderground/6334
VX
vx-underground
63 503 подписчика
288
107
8.0 k
Nintendo ransomware group
10.04.2025, 20:47
t.me/vxunderground/6333
VX
vx-underground
63 503 подписчика
198
40
6.7 k
doing some work in the backyard today, what kind of tree roots are these???
10.04.2025, 18:12
t.me/vxunderground/6332
VX
vx-underground
63 503 подписчика
85
42
5.4 k
me trying to have a rational conversation about computers with someone on twitter
10.04.2025, 08:31
t.me/vxunderground/6331
Результаты поиска ограничены до 100 публикаций.
Некоторые возможности доступны только премиум пользователям.
Необходимо оплатить подписку, чтобы пользоваться этим функционалом.
Фильтр
Тип публикаций
Хронология похожих публикаций:
Сначала новые
Похожие публикации не найдены
Сообщения
Найти похожие аватары
Каналы 0
Высокий
Название
Подписчики
По вашему запросу ничего не подошло