vx-underground – Telegram
vx-underground
45.7K subscribers
3.92K photos
416 videos
83 files
1.42K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
Today Avast unveiled 'GuptiMiner'.

tl;dr eScan AV, out of India, used HTTP for AV updates, not HTTPS, North Korea man-in-the-middle'd updates to large networks to deliver malware

We give this APT campaign an A+ because it's absurdly well executed

https://decoded.avast.io/janrubin/guptiminer-hijacking-antivirus-updates-for-distributing-backdoors-and-casual-mining/
👍53🤯1613😁11🤣11🔥4😎4🎉2
Yesterday The New York Times unveiled that General Motor's had accidentally enrolled millions of people into its "OnStar Smart Driver+" program. If consumers chose to not enroll through the phone app – it would do it anyways.

Unenrolling requires consumers to contact OnStar customer support line. However, some people do not trust them and have turned to stripping the electronic devices from their car.

The OnStar Smart Driver+ data was being sold to LexisNexis, and insurance companies, to modify insurance rates. The data sold was invasive and logged:

- Number of trips
- Miles driven
- Minutes driven
- Hard-brake vents
- Rapid accelerates
- Speeding events

The reporter from the New York Times requested a copy of their data and received it. See attached image.
👏63👍9🤔7😱7😎73🤯3😢3🤣3😇2
This media is not supported in your browser
VIEW IN TELEGRAM
This morning our Intrusion Detection System (meemaw) identified two (2) highly sophisticated Threat Actors trying to brute force our access portal.

Viewer discretion advised
🤣169🤯3221❤‍🔥11👍10😁9🤝6🤓3🎉1💯1
???
🤔137🤣46🤯22💯8🔥75👍5👏3🤓2🥰1😎1
Our advice to anyone who wants to get a job in cyber security is to intentionally poop your pants in public.

You need to put yourself in difficult situations to understand how to overcome adversity in the every expanding threat landscape.
🫡145👍34🤣1514😁9🎉6👏4🤔3💯3🤓3🤩1
A user has appeared on Twitter with the profile creation date of the Unix Epoch 😭
🔥132🫡44🤓14😱7💯63😢3😎3👍1🤔1
It appears we have deeply angered nerds who like unique usernames. We apologize for not being privy to username buying and selling. We will repent for our mistake by offering one (1) cat picture.
🤣149🔥7😎6🤓3🤝31👍1😢1
203🤣35💯16🥰6👍5😢2❤‍🔥1🤔1
In Japan – the Fukui Prefectural Police Echizen Police Station have created the "Virus/Trojan horse removal fee payment card" and the "Unpaid charges/delinquent charges payment card".

The fake cards, designed to combat telephone scammers, are positioned intentionally at convenience stores to assist police at identifying victims and safeguarding them from financial harm. When someone tries to purchase the card the police are immediately notified.

Upon placement in stores in November 2023, it immediately stopped 3 elderly people from being scammed in November and December.

No additional information has been released regarding the success rate. However, the police officers who came up with the idea were given a promotion in February, 2024.

Information via TopiLaron, ten_forward, and fukuinpmedia
157👍28🤓9🔥7🫡6😁5🤔2🎉1🤩1
Hello,

We have 3 harddrives left in stock. Once the last 3 are purchased the cloning stage will begin.

- Each buyer gets a free duck (not a joke)
- My home is full of packing material (also not a joke)
- Buy them!!!!!11

https://www.vx-underwear.org/collections/vxug-collection
🤯35🤣127👍7🤓3😍2😇2🔥1
Hello,

We have a lot of super cool stuff happening behind the scenes. We think all of you will enjoy it.

In the meantime, please look at this random proof-of-concept images which totally aren't related to the vx-underground 5 year anniversary
🔥46❤‍🔥17😁64😇2
MS-DOS comments 🔥🔥🔥
🔥170🤣10719🤓15🥰7😁4💯2👍1
Hello,

We are looking for someone who is capable of transforming paper into an mp3 digital format.

If you or someone you know is a wizard please contact us.

Thanks,
🤣178🥰139🤔8👍7😁2🔥1🎉1🤓1
POV: You get into an argument with someone with an anime profile picture (you're going to lose)
🤣106🤓16👍3😁3💯2🤔1😢1
Russian speakers using smiley face "))" instead of ":))"

What Russian speakers see
vs.
What English speakers see
😁202🤣2713💯10👍8😢8🫡4❤‍🔥3😎3🤯2🤝1
Hello, we hope everyone is enjoying their weekend so far. We've made some updates to the vx-underground malware sample collection. Additionally, we have papers in queue but they have not been addressed yet.

Samples and families added:
- Virussign.2024.04.19
- Virussign.2024.04.20
- Virussign.2024.04.21
- Virussign.2024.04.22
- Virussign.2024.04.23
- Virussign.2024.04.24
- Virussign.2024.04.26
- InTheWild.0121
- InTheWild.0120
- SmokeLoader
- STRRAT
- TriangleDB
- QuasarRAT
- SnakeKeylogger
- NewBotLoader
- PikaBot
- PlanetStealer
- NetSupportRAT
- NjRAT
- LummaStealer
- EvilAntRansomware
- DarkGateLoader
- BunnyLoader
- DoNexRansomware
30😎8👍5🔥2🤓2🫡2
We will be mostly AFK for the remainder of the weekend. It is the weekend of rest – not just Sunday:)

Next week we will be adding new malware builders: Amadey (Panel), MetaStealer, and "Сборка 2.0". We don't know what Сборка 2.0 (Russian for 'Build 2.0') is.

Have a cat.
🔥6827🥰13👍4😁4❤‍🔥2😢1🤓1🫡1
The most sophisticated exploit we've ever seen.

Thank you to wdormann for bringing this to our attention. This is basically Stuxnet. 2.0
😁85🤣49🤯9🤩42