vx-underground
In light of the recent arrest of Pavel Durov, CEO of Telegram, Telegram has made it crystal clear they will now fully cooperate with law enforcement agencies in seemingly any capacity.
We aren't surprised, we're surprised it took this long. Pavel Durov is a citizen of France, a NATO country.
🤔64😢26🤣26👍16💯8😁4
We used to receive emails and DMs asking for the password.
It has evolved. We now receive emails and DMs on how to become a hacker.
We're a library. Do you go to your local library and ask the librarian how to read?
Also, we almost exclusively cover malware. Wrong library pal
It has evolved. We now receive emails and DMs on how to become a hacker.
We're a library. Do you go to your local library and ask the librarian how to read?
Also, we almost exclusively cover malware. Wrong library pal
🤣162😁17🤓11👍10❤6🤯6❤🔥2😢2
vx-underground
Photo
Ultra AV, the product Kaspersky installed on end-users machines, domain was created July 16th, 2024. It is 70 days old.
https://ultrasecureav.com/
https://ultrasecureav.com/
😁81🤔19😎14🤣6🤯4🤓4❤🔥3💯3🫡3👍2👏1
This media is not supported in your browser
VIEW IN TELEGRAM
"Ultra AV, who is this?"
🤣150🔥25❤🔥9🤓5😁3🤔3💯3😎3👍2😢2🤩1
The source code to Winamp was not leaked online. It was a scheduled release in hopes of furthering collaboration with others.
May 16th, 2024 they announced it would go open source on September 24th, 2024.
https://about.winamp.com/press/article/winamp-open-source-code
May 16th, 2024 they announced it would go open source on September 24th, 2024.
https://about.winamp.com/press/article/winamp-open-source-code
Winamp
Winamp builds tools that empower artists to manage their music and revenue, while delivering a player that offers a seamless listening experience. Discover our products!
👍76❤🔥20❤7🤣6🎉4🤯2
After what feels like an eternity, we have finally identified, repaired, and re-deployed our corrupted batch of malware samples from the MalwareIngestion feed for June, 2024.
It's over 600,000 malware samples. Download them.
https://vx-underground.org/Samples/MalwareIngestion
It's over 600,000 malware samples. Download them.
https://vx-underground.org/Samples/MalwareIngestion
Vx Underground
The largest collection of malware source code, samples, and papers on the internet.
❤45👍14❤🔥5😢1💯1
We have a large quantity of malware samples and papers to add. These will all be pushed in bulk in a very large update coming soon-ish.
Until that times comes (finishing collecting the stuff) we're just gonna play Crab Champions
Have a nice day
Until that times comes (finishing collecting the stuff) we're just gonna play Crab Champions
Have a nice day
❤39🫡8👍4😢1🤣1
Some controversy today as YouTube tech reviewer Marques Brownlee 'Panels' app is getting pretty substantial backlash.
tl;dr Marques Brownlee app, 'Panels', offers high-definition wallpapers from Digital Artists for $49.99/year. People criticized the app for an array of reasons, beside the idea of paying $49.99/year for wallpapers on your cell phone, the app requests tracking information, and contains ads.
Unsurprisingly, and as is tradition, internet nerds quickly began inspecting the app under the metaphorical microscope. Security researcher I_Am_Jakoby discovered the apps API is wildly insecure. He wrote a simple noscript which programmatically scrapes every high-definition wallpaper.
Attached image is the noscript he shared. If you want to experiment with it, just OCR it or something.
tl;dr Marques Brownlee app, 'Panels', offers high-definition wallpapers from Digital Artists for $49.99/year. People criticized the app for an array of reasons, beside the idea of paying $49.99/year for wallpapers on your cell phone, the app requests tracking information, and contains ads.
Unsurprisingly, and as is tradition, internet nerds quickly began inspecting the app under the metaphorical microscope. Security researcher I_Am_Jakoby discovered the apps API is wildly insecure. He wrote a simple noscript which programmatically scrapes every high-definition wallpaper.
Attached image is the noscript he shared. If you want to experiment with it, just OCR it or something.
🤣168❤36👍10🤓5❤🔥3😢3
There's some noise in the infosec vulnerability and blue team space about an alleged 9.9 CVE score impacting all GNU/Linux systems.
Due to lack of details, some users have expressed criticism on the severity of the exploit — with the infamous Heartbleed being a 7.5 CVE. Some expressed concern that the exploit is overhyped, or acting as marketing material for the researcher.
Others have noted that they believe the exploit is real and possess a genuine score of 9.9 but question the impact of effecting all GNU/Linux systems.
From what we've seen, nobody knows anything and everyone is just yappin. We'll see what happens when the details are released.
Due to lack of details, some users have expressed criticism on the severity of the exploit — with the infamous Heartbleed being a 7.5 CVE. Some expressed concern that the exploit is overhyped, or acting as marketing material for the researcher.
Others have noted that they believe the exploit is real and possess a genuine score of 9.9 but question the impact of effecting all GNU/Linux systems.
From what we've seen, nobody knows anything and everyone is just yappin. We'll see what happens when the details are released.
👍83🔥17🤯10💯7🤣7🤓6🤔1😢1
vx-underground
There's some noise in the infosec vulnerability and blue team space about an alleged 9.9 CVE score impacting all GNU/Linux systems. Due to lack of details, some users have expressed criticism on the severity of the exploit — with the infamous Heartbleed being…
When we said users, we meant nerds on social media. Currently posting from the restroom at Apple Bees.
🔥56🤣51🫡18❤3❤🔥2👍1🤓1
Today in internet stuff
- Sanctions against more TAs
- KIAs can get hacked somehow
- Linux RCE discussions everywhere
- More botnet tracking from people
We didn't read any of it
- Sanctions against more TAs
- KIAs can get hacked somehow
- Linux RCE discussions everywhere
- More botnet tracking from people
We didn't read any of it
🤣95❤20😎11🔥10👍6❤🔥4🤯3😢3😁2🙏2🤓2
Summary of the Linux RCE 9.9 CVE
The vulnerability write up and disclosure is confusing. Initially the write up was scheduled for release in October. However, the write up and proof-of-concept was leaked onto Breached (???) which then resulted in the researcher / author to do an official write up (maybe?).
- Self described as 9.9, not officially declared 9.9
- Attacks CUPS
We haven't looked at it because we don't do exploit stuff and also Linux is for nerds
The vulnerability write up and disclosure is confusing. Initially the write up was scheduled for release in October. However, the write up and proof-of-concept was leaked onto Breached (???) which then resulted in the researcher / author to do an official write up (maybe?).
- Self described as 9.9, not officially declared 9.9
- Attacks CUPS
We haven't looked at it because we don't do exploit stuff and also Linux is for nerds
🤣130🤓36😁9😎4❤3❤🔥2🤔2😢2
vx-underground
Summary of the Linux RCE 9.9 CVE The vulnerability write up and disclosure is confusing. Initially the write up was scheduled for release in October. However, the write up and proof-of-concept was leaked onto Breached (???) which then resulted in the researcher…
Edit: we're being told EvilSocket didn't define the vulnerability as a 9.9, someone else did (RedHat) and they went with it. No idea if that's true, we don't know whats real anymore because everyone is yappin.
We're going back to bed
We're going back to bed
🤣108👍12💯9🤓7🤯5❤3👏1😢1🫡1
Hello,
We're aware of a long standing issue where trying to extract vx-underground files with the default MacOS tooling fails.
We don't remember why, but it does.
Our proposed solution is introducing your device to thermite, or trying to a different tool.
Thanks,
We're aware of a long standing issue where trying to extract vx-underground files with the default MacOS tooling fails.
We don't remember why, but it does.
Our proposed solution is introducing your device to thermite, or trying to a different tool.
Thanks,
😁56🤣11🔥9👍5🫡5❤4😱4🤓4🤝2👏1
vx-underground
Hello, We're aware of a long standing issue where trying to extract vx-underground files with the default MacOS tooling fails. We don't remember why, but it does. Our proposed solution is introducing your device to thermite, or trying to a different tool.…
Trying to use a different tool**.
Apologies — currently posting from Walgreens restroom.
Apologies — currently posting from Walgreens restroom.
🤣51😱11🔥6❤2👍2🤝2👏1😁1😢1😍1😎1