There's some noise in the infosec vulnerability and blue team space about an alleged 9.9 CVE score impacting all GNU/Linux systems.
Due to lack of details, some users have expressed criticism on the severity of the exploit — with the infamous Heartbleed being a 7.5 CVE. Some expressed concern that the exploit is overhyped, or acting as marketing material for the researcher.
Others have noted that they believe the exploit is real and possess a genuine score of 9.9 but question the impact of effecting all GNU/Linux systems.
From what we've seen, nobody knows anything and everyone is just yappin. We'll see what happens when the details are released.
Due to lack of details, some users have expressed criticism on the severity of the exploit — with the infamous Heartbleed being a 7.5 CVE. Some expressed concern that the exploit is overhyped, or acting as marketing material for the researcher.
Others have noted that they believe the exploit is real and possess a genuine score of 9.9 but question the impact of effecting all GNU/Linux systems.
From what we've seen, nobody knows anything and everyone is just yappin. We'll see what happens when the details are released.
👍83🔥17🤯10💯7🤣7🤓6🤔1😢1
vx-underground
There's some noise in the infosec vulnerability and blue team space about an alleged 9.9 CVE score impacting all GNU/Linux systems. Due to lack of details, some users have expressed criticism on the severity of the exploit — with the infamous Heartbleed being…
When we said users, we meant nerds on social media. Currently posting from the restroom at Apple Bees.
🔥56🤣51🫡18❤3❤🔥2👍1🤓1
Today in internet stuff
- Sanctions against more TAs
- KIAs can get hacked somehow
- Linux RCE discussions everywhere
- More botnet tracking from people
We didn't read any of it
- Sanctions against more TAs
- KIAs can get hacked somehow
- Linux RCE discussions everywhere
- More botnet tracking from people
We didn't read any of it
🤣95❤20😎11🔥10👍6❤🔥4🤯3😢3😁2🙏2🤓2
Summary of the Linux RCE 9.9 CVE
The vulnerability write up and disclosure is confusing. Initially the write up was scheduled for release in October. However, the write up and proof-of-concept was leaked onto Breached (???) which then resulted in the researcher / author to do an official write up (maybe?).
- Self described as 9.9, not officially declared 9.9
- Attacks CUPS
We haven't looked at it because we don't do exploit stuff and also Linux is for nerds
The vulnerability write up and disclosure is confusing. Initially the write up was scheduled for release in October. However, the write up and proof-of-concept was leaked onto Breached (???) which then resulted in the researcher / author to do an official write up (maybe?).
- Self described as 9.9, not officially declared 9.9
- Attacks CUPS
We haven't looked at it because we don't do exploit stuff and also Linux is for nerds
🤣130🤓36😁9😎4❤3❤🔥2🤔2😢2
vx-underground
Summary of the Linux RCE 9.9 CVE The vulnerability write up and disclosure is confusing. Initially the write up was scheduled for release in October. However, the write up and proof-of-concept was leaked onto Breached (???) which then resulted in the researcher…
Edit: we're being told EvilSocket didn't define the vulnerability as a 9.9, someone else did (RedHat) and they went with it. No idea if that's true, we don't know whats real anymore because everyone is yappin.
We're going back to bed
We're going back to bed
🤣108👍12💯9🤓7🤯5❤3👏1😢1🫡1
Hello,
We're aware of a long standing issue where trying to extract vx-underground files with the default MacOS tooling fails.
We don't remember why, but it does.
Our proposed solution is introducing your device to thermite, or trying to a different tool.
Thanks,
We're aware of a long standing issue where trying to extract vx-underground files with the default MacOS tooling fails.
We don't remember why, but it does.
Our proposed solution is introducing your device to thermite, or trying to a different tool.
Thanks,
😁56🤣11🔥9👍5🫡5❤4😱4🤓4🤝2👏1
vx-underground
Hello, We're aware of a long standing issue where trying to extract vx-underground files with the default MacOS tooling fails. We don't remember why, but it does. Our proposed solution is introducing your device to thermite, or trying to a different tool.…
Trying to use a different tool**.
Apologies — currently posting from Walgreens restroom.
Apologies — currently posting from Walgreens restroom.
🤣51😱11🔥6❤2👍2🤝2👏1😁1😢1😍1😎1
vx-underground
> see cups vulnerability trending on xitter > *click* > nothing but arguing and name calling > *scroll* > printers not working on linux memes > *scroll*
Anyway, we've got a large update coming soon. It's gonna be another big one, so hold onto your horses, or whatever they say.
❤49🔥6👏3😎3👍1😢1🤓1🤝1
Hacking is boring.
Wanna know what's fun? Browsing MSDN documentation at 2 o'clock in the morning, looking for APIs to potentially abuse in malware. It'll also probably never go in the wild and it'll go unappreciated for several months or even years.
That's where the fun is
Wanna know what's fun? Browsing MSDN documentation at 2 o'clock in the morning, looking for APIs to potentially abuse in malware. It'll also probably never go in the wild and it'll go unappreciated for several months or even years.
That's where the fun is
❤108😁29🫡19🤣10👍5😱4🤓4❤🔥3😢2🤔1😇1
vx-underground
Hacking is boring. Wanna know what's fun? Browsing MSDN documentation at 2 o'clock in the morning, looking for APIs to potentially abuse in malware. It'll also probably never go in the wild and it'll go unappreciated for several months or even years. That's…
x2 fun multiplied!
Bonus points is when someone heavily borrows from your code, or copy pastas, but markets it heavily on LinkedIn and gets nominated for an award and wins it.
It's about doing it for the love of the game — not the money, fame, and anime.
Bonus points is when someone heavily borrows from your code, or copy pastas, but markets it heavily on LinkedIn and gets nominated for an award and wins it.
It's about doing it for the love of the game — not the money, fame, and anime.
🔥78❤13😢11🤓6🤯5😎3😇2❤🔥1
This media is not supported in your browser
VIEW IN TELEGRAM
relaxing with some games on the new setup
😁110🤩21🔥18🤣15👍6❤🔥5🥰5😱4🫡3🤯2😢2
A few years ago there was a person who got a scholarship for their contributions to open source software.
This person spent a majority of their time changing indentations and correcting typos. The university never reviewed the contributions.
We still think about it sometimes.
This person spent a majority of their time changing indentations and correcting typos. The university never reviewed the contributions.
We still think about it sometimes.
🔥140🤣81🤓22💯12👍5❤3😢2
Our upcoming update to vx-underground is so large it may require a text file upload on Telegram, and an article written on Xitter.
Just writing all the additions will take time 😭😭😭
Just writing all the additions will take time 😭😭😭
💯62🤓13🔥3🎉2😢1🤣1
Thank you to everyone for the love and support on Telegram.
We've broken 40,000 subscribers. That's a lot.
We look forward to continually serving you with malware source code, samples, papers, news, and shitposts.
Love you
We've broken 40,000 subscribers. That's a lot.
We look forward to continually serving you with malware source code, samples, papers, news, and shitposts.
Love you
❤154❤🔥32🤝6🙏5😁4🤣4🥰3🔥1😢1
VXUG Update - 2024-09-29.txt
11.9 KB
Update time.
It's so large I've gotta put it in a text file for Telegram
It's so large I've gotta put it in a text file for Telegram
🤓58🔥14👏5🤔5❤1😁1😢1
vx-underground
VXUG Update - 2024-09-29.txt
Hi,
If you like what we do (the free malware papers, samples, whatever) please consider being a monthly donor. Or do a 1 time donation. Or buy a shirt or something and scare your family.
Thanks,
If you like what we do (the free malware papers, samples, whatever) please consider being a monthly donor. Or do a 1 time donation. Or buy a shirt or something and scare your family.
Thanks,
❤🔥91❤23🤣18👍9🤓3😎3😢1🤝1