vx-underground
Gootloader has changed their malware delivery techniques. Historically Gootloader has relied on SEO poisoning. Now Gootloader is creating fake PDF conversion websites. pdf-online-tools(dot)com We use sites like this when we're lazy. We're cooked. https…
Also, this is a pretty clever idea. If the conversion works and they successfully slipstream a malware payload into it, that is a pretty substantial improvement — pretty stealthy.
+2 internet points to Gootloader
+2 internet points to Gootloader
👍62🤣20❤4💯2
vx-underground
> get call at 10pm > weird long number > answer > people speaking Mandarin > ??? > they say theyre from alibaba > ask how vx-underground is going > tell them its 10pm > "is that a problem?" > tell them we stopped using alibaba > "is that a problem?" > mfw
god damn chinese ministry of state security callin us at 10pm. bro, just scrape the site or something idk ok its bed time
😁96🤣66❤🔥8❤4👍3😢3😘3
vx-underground
COVID19 2: Electric Boogaloo
Sometimes people complain when we stray away from malware related topics.
*ahem*
The monkeys were released via ICS malware which opened the gates for the monkeys, or something, whatever. Make up some shitty anime plot and insert malware.
*ahem*
The monkeys were released via ICS malware which opened the gates for the monkeys, or something, whatever. Make up some shitty anime plot and insert malware.
🤣193🎉17❤9🤓9😁6🤩4❤🔥1🔥1😢1
Hello, how are you?
tl;dr tg channels deleted, dat sux. were back but malware collecting is hard. american politics is crazy
1. We've received some reports today that some hacker-cybersecurity-leak-??? Telegram channels have been hit by a Telegram orbital nuke. Club1337 and data1eaks are gone. If in the event the vx-underground Telegram channel is deleted, for whatever reason, it will be business-as-usual on Xitter. I don't intend to go back-n-forth fighting with Telegram... If the vx-underground Telegram is nuked maybe we'll try some other platform, I don't know, whatever.
2. In other news, we're hoping to resume some more uploads — papers, archives, etc. Doing the daily malware ingestion stuff is A LOT of work for our small roster with limited resources. It takes a lot of time and resources (mostly time). We want to do more cool stuff, but doing cool stuff takes time, energy, money, and cool music. We're running low on time and cool music. Feel free to recommend us some cool music.
3. In interesting news, following the 2024 United States Presidential Election our merch store sales went from an average of 5 - 10 sales a week, to literally zero. It appears our primary audience of westerners are more interested in United States politics than dumb t-shirts from a crappy website. This isn't a complaint — it's an interesting observation.
Thanks,
- smelly smellington
tl;dr tg channels deleted, dat sux. were back but malware collecting is hard. american politics is crazy
1. We've received some reports today that some hacker-cybersecurity-leak-??? Telegram channels have been hit by a Telegram orbital nuke. Club1337 and data1eaks are gone. If in the event the vx-underground Telegram channel is deleted, for whatever reason, it will be business-as-usual on Xitter. I don't intend to go back-n-forth fighting with Telegram... If the vx-underground Telegram is nuked maybe we'll try some other platform, I don't know, whatever.
2. In other news, we're hoping to resume some more uploads — papers, archives, etc. Doing the daily malware ingestion stuff is A LOT of work for our small roster with limited resources. It takes a lot of time and resources (mostly time). We want to do more cool stuff, but doing cool stuff takes time, energy, money, and cool music. We're running low on time and cool music. Feel free to recommend us some cool music.
3. In interesting news, following the 2024 United States Presidential Election our merch store sales went from an average of 5 - 10 sales a week, to literally zero. It appears our primary audience of westerners are more interested in United States politics than dumb t-shirts from a crappy website. This isn't a complaint — it's an interesting observation.
Thanks,
- smelly smellington
❤89👍9🥰8💯8😢6🤔4😱3❤🔥2🔥1
This media is not supported in your browser
VIEW IN TELEGRAM
Elwood Edwards, the voice of "You've got mail!" from AOL passed away November 5th. He was 74. Sadly, Mr. Edwards was only paid $200 despite being a voice to millions of people across the globe.
In his later years he worked as an Uber driver for extra income.
RIP Elwood.
In his later years he worked as an Uber driver for extra income.
RIP Elwood.
😢273🫡25🙏21❤16🥰4👍2🎉1
🚨 MALWARE DEVELOPMENT CONTEST 🚨
🚨 CASH PRIZES 🚨
We're hosting a malware development competition. It is a JVM malware competition.
Criteria:
- Virality/infectiousness
- Stealth
- Flexibility
What this is NOT:
- An obfuscator contest
- a VM design contest
0th place ('dubbed Gigachad'): $1,000
1st place: $500
2nd place: $250
3rd place: $100
4rd place: 1 picture of a cat
Deadline: December 15th, 2024
Finalists code will be placed on vx-underground. You will receive all credit.
Send submissions to bot59751939 on Twitter, or our Twitter account, or our email (staff at vx-underground dot org)
🚨 CASH PRIZES 🚨
We're hosting a malware development competition. It is a JVM malware competition.
Criteria:
- Virality/infectiousness
- Stealth
- Flexibility
What this is NOT:
- An obfuscator contest
- a VM design contest
0th place ('dubbed Gigachad'): $1,000
1st place: $500
2nd place: $250
3rd place: $100
4rd place: 1 picture of a cat
Deadline: December 15th, 2024
Finalists code will be placed on vx-underground. You will receive all credit.
Send submissions to bot59751939 on Twitter, or our Twitter account, or our email (staff at vx-underground dot org)
❤100😱25🤓16🤣14❤🔥8🔥7🎉5👍3👏3🤝3💯2
The Malware researchers: New proof of concept released abusing undocumented API calls!!
The Threat Intel analysts: New state sponsored campaign from China!!!
vx-underground Staff: Balatro is like poker kind of but not really
The Threat Intel analysts: New state sponsored campaign from China!!!
vx-underground Staff: Balatro is like poker kind of but not really
😁77❤5👏4😢1
vx-underground
Hey Alexa, play "Money In The Bank" by Lil Scrappy.
Just kidding. We don't own an Alexa, or any of that IoT bullshit. God forbid it's compromised and some TA dumps 500 terabutts of peoples conversations in .mp3 format
🥰66🤣32👍6👏4❤2🤓2😱1😢1🤩1🙏1
> be new to cybersecurity
> google cybersecurity discords
> bishopfox listed
> click to join their discord
> discord requires verification (image 1)
> verification site has tons of pop ups (image 2)
> massive pop up saying need to install thing
> annoying page appears
> lady talking giving instructions how to download file
> listen to polite lady and follow her instructions
> download per her instructions (image 3)
> its free malware (image 4)
> google cybersecurity discords
> bishopfox listed
> click to join their discord
> discord requires verification (image 1)
> verification site has tons of pop ups (image 2)
> massive pop up saying need to install thing
> annoying page appears
> lady talking giving instructions how to download file
> listen to polite lady and follow her instructions
> download per her instructions (image 3)
> its free malware (image 4)
😁64🤣49❤6🤓6😍5👍2😢1
vx-underground
> be new to cybersecurity > google cybersecurity discords > bishopfox listed > click to join their discord > discord requires verification (image 1) > verification site has tons of pop ups (image 2) > massive pop up saying need to install thing > annoying…
tl;dr 1st lesson of cybersecurity, verify your identity to bishopfox without detonating malware on your machine (we failed)
🤣77🤓6😢1