vx-underground – Telegram
vx-underground
45.8K subscribers
3.93K photos
419 videos
83 files
1.43K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
More information has been released regarding Connor Moucka a/k/a Alexander Moucka a/k/a Judische a/k/a Catist a/k/a Waifu, the person allegedly responsible for the Ticketmaster compromise (among many others)

He has way too many aliases

November 22nd, 2024, unsealed documents (from Canada) state authorities believe him to be dangerous to himself, and the public. They also state he a flight risk.

Documents show Mr. Moucka used racial slurs online, frequently discussed killing black people, mass mailing black people "sodium nitrate pills", acquiring weapons to kill random Canadians, and discussing wanting to commit suicide by cop.

Court documents show Mr. Moucka plotting and scheming the Snowflake compromise, which resulted in the Ticketmaster compromise. Chat logs show the scheme, him and his associates discussing how to use stolen credentials, access to private data (banking information, payroll records, driver license numbers, passports, and social security numbers). The scheme conversation included how they would extort people.

Unsealed documents show images of Mr. Moucka's home and how law enforcement identified him. Mr. Moucka was identified by law enforcement by his Apple iCloud account. The Apple iCloud account was linked to his Discord account. Additionally, the Apple iCloud account was tied to his cryptocurrency wallets.

Court records show Mr. Moucka was charged in November, 2023 at age 25 for harassing a woman online and threatening to kill her.

Mr. Moucka's next court case regarding his extradition to the United States is November 29th, 2024.
😁47🤣227👍6😱3😢2🤓2
vx-underground
More information has been released regarding Connor Moucka a/k/a Alexander Moucka a/k/a Judische a/k/a Catist a/k/a Waifu, the person allegedly responsible for the Ticketmaster compromise (among many others) He has way too many aliases November 22nd, 2024…
Note: "Mr. Moucka was identified by law enforcement by his Apple iCloud account. The Apple iCloud account was linked to his Discord account. Additionally, the Apple iCloud account was tied to his cryptocurrency wallets."

We have lost count by the number of times people have been identified from Discord and Apple products. If you're committing crime, don't use Discord or Apple products. They will cooperate with law enforcement agencies.
🤣115👍13😁6🫡63🤓1
Hello,

We've had quite a few people reach out to us regarding the Connor Moucka a/k/a Waifu court documents. Unfortunately, we are not Canadian and we are unable to access to the Canadian court system documents (or we are not privy to how to access it or navigate it, we've never done stuff within the Canadian judicial system). Our information derived directly from an Ontario based news station which has been covering the case.

We are trying to the best of our ability to obtain the documents. We cannot promise anything. If you'd like to review the direct news source, it is attached to this post. However, it is paywalled (inb4 nerds bypass it)

Source: https://www.theglobeandmail.com/business/article-ontario-man-in-alleged-snowflake-hacking-case-also-accused-of-posting/
👍26🤝6😢4😁2
Channel photo updated
We're festive (extra festive)
154😁23👍10😘10😇5🤣4👏3❤‍🔥2😢2🤓2🫡1
Channel photo updated
Good morning,

We've successfully received the court documents from the Canadian judicial system regarding Connor Moucka, the individual allegedly responsible for the compromise of Snowflake.

We cannot in good faith share these documents because, as a surprise to us, the Canadian government unveiled Mr. Moucka's home address, telephone number, passport information, a brief denoscription of his childhood, etc.

We believe this information could potentially put him (or his family) in danger from people who strongly dislike Mr. Moucka.
🤣74🤯19🫡18👍128🤔4🤝4👏3🤓3😢2
Malware delivery idea:

>Account 1 makes inaccurate post on X
>Account 2 leaves community note
>Have X bots upvote community note so it's visible
>Community note cites malicious site
>Site determines OS, if Windows, drop malicious file
>Other platform shows legit information
👏105🤓26🤝16🙏8🤣8🔥4😢4😁3🤔3👍2
vx-underground
Malware delivery idea: >Account 1 makes inaccurate post on X >Account 2 leaves community note >Have X bots upvote community note so it's visible >Community note cites malicious site >Site determines OS, if Windows, drop malicious file >Other platform shows…
Is this a good and/or practical malware delivery method? No, probably not. It can easily be stopped and requires a lot of work.

Is it a cool and badass idea? Yes
😁62🤣15🤓9👍7💯7🔥4👏31😢1
A few weeks (or months) ago we made some posts about having some more ransomware leaks. We have internal insights, tooling, etc. on Dispossessor ransomware group.

We forgot to make it public. Thankfully, someone left a condescending remark on one of our posts and reminded us.
🤣63🔥10👍4👏2🎉2😢1
vx-underground
A few weeks (or months) ago we made some posts about having some more ransomware leaks. We have internal insights, tooling, etc. on Dispossessor ransomware group. We forgot to make it public. Thankfully, someone left a condescending remark on one of our posts…
Next week we'll scrub victim data and make it available for download on vx-underground. Thank you, random angry person on the internet, for reminding us.
68😘8👏7😁6🎉3👍2😢1
Good morning, or evening.

After a months, we're finally releasing the Dispossessor ransomware leaks. They're now available to download.

Please exercise extreme caution. This archive contains ransomware payloads.

https://vx-underground.org/Archive/Dispossessor%20Leaks
47👍16🤓13🥰4😢3🤣2👏1🎉1
Sometimes it's very frustrating administrating a large account on social media. Whenever we make a post we try to be as succinct as possible to avoid misinterpretation. That doesn't always happen, and it's frustating.

tl;dr

"I like pancakes"
"oh, so you hate waffles???"
🤣125🙏14😁5💯54😢3👍1👏1🎉1😘1
vx-underground
Sometimes it's very frustrating administrating a large account on social media. Whenever we make a post we try to be as succinct as possible to avoid misinterpretation. That doesn't always happen, and it's frustating. tl;dr "I like pancakes" "oh, so you…
Other things we dislike:

1. Us missing messages or notifications and people taking it personal. They act like we're avoiding them, or something

2. Conspiracy theorists piecing together our posts — thinking we're the illuminati

3. People rude as hell for zero reason
🤣90😢20💯153👍3👏2❤‍🔥1😁1
Last week 404mediaco did an article on Threat Actors using Spotify to host malicious software and/or pirated software.

In summary, karol_paciorek and g0njxa discovered nerds are using Spotify playlists noscripts to amplify malware.
🤣99🔥8👍6❤‍🔥22
🚨BREAKING🚨
RANSOMHUB RANSOMWARE GROUP HAS RANSOMED A GIFT SHOP IN ROCHESTER, NEW YORK. IT IS EXPECTED TO CAUSE OVER $15 IN DAMAGES, ALL 3 EMPLOYEES ARE PANICKING AS THEIR UBER EATS ORDERS MAY BE LEAKED ONLINE
🤣206😱26😁115🔥4😢3👍1👏1
Yesterday Banshee Stealer, the MacOS-based Malware-as-a-Service infostealer, had their source code leaked online.

As a result of the leak they've shut down their operations. We've archived the leak and made it available for download on GitHub.

https://github.com/vxunderground/MalwareSourceCode
🔥67❤‍🔥10🤣6👍5🤓42😢2🫡2
😁126🤣79🤓12😱7😎7💯4🤝4👍32😢2