vx-underground – Telegram
vx-underground
45.6K subscribers
3.92K photos
416 videos
83 files
1.42K links
The largest collection of malware source, samples, and papers on the internet.

Password: infected

https://vx-underground.org/
Download Telegram
vx-underground
uhhh ok
> wants to add to blocklist
> tweets it
🤣111🤔38🔥7🙏21🎉1
This media is not supported in your browser
VIEW IN TELEGRAM
Windows 10 support ends October 14th, 2025. It is the calling of the Linux nerds.
😁151🤣48🥰18🤓109💯7👍4😢2
The National Police Agency (NPA) of Japan recent documentation of state-sponsored Threat Actors from China is interesting.

A group they believe to be a subset of APT10, abuses WSB (Windows Sandbox) by creating a .wsb configuration file and using it to spin up an instance of the Windows Sandbox.

This is interesting because Windows Defender cannot access the Windows Sandbox (image 1).

The payload enables folder sharing, network access, clipboard access, microphone access, and video access.

tl;dr abusing the sandbox, sandbox as a c2
👍81❤‍🔥24😱19🔥15🤯7🤝7🤔65😁1😢1
Congratulations to APT "Stately Taurus".

Throughout 2021 and 2022 Palo Alto was tracking their activity because they left debug symbols in their DLLs.

They've since learned to remove the debug symbols. Good job, buddy. It took a few years, but you're getting better!
😁72🤣21🥰6🎉6👍51🔥1😢1
vx-underground
Congratulations to APT "Stately Taurus". Throughout 2021 and 2022 Palo Alto was tracking their activity because they left debug symbols in their DLLs. They've since learned to remove the debug symbols. Good job, buddy. It took a few years, but you're getting…
Still not as oopsie-doopsie as when the Indian military left the PDB data present which displayed the developers first name and last name, but making the path "hack" is pretty oopsie too.
😁59👍4🤣3😢1
Malware 🤝Cat girls
❤‍🔥189😁26🤓20🔥174👍4🤝3🥰2😢2
This media is not supported in your browser
VIEW IN TELEGRAM
A visual representation of cybersecurity
😁102😱2😢1💯1
Due to insanely high-demand, we will be working on a kitty cat picture repack. The repack will have non-cat images removed. We will also increase the number of kitty cat pictures present.

Special thanks to DiffeKey for fixing the entire thing.
🥰84🤓8👍7😢1
vx-underground
Due to insanely high-demand, we will be working on a kitty cat picture repack. The repack will have non-cat images removed. We will also increase the number of kitty cat pictures present. Special thanks to DiffeKey for fixing the entire thing.
Oh, and based on seeds and stuff, a guesstimate is over 1 petabyte of cat pictures have been distributed. Cat pictures are x100 more popular than anything we've ever shared or produced
🥰115🤣3215🤯5👍1😢1
Yeah bro, it's super cool a bunch of cat pictures is more widely shared, appreciated, and praised than 6 years of work of archiving malware related educational material
🙏122🥰38🤣36🫡28😁25❤‍🔥8😢7😍5🤩3🤓3👍2
Media is too big
VIEW IN TELEGRAM
April 9th, EUROPOL did a press release regarding the arrest of affiliates using IcedID, SystemBC, PikaBot, Smokeloader, and Bumblebee.

EUROPOL memes the malware authors databases for not being 'GDPR compliant' and (in some capacity) reaching out to and identifying affiliates via Telegram.

Furthermore, EUROPOL put out a warning for customers of 'Superstar' and state they're actively doing arrests, home searches, issuing arrest warrants, doing 'knock-n-talks'.

5 unnamed individuals have been apprehended and are being 'interrogated' (quite literally the words used by EUROPOL, the connotation sounds like they're sending people to Guantanamo Bay).

They also released another mini-anime episode

¯\_(ツ)_/¯
🔥70😁16🤓6👍32🤝2😢1
me on the internet
134😇18🔥12🤣12😁6🥰2🤯1😢1
April 11th, 2025, Waylon Wilcox of Dillsburg, Pennsylvania, United States, plead guilty to two (2) counts of filing false individual income tax returns to the United States Internal Revenue Service.

Mr. Wilcox lied to the United States Internal Revenue Service regarding his profit from non-fungible tokens (NFTs).

Mr. Wilcox answered "no" to the United States Internal Revenue Service when asked: “At any time in 2021, did you receive, sell, exchange, or otherwise dispose of financial interest in any virtual currency?” (and any and/or all relevant questions in 2022)*

Mr. Wilcox in actuality collected 97 of 10,000 unique characters of CryptoPunks NFTs* (corrected, edit). He under-reported $8,511,238 in 2021 and $4,599,532 in 2022 in income — far beyond his actual income.

This was in sharp contrast to his (now private) social media which displayed luxurious travels.

Mr. Wilcox owes the United States Internal Revenue Service approx. $3,200,000. He is also facing 6 years in prison.

tl;dr guy makes millions from nfts, clicks "no" on checkbox to tax collection on monies, lies and says doesnt have a lot of monies, doesnt launder money and has millions, the us gov was like "lolwtf how this guy spending so much but says hes broke", looks inside, sees nft monies
🤣90😢9🥰4👍32🙏2🔥1
This generation was the first to be raised online

Google harvested my data
Tumblr harvested my data
YouTube harvested my data
Vine harvested my data
DeviantArt harvested my data
Blogger harvested my data
Facebook harvested my data
Instagram harvested my data
Etsy harvested my data
Twitter harvested my data
🙏220🤣143💯47😢1811🔥11👍4❤‍🔥3🤝3😇2🤓1
😁141🤔40🤯38🤣10😱7💯7🤓6🔥42👍1🫡1
🥰13920🤣16😎9🔥5😁3🤓2❤‍🔥1👍1😢1
"North Korea has ceremonially opened its first computer club — with Kim Jong Un himself attending the event.

Now, North Korean hackers will be able to comfortably steal billions of dollars from “Western capitalists” for their leader." — Nexta TV

... Based and/or cyber criminal pilled?
😎202😁35🔥12🤣128🤯5🥰4🎉4❤‍🔥3😱3👍2