> be me
> get dm
> "smelly i found goop"
> wtf i love goop (malware)
> "I lost the goop... but I found a weird file on my computer"
> sends file
> malware log file
> ???
> examine log
> lots of debug information
> lmfao wtf
> see discord web hooks, hardcoded steam api key
> ???
> no identifiers really on VT
> beep boop search internet
> find the same steam api key in threat zone
> see a SHA256 hash
> look up on VT
> first seen june, 2026
> hmmm
> download file (hehe asked a friend)
> look inside file
> electron js malware
> heavily obfuscated
> skim file for anything that stands out
> references VirusTotal VM BlackList on GitHub
> lol ok
> clear text c2
> url inside referencing their Telegram
> ???
> go to their Telegram
> everything visible
> cite their Discord
> ???
> showing all their aliases
> showing draining crypto wallets
> showing stealing roblox items
> stealing counter strike items
> shows stealing emails, social media, credit cards
> shows when they started
wtf are you actually doing bro? youve documented EVERYTHING and handed it over in plain text. are you out of your mind???
SSH vulnerability found in MikroTik. I am sure it's not a big deal because of course there would not be 122,500 MikroTik devices with an exposed SSH interface. Surely people know better than that...
https://t.co/kLsGKiPQJh
@ta61670349@upsidedowntimes@signalapp@Williamrt Funny, if Encrochat used encryption but that's fabricated; they're claimed that Signal Protocol was used by it. But, not a while ago "Grand jury subpoena for Signal user data, Central District of California (again!)" . I'm sure that's how an agency that's cooperating with USA act
@upsidedowntimes@signalapp@Williamrt Also, I'm gonna leave this here since you only talked about CP/CE materials used by bad actors or malicious intended people.
https://t.co/r0rbUbO8rb
@upsidedowntimes@signalapp@Williamrt What? Dude, Encrochat was a honeypot. There was no encryption at all, just a nice message telling users they're using E2E encryption. Don't fuss about it tho, bad guys use WhatsApp anyway.
@upsidedowntimes@signalapp@Williamrt You mean, what NSA told Americans everyday? We need backdoors to prevent crime and we pinky promise not to break any privacy meanwhile. Also, as an European; the Cerberus program is an *idea* for receiving *funds*.
BADBOX: a firmware backdoored trojan found in 74,000 Chinese Android phones, tablets, and TV boxes in 227 counties and territories
There are confirmed 8 devices with backdoors installed — seven TV boxes, the T95, T95Z, T95MAX, X88, Q9, X12PLUS, and MXQ Pro 5G, and a tablet J5-W.
BADBOX functionality:
-Ad Fraud,
-Uses backdoored devices as proxy,
-Create fake accounts,
-Downloads and runs additional modules.
https://t.co/5LjLsMOIUh
8 pieces of free software for cybersecurity enthusiasts:
1. Training: Hack The Box
2. Curated News: Feedly
3. Web Hacking: Burp Suite
4. Data Modification: Cyber Chef
5. Port Scan: Nmap
6. Operating System: Kali Linux
7. Debugging: Ghidra
8. Email Security: DeHashed
Can’t believe YouTube doesn’t have a basic New Device Access verification when session token was used from another IP+User Agent
This would prevent @LinusTech from running across a home butt-naked at night, dealing with social engineering attack, that hijacked YT session tokens
@CristiVlad25 well, there might be two; either devs are really funny peps and throw that up to confuse & obfuscate or, it's really that old and google & exploitdb should do the trick