@x86rax Profile picture

L

@x86rax

PGP: BF32 68A8 821C 06DA

Joined February 2015
Similar User
Tanner photo

@itscachemoney

Alex Chapman photo

@ajxchapman

streaak photo

@streaak

m0chan 🏴󠁧󠁢󠁳󠁣󠁴󠁿 photo

@m0chan98

₦฿₭ - Paw / Pwn / Purr photo

@nbk_2000

Niv Levy 🇮🇱 photo

@restr1ct3d

erbbysam ㋬ photo

@erbbysam

Peter photo

@p4fg

ChevyPicks 🏈 🦍 🏀 photo

@ChevyPicks

D Day photo

@ArchAngelDDay

Fisher photo

@Regala_

0xd0m7 photo

@0xd0m7

Sébastien Morin photo

@SebMorin1

Parth Malhotra photo

@Parth_Malhotra

Valeriy photo

@Krevetk0Valeriy

#Gootloader appear to have spun an old C2C server/domain back up this morning on their old hosting provider AS200593. 91.215.85[.]21 suerte[.]ninja @Gootloader


L Reposted

DO NOT TRUST VPN PROVIDERS! VPNS DO NOT stop you being HACKED VPNS rarely provide privacy if you aren't taking extra steps VPNs DO let you move location of egress..... techcrunch.com/2024/09/30/we-…


L Reposted

Check out our technical analysis of #RaspberryRobin's multilayered approach to thwarting analysis and evading detection. Read the full technical analysis here: zscaler.com/blogs/security…

Tweet Image 1

Hearing some news on the wire that actor(s) using LummaC2 are now just spam posting crypto ads on hijacked social media accounts from the stealers credential logs Which sounds extremely low effort until you consider Lumma's builder is around the 200 USD mark..


L Reposted

wishlistr.com/gi7w0rm/ Who can help my friend @Gi7w0rm out here with some funding? He has started a project teletoken.info where you can send over known malicious telegram api bot tokens over for analysing. Today alone i've send 3000 tokens over. 🪱 need storage :D

Tweet Image 1

L Reposted

Gootloader has changed their malware delivery techniques. Historically Gootloader has relied on SEO poisoning. Now Gootloader is creating fake PDF conversion websites. pdf-online-tools(dot)com We use sites like this when we're lazy. We're cooked. gootloader.wordpress.com/2024/11/07/goo…


L Reposted

🚨 New Blog Post! 🚨 #Gootloader's pivot from SEO poisoning tactics to fake PDF converters. Find out how the shift from legal-themed files to "PDF to DOCX" scams could impact everyday users. Read more 👉 gootloader.wordpress.com/2024/11/07/goo… #Cybersecurity #MalwareAnalysis #ThreatIntel


Defender would scream like a child that's had their haribos taken off them and I cant imagine other EDRs would be far behind...

NukeAMSI - a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments github.com/anonymous30050…



L Reposted

Ransomware idea: rename every office app and file to mimimatz.exe and let the EDR do the rest


On Peep's favourite day of the year, I'd like to share: youtube.com/watch?v=2ORsrb…


L Reposted

APT hub is published now,It is designed to collect the following data about the search APT APT profiles from - @malpedia , @MITREattack IOCs of current year from - @OTX Publish blogs on APT- @malpedia , @MITREattack , @OTX MITRE TTPs from - @MITREattack github.com/CyberRa1/APT-H…

Tweet Image 1

I'm excited to share that I'm developing a new project! "APT hub," will help us updated on the latest APT activities. It collects data on APT profiles, IOCs(1 yr), and blogs on searched APT. I'm also working on integrating MITRE, download available sample and yara. Stay Tuned!



Published a script to dynamically update the fan speed on modded ILO4 controllers based on CPU hotspot temp: github.com/x86shell/HPE-I…


Giving my first ever talk soon - Social engineering to Ransomware deployment 😃


L Reposted

⚠️ #Lumma Stealer 📷 accounts & channels were banned from @telegram

Tweet Image 1
Tweet Image 2

L Reposted

i made assembly but for minecraft, and yes it does compile to bytecode

Tweet Image 1

L Reposted

Nueva campaña de #FenixBotnet dirigida a México 🇲🇽 Ahora también utilizando la técnica "Copy&Paste" Distribución a través de SMS con URL: ▪ https://sat[.]citatorio[.]com/file/declaracion.pdf (falso PDF). Siguientes etapas desde: ▪ https://d3f8cv[.]top/d1zK3flPWA/v.txt ▪…

Tweet Image 1
Tweet Image 2
Tweet Image 3
Tweet Image 4

Looking at Redline now, will be a blog post for this hopefully but fk what

Tweet Image 1

L Reposted

Fully RE'd Go Injector + Lumma 12/10 build. This build includes the bypass for Chrome's App-Bound Encryption, I have some POC code i've written this now, it's actually super simple the way it works.

Tweet Image 1

Loading...

Something went wrong.


Something went wrong.