vxdb Profile Banner
vxdb Profile
vxdb

@vxdb

6,807
Followers
236
Following
94
Media
555
Statuses

Threat Intel | Security Research | Cybercrime News | not affiliated with @vxunderground | PGP -

Cyberdelia
Joined December 2012
Don't wanna be here? Send us removal request.
@vxdb
vxdb
3 months
You can now easily search through the BreachForums database using this website. tldr; don't register for websites I guess
Tweet media one
Tweet media two
22
134
1K
@vxdb
vxdb
28 days
Telegram has updated their privacy policy. They will now cooperate with law enforcement if the individual is involved in a criminal case or violates Telegrams TOS. They may disclose IP addresses used on your account as well as your linked phone number. Hey cyber criminals,
Tweet media one
50
200
951
@vxdb
vxdb
5 months
Breachforums News I’ve made contact with ‘aegis’ a site admin. I asked him if he would want to give a public statement on the current status of BF. This is what he said. Looks like they aren’t planning as of now to rebuild BF. Baphomet seems to be the only one arrested so far.
Tweet media one
8
17
201
@vxdb
vxdb
5 months
Breach Forums Update An individual obtained the ring doorbell camera footage of former admin 'pompompurin' getting raided by the FBI in march of last year. I've blurred the faces of agents and his mother for obvious reasons. All I ask is to please leave his family alone.
41
95
719
@vxdb
vxdb
2 months
It's called character development @CrowdStrike Crowdstrike sends out an update and accidentally blue screens millions of computers across the globe, causing outages that lasts multiple days. 1 Month Later, Crowdstrike leaks the identity of one of the most wanted
7
46
690
@vxdb
vxdb
2 months
TikTok has suffered a username exploit taking advantage of an old API endpoint. In 2020 TikTok forced its users who had a space in their username to abide by their new username format rules. 4 Years later a group of smart individuals figured out that if you use the old API
Tweet media one
Tweet media two
14
66
551
@vxdb
vxdb
1 month
Why does every sim swapper feel obligated to buy bottle service at clubs and get signs with their @ on it. Do they have some sort of life binding contract once they receive their cut that it has to be spent at the club? Calling all cyber criminals please educate me!
42
23
496
@vxdb
vxdb
5 months
🚨Breachforums Seized🚨 Popular hacking forum breachforums has allegedly been seized by law enforcement. I will keep you all updated on any further information. thanks @riddll3 for the screenshot
Tweet media one
18
37
482
@vxdb
vxdb
17 days
The owner of BreachForums, 'IntelBroker' filmed a video with 'DuperTrooper' where they duplicated items on a pay to win Minecraft server in order to disrupt their in game economy. One of the most random videos to have popped up in my recommended.
15
34
327
@vxdb
vxdb
3 months
sunhost[.]io has been seized by LE It was an Iranian bulletproof hosting provider. Not much public news about this takedown. I will provide more information later.
Tweet media one
13
46
291
@vxdb
vxdb
4 months
BF admins took back control of their old telegram channel from the DOJ. Wild.
Tweet media one
27
33
279
@vxdb
vxdb
3 months
A fake uBlock Origin extension is being featured on the Chrome Web Store. Over 700,000 people using it. The real uBlock extension is made by Raymond Hill, and has 34,000,000 users. Fake:
Tweet media one
15
72
274
@vxdb
vxdb
5 months
👋
@vxunderground
vx-underground
5 months
User @vxdb is not associated with vx-underground. They just by chance have the letters "vx" in their name. We have no affiliation with them. Please stop asking us about their posts because we have no idea. But, it is a cool Twitter handle though
17
10
309
5
3
273
@vxdb
vxdb
5 months
breachforums[.]st is back and now hosting the forum again. Blows my mind that the FBI can let this happen. @FBI do better lol
26
32
275
@vxdb
vxdb
5 days
USDoD has been arrested in Brazil today. He was most known for the National Public Data breach a few months ago. His identity has been known for some time now after his conflict with Crowdstrike. The Brazilian Police launched 'Operation Data Breach' (horrible name c'mon) this
Tweet media one
23
57
531
@vxdb
vxdb
5 months
🚨Incognito Market Admin Arrested🚨 The United States DoD just announced the arrest of market admin ‘Pharoh’. LE is on a roll the past couple months. More updates later on as I dive into this indictment. Thanks to @DoingFedTime for sharing the image below.
Tweet media one
14
38
243
@vxdb
vxdb
1 month
A furious preteen on discord logged into his botnet today, and my little blog felt his wrath. I will never be able to financially recover from this state sponsored attack.
Tweet media one
16
7
225
@vxdb
vxdb
3 months
Hacking group SiegedSec has disbanded. They made the announcement today, in their telegram channel.
Tweet media one
15
22
227
@vxdb
vxdb
2 months
BreachForums is under new administration for the 5th time since its inception. Well known threat actor ‘IntelBroker’ has taken ownership of the site for the foreseeable future. Some of the old staff members have self banned their accounts as shown in the pictures below. I’m
Tweet media one
Tweet media two
19
37
216
@vxdb
vxdb
3 months
This is a treasure trove of data. - Almost 6M lines total - Private messages between users - Hundreds of thousands of entries including IP addresses - MyBB Session entries All credit goes to 'emo' for leaking this
7
16
192
@vxdb
vxdb
13 days
The Russian communications regulator has banned Discord for failing to comply with their laws. Discord has yet to comment on the situation. @endermanch compiled a list of domains that are currently blocked by all Russian ISPs.
Tweet media one
10
20
195
@vxdb
vxdb
1 month
Fortinet, a well respected cybersecurity company has had 440GB of data stolen from their Microsoft share point server. The threat actor ‘Fortibitch’ posted that he had stolen the data and tried to extort the company into paying a ransom but Fortinet refused. Fortinet has yet to
17
18
171
@vxdb
vxdb
1 month
Two adults were just indicted for the involvement in a $230M crypto heist. Malone Lam aka “Anne Hathaway” and Jeandiel Serrano aka “SkidStar” (Very sophisticated hackers of course) were arrested last night in Florida. They tried to launder the stolen funds using mixing
8
12
183
@vxdb
vxdb
4 months
Discord is working on an End-to-end encryption voice chat feature. From what it looks like this is more of a marketing ploy than actually caring about user privacy. Nothing is stopping them from faking the key exchange and making it seem like your call is encrypted when its not.
Tweet media one
12
19
178
@vxdb
vxdb
12 days
Archive[.]org has suffered a data breach. No details on the severity of the data or what has been stolen. The actor proceeds to shout out @haveibeenpwned . The website isn’t reachable for me, so no screen shot for you.
7
14
170
@vxdb
vxdb
2 months
Made it to @defcon
Tweet media one
5
6
167
@vxdb
vxdb
5 months
Well known troll on breachforums 'thekilob' was arrested in Rome today. He was found with two 3D printed guns as well as videos of executions and CP on his computer. He is a self proclaimed Neo-Nazi. What a sick individual. src: emo - t[.]me/explain
9
29
158
@vxdb
vxdb
2 months
@CrowdStrike If you live under a rock or don't spend 5+ hours on twitter a day, I'm talking about the threat actor 'USDOD'.
2
1
157
@vxdb
vxdb
2 months
The admins at Archetype Market hosted a scavenger hunt this weekend all around Las Vegas for Defcon attendees. The prize was $10,000 in XMR to whoever could crack the puzzle. (nobody claimed it lol)
Tweet media one
Tweet media two
Tweet media three
Tweet media four
7
20
148
@vxdb
vxdb
2 months
Stats of the current top 5 Darknet Marketplaces Archetyp: Users: 481,836 Vendors: 2,477 Listings: 13,915 Dark Matter: Users: 23,000+ Vendors: 846 Listings: 15,800+ Drug Hub: Users - N/A Vendors - 1,262 Listings - 11,674 Fish: Users -
6
17
145
@vxdb
vxdb
2 months
The gay furry hackers are back (SiegedSec). 'Vio' has launched his own blog. The first post was published today, "guide to hacking and opsec". cybercrime[.]sbs
Tweet media one
Tweet media two
5
13
146
@vxdb
vxdb
27 days
This morning the FBI conducted a raid on Carahsoft Headquarters. Carahsoft sells IT hardware and software to federal, state and local governments as well as any other businesses in the public sector. The alleged reason for this raid is that the FBI is probing a business
2
11
143
@vxdb
vxdb
2 months
Popular pirated live sports streaming service StreamEast had one of there domains seized. Streameast[.]xyz (and some others) They responded immediately ensuring users that they are not going anywhere. “We have more domains than Apple and Google combined”
@StreameastNews
Streameast News Network
2 months
Never give up. Never stop fighting. Never pay for sports. Streameast 2024 and beyond.
Tweet media one
67
400
11K
4
16
139
@vxdb
vxdb
22 days
A little over 24 hours until Law Enforcement releases more information about Operation Cronos. It seems that they have made more arrests in the UK and France, aswell as possible server seizures in Spain.
Tweet media one
8
25
131
@vxdb
vxdb
5 months
Whoever is attacking you are so lame
@internetarchive
Internet Archive
5 months
Sorry to say, is under a ddos attack. The data is not affected, but most services are unavailable. We are working on it. This thread will have updates.
477
4K
32K
3
7
124
@vxdb
vxdb
1 month
This thread is a must read. $243M stolen from a single target is just insane. These guys are in jail now lol.
@zachxbt
ZachXBT
1 month
1/ An investigation into how Greavys (Malone Iam), Wiz (Veer Chetal), and Box (Jeandiel Serrano) stole $243M from a single person last month in a highly sophisticated social engineering attack and my efforts which have helped lead to multiple arrests and millions frozen.
Tweet media one
Tweet media two
2K
5K
30K
9
6
123
@vxdb
vxdb
5 months
🚨Final Doxbin Update🚨 (hopefully) I’ve been speaking with ‘demeter’, the current site admin, and he wanted to clear up all the misinformation surrounding Doxbin. Here’s what he had to say. PGP signed message: @genocide
Tweet media one
6
23
118
@vxdb
vxdb
3 months
The full BF 1.0 database including private messages, payment logs, detailed IP logs for each user has been leaked publicly via telegram.
8
18
117
@vxdb
vxdb
13 days
Turkey has now joined the party in banning Discord. 7 hours ago Russia blocked all Discord traffic and now Turkey has followed suit. Who’s next? 🦃
4
13
121
@vxdb
vxdb
5 months
Somehow the admins got the main domain back. breachforums[.]st is now redirecting to a telegram channel. The last 2 days have been very chaotic.
7
3
112
@vxdb
vxdb
22 days
In July of 2022, the automated email marketing platform Klaviyo was breached. The threat actor was able to steal names, emails, phone numbers, and other information specific to the customer. Out of the 40+ companies that were affected by this breach, LunarClient a popular
Tweet media one
5
8
114
@vxdb
vxdb
28 days
6
2
113
@vxdb
vxdb
4 months
Popular Crypto Exchange @krakenfx was hacked. An unknown threat actor used a zero-day vulnerability to steal $3 million in crypto. The vulnerability allowed the TA to initiate a deposit and receive funds without fully completing the deposit.
Tweet media one
5
13
110
@vxdb
vxdb
5 months
What is going on over at Doxbin
@pinnedpastes
O_O
5 months
#dox #doxbin new video emerging of doxbin admin (operator) supposedly held for ransom starting at $3000.... #op #kidnapped
Tweet media one
Tweet media two
Tweet media three
Tweet media four
25
9
98
16
11
107
@vxdb
vxdb
5 months
can’t wait for the 10 new forums that are going to try and take the place of BF
8
6
110
@vxdb
vxdb
3 months
DrugHub has finally been added to tor[.]taxi
Tweet media one
6
6
108
@vxdb
vxdb
4 months
Breachforums[.]st was placed on the @spamhaus Domain Blacklist. You are no longer able to register an account due to email providers not receiving mail from the domain.
Tweet media one
4
23
108
@vxdb
vxdb
25 days
Today the United States placed sanctions and indictments against two russian cybercriminals. This first individual known as 'Taleon' owns the crypto currency exchange Cryptex, which has become one of the largest money laundering networks in Russia. They failed to comply with AML
4
8
103
@vxdb
vxdb
15 days
The hosting provider that vxdb[.]sh is hosted on is currently dealing with a network wide outage to their backend. My VPS is still online but the providers website, user panels, etc is all offline. This means nothing to you guys but I need to vent somehow. ;) happy monday
5
3
101
@vxdb
vxdb
3 months
5k followers 😎 Thank you
Tweet media one
7
0
100
@vxdb
vxdb
2 months
How Dennis was caught: On January 7, 2022, a deposit of roughly 22.7 BTC ($930,000) was made to a known Karakurt address. This is alleged to be an undocumented ransom payment. Almost immediately after the payment was received it was split into different chunks and sent to
@vxdb
vxdb
2 months
Last year the US and Georgia (The country) met to negotiate a bilateral extradition treaty. It seems that Deniss Zolotarjovs aka 'Sforza_cesarini', a member of the Karakurt ransomware gang was not aware that his country is working in collaboration with the US. On Tuesday
2
2
36
4
12
94
@vxdb
vxdb
4 months
If you like podcasts and want to learn more about cyber security or cybercrime you need to listen to these. - @DarknetDiaries - @hackedpodcast - @dnetdiscussion
9
8
88
@vxdb
vxdb
5 months
More videos from this telegram channel below. Again this isn't fully verified so don't take this as fact.
Tweet media one
Tweet media two
Tweet media three
Tweet media four
8
12
89
@vxdb
vxdb
4 months
Nothing annoys me more than seeing these types of videos on my home page.
Tweet media one
Tweet media two
Tweet media three
10
4
88
@vxdb
vxdb
3 months
My blog is now online along with my first post.
5
6
88
@vxdb
vxdb
5 months
No updates regarding Breachforums or Doxbin today. Enjoy your day off. 👍
9
0
85
@vxdb
vxdb
2 months
It seems like the public has finally noticed the NPD breach. Yes, around 2.9B people have been effected. From what I've seen there is a lot of duplicate lines, so that number could be off by a sizeable amount. Check if your info was leaked curtsy of @0dayCTF
5
18
88
@vxdb
vxdb
5 months
Doxbin update #2 I'm probably late to this but its still interesting. Doxbin[.]com has updated their offline landing page with some nice french music. I might add it to my playlist.
Tweet media one
7
4
85
@vxdb
vxdb
2 months
HugBunter (Dread Admin) shares his thoughts on the arrest of Telegram founder Pavel Durov. "This is game over news, looks like they are seeking to take down all illegal sales through TG. I suggest everyone to contact any vendors you know are active on TG and make them aware of
7
9
85
@vxdb
vxdb
4 months
BreachForums offline for the 27th time this month. 👍
Tweet media one
6
7
80
@vxdb
vxdb
5 months
@SwiftOnSecurity I think the DOJ hired some new graphic designers
2
0
85
@vxdb
vxdb
3 months
New ransomware gang out in the wild. They go by the name ‘CrowdStrike’.
5
6
83
@vxdb
vxdb
7 days
Firefox > Chrome
16
4
87
@vxdb
vxdb
4 months
BreachLounge/Jacuzzi 3.0 the BF telegram channel has been deleted. I'm really starting to think that this is the end of BF. The site is still offline, and staff isn't giving any answers on whats going on.
9
10
82
@vxdb
vxdb
5 months
doxbin(.)com and their other mirrors are now resolving to a 500 internal server error. 👀
Tweet media one
1
11
81
@vxdb
vxdb
2 months
Ok maybe the French authorities are onto something. I was grabbing something to eat at a local sandwich place, and the guy at the register was on his phone. I took a glance at what he was doing once he put it down, he was in telegram channel that was selling weed. Lmao. is
14
2
77
@vxdb
vxdb
4 months
BF owner 'ShinyHunters' retired last night along with admin 'Hollow'. Cant see the forum lasting more than a couple months after this. @EquationCorp will handle this.
Tweet media one
2
7
74
@vxdb
vxdb
4 months
Breachforums Update #513 Shinyhunters, the owner who took over in conjunction with baphomet after the arrest of pompompurin has left the forum all together, after losing interest. The site ownership will be transferred to someone else, but who knows how long that will last.
7
9
73
@vxdb
vxdb
3 months
The Breachforums 1.0 database has been leaked publicly by ‘emo’ in his telegram channel. This is from the breached[.]co era before admin ‘pompompurin’ was arrested.
1
2
75
@vxdb
vxdb
4 months
Please update OpenSSH immediately. CVE-2024-6387 allows for RCE on glibc-based linux systems. An estimated 20 million systems are currently vulnerable to this exploit. This is the first OpenSSH vulnerability in almost 20 years. src:
2
20
75
@vxdb
vxdb
2 months
The arrest of the Bohemia Darknet Market admin(s) last week is a big win for Law Enforcement. This is the 4th arrest pertaining a Darknet Market admin within the last year. Bohemia Market - August 2024 Empire Market ('Dopenugget' and 'Sydney') - June 2024 Incognito Market
4
10
76
@vxdb
vxdb
3 months
I know this twitter is about cyber criminals and cool hacker stuff but can we appreciate this guy, he looks sick.
Tweet media one
5
0
73
@vxdb
vxdb
2 months
Oh you track ransomware attacks? Name every ransomware group ever.
9
5
71
@vxdb
vxdb
5 months
@xvxvxcvczvxv @riddll3 LE is getting better and better at photoshop it seems
1
1
71
@vxdb
vxdb
20 days
Regarding my last tweet on the LockBit situation. Law Enforcement has since released a document outlining the operation of ‘Evil Corp’ and their involvement with LockBit. They go into detail about their evolution as a group, as well as their accomplishments and activities.
Tweet media one
Tweet media two
Tweet media three
2
8
72
@vxdb
vxdb
3 months
good morning or afternoon or night
Tweet media one
2
15
70
@vxdb
vxdb
5 months
The last few days have been crazy. Thank you everyone for following and supporting my stupid tweets. 😘
4
1
67
@vxdb
vxdb
5 months
baph(.)is is offline aswell is now asking for the public for help to catch popular BF and RF users.
Tweet media one
Tweet media two
Tweet media three
1
6
67
@vxdb
vxdb
5 months
Who might this Jessica Hirsch be? @DoxbinHQ care to explain yourself
Tweet media one
6
7
66
@vxdb
vxdb
3 months
CrowdStrike has imploded. tldr; hopefully your favorite color is blue
3
7
64
@vxdb
vxdb
2 months
happy friday
Tweet media one
0
4
65
@vxdb
vxdb
3 months
Server CPU usage at 110%
Tweet media one
0
1
65
@vxdb
vxdb
4 months
How to Farm Engagement 101: 1) See a post on twitter about a security flaw 2) Skim the post quickly 3) Ask ChatGPT to write an article for you 4) Publish the article that doesn’t describe at all what happened.
@M_Solidus
Marconius Solidus #FreeSamourai
4 months
Is Signal Messenger Compromised? Yesterday, new vulnerability in Signal Messenger was found by @mysk_co developer. What's are the Problems? Problem 1. Messages are kept in an encrypted file, however local encryption key is stored in plain text in a file called config.json.
Tweet media one
74
123
516
3
8
64
@vxdb
vxdb
4 months
I hate nodejs with all of my heart
7
6
62
@vxdb
vxdb
2 months
The City of Columbus Ohio sues a security researcher over downloading data from the Rhysida group. On July 18 2024, the city of Columbus Ohio was hit with a ransomware attack taken out by notorious group 'Rhysida'. After 2 weeks of negotiation the two parties did not come to an
4
6
61
@vxdb
vxdb
5 months
🚨Operation Endgame🚨 Europool targeted botnets such as, Trickbot, Pikabot, and Smokeloader. Over 100 servers have been seized. 4 arrests have been made so far, as well as the takedown of over 2,000 domains.
2
4
62
@vxdb
vxdb
5 months
who’s going to @defcon this year
18
3
53
@vxdb
vxdb
2 months
Just send me the phishing link already
Tweet media one
5
5
52
@vxdb
vxdb
8 days
Goodbye pink anime pfp. Hello Memoji that somewhat looks like me. It’s really late at night and I felt the urge to change my profile picture. You can go back to bed now.
8
0
53
@vxdb
vxdb
4 months
Announcement made by Shinyhunters explaining what’s been going on the last few days.
Tweet media one
@vxdb
vxdb
4 months
Breachforums Update #513 Shinyhunters, the owner who took over in conjunction with baphomet after the arrest of pompompurin has left the forum all together, after losing interest. The site ownership will be transferred to someone else, but who knows how long that will last.
7
9
73
1
4
51
@vxdb
vxdb
4 months
They’ve updated their website, now i’m even more confused. My guess is that they are shutting down. torrentgalaxy[.]to
Tweet media one
@vxdb
vxdb
4 months
Popular torrent site 'TorrentGalaxy' is currently offline. The staff has left a message stating, 'Updates will be posted in case of any changes.' Some speculate the downtime may be related to law enforcement pressure with anti-piracy laws.
Tweet media one
4
4
43
3
5
51
@vxdb
vxdb
3 months
@vxunderground or 51,675,000 McDonalds chicken nuggets
4
0
50
@vxdb
vxdb
5 months
@vxunderground @BleepinComputer @SOSIntel They telegram channel has now been whipped of all messages. The channel owner left their final message. A picture of a christian cross and a jesus meme.
Tweet media one
2
5
50
@vxdb
vxdb
4 months
DrugHub, one of the largest DNMs announces on Dread that they have completed their merge with Supermarket. All vendors and users with a valid PGP key now have an account on DrugHub.
Tweet media one
1
2
48
@vxdb
vxdb
1 month
@wristharm Discord hacker starter pack - voice changer - all black profile - short username - 5+ tiktok @ connections
6
0
48
@vxdb
vxdb
5 months
@Janomine @riddll3 they did the same thing for lockbit
0
0
47
@vxdb
vxdb
4 months
This doesn’t look good for BF. Since the arrest of former admin pompompurin, the forum has lost its credibility. Site is currently offline both on tor and clearnet. I’ll tweet whenever a statement releases on the interwebs from staff.
@vxdb
vxdb
4 months
Breachforums Update BreachChat the public telegram channel has been deleted along with the ShinnyHunters account. Staff member ‘Aegis’ announced it on his telegram channel.
Tweet media one
1
4
45
3
8
48
@vxdb
vxdb
4 months
Breachforums Update BreachChat the public telegram channel has been deleted along with the ShinnyHunters account. Staff member ‘Aegis’ announced it on his telegram channel.
Tweet media one
1
4
45
@vxdb
vxdb
2 months
dispossessor[.]com has been "repossessed" by Law Enforcement. Dispossessor/Radar ransomware group was an alleged affiliates of the infamous LockBit gang. They have been known to use LockBit Builder in their attacks. More later credit: @aejleslie
Tweet media one
Tweet media two
1
11
46