Dark Web Dumpster Diving (Hunting Infostealer Malware)

Dark Web Dumpster Diving (Hunting Infostealer Malware)

Source: YouTube · John Hammond · published Jul 10, 2023 · 18:32

Malware Analysis
No ratings yet Log in to rate
Transcript Available
Description

This video demonstrates using the Flair platform to search the illicit underground and dark web for info stealer malware, successfully locating a specific malware variant for sale and related discussions 0:00.

Key Takeaways:
• Flair aggregates data from dark web forums, marketplaces, and illicit networks to search for specific threats like info stealers 0:00.
• Initial searches revealed leaked PII from data breaches and discussions about vulnerabilities like Print Spooler 2:17.
• Forum discussions highlight that info stealers are often preferred over brute-forcing for stealing credentials because users are the "weak link" 4:02.
• A "Print Stealer" malware was found on Kingdom Market for $6, capable of stealing browser data, Discord tokens, and VPN credentials 8:25.
• The investigated malware was identified as a .NET binary with keylogger capabilities, though VirusTotal analysis was pending 9:41.

The exploration confirms the accessibility of dangerous malware on dark web marketplaces and the utility of tools like Flair for threat intelligence gathering 18:05.

Sources:

  • 0:00 Introduction to searching illicit networks with Flair
  • 2:17 Discovery of leaked PII and vulnerability discussions
  • 4:02 Discussion on info stealers vs brute-forcing
  • 8:25 Finding "Print Stealer" for sale on Kingdom Market
  • 9:41 Analysis of the malware via V

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Malware Analysis. Commonly maps to: Security Operations, Security Architecture and Engineering. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

so I am inside of flair and I'm gonna do some dark web dumpster diving I want to take a look out there across the illicit underground in the cyber crime centrals and all the syndicates and see what we might be able to dig up I figure it'd be kind of fun to go look for some info Steeler malware and just see what's out and about and available I am loving the fact that I can use Flair for this because honestly I can look through any identifiers that I might set for myself looks like there's a lot of activity because I released a video today at the time recording but I could honestly just switch this to Global and then I could look for anything I want like basically Google across all of the Shady stuff out there whether it's illicit networks on the dark web like marketplaces or forums or even …