
Dark Web Dumpster Diving (Hunting Infostealer Malware)
Source: YouTube · John Hammond · published Jul 10, 2023 · 18:32
This video demonstrates using the Flair platform to search the illicit underground and dark web for info stealer malware, successfully locating a specific malware variant for sale and related discussions 0:00.
Key Takeaways:
• Flair aggregates data from dark web forums, marketplaces, and illicit networks to search for specific threats like info stealers 0:00.
• Initial searches revealed leaked PII from data breaches and discussions about vulnerabilities like Print Spooler 2:17.
• Forum discussions highlight that info stealers are often preferred over brute-forcing for stealing credentials because users are the "weak link" 4:02.
• A "Print Stealer" malware was found on Kingdom Market for $6, capable of stealing browser data, Discord tokens, and VPN credentials 8:25.
• The investigated malware was identified as a .NET binary with keylogger capabilities, though VirusTotal analysis was pending 9:41.
The exploration confirms the accessibility of dangerous malware on dark web marketplaces and the utility of tools like Flair for threat intelligence gathering 18:05.
Sources:
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 0.5 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Malware Analysis. Commonly maps to: Security Operations, Security Architecture and Engineering. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
so I am inside of flair and I'm gonna do some dark web dumpster diving I want to take a look out there across the illicit underground in the cyber crime centrals and all the syndicates and see what we might be able to dig up I figure it'd be kind of fun to go look for some info Steeler malware and just see what's out and about and available I am loving the fact that I can use Flair for this because honestly I can look through any identifiers that I might set for myself looks like there's a lot of activity because I released a video today at the time recording but I could honestly just switch this to Global and then I could look for anything I want like basically Google across all of the Shady stuff out there whether it's illicit networks on the dark web like marketplaces or forums or even …