herm1t Profile Banner
herm1t Profile
herm1t

@vx_herm1t

3,975
Followers
226
Following
198
Media
717
Statuses

Демократична Сокира Ukrainian Cyber Alliance VX Heaven

Joined November 2020
Don't wanna be here? Send us removal request.
@vx_herm1t
herm1t
7 months
Just hacked into ru ransomware gang confluence :-)
Tweet media one
47
174
2K
@vx_herm1t
herm1t
11 months
PMC Wagner has announced that they have taken down the satellite provider Dozor-Teleport and damaged user terminals. Their rivalry with the RU MoD is manifesting in an unusual way. This is the second major satellite provider breach after Viasat
Tweet media one
33
403
1K
@vx_herm1t
herm1t
1 year
Tweet media one
9
65
793
@vx_herm1t
herm1t
2 years
just look who's back!
Tweet media one
11
113
494
@vx_herm1t
herm1t
3 years
CIA's Hive backdoor listens all traffic waiting for the encrypted packet which will trigger reverse shell. This will stress load the CPU on target. Right thing to do is to set up BPF-filter on socket (marker is x * 1/x == 1):
Tweet media one
4
104
415
@vx_herm1t
herm1t
11 months
According to monitoring, Dozor is still down, and among their clients are Northern Fleet ships, a nuclear power plant, military units of the Ministry of Defense and the FSB in very remote locations. It is nice to see russians fighting amongst themselves.
Tweet media one
4
57
370
@vx_herm1t
herm1t
7 months
Trigone. The servers of the Trigona ransomware gang has been exfiltrated and wiped out by @UCA_ruhate_ Welcome to the world you created for others!
Tweet media one
12
65
282
@vx_herm1t
herm1t
11 months
The restoration of the core network may take from several days to several weeks, while reprogramming user equipment and fully restoring the service can take months (picture from internal dozor wiki published by hackers)
Tweet media one
4
39
261
@vx_herm1t
herm1t
11 months
I think that finding firmware for equipment in the midst of Arctic ice will not be easy
Tweet media one
3
14
216
@vx_herm1t
herm1t
11 months
The fact that wagneritte hackers started to 'work on ru' is simply priceless
Tweet media one
1
17
196
@vx_herm1t
herm1t
11 months
Where is the nearest Cisco consultant around here?
Tweet media one
3
13
178
@vx_herm1t
herm1t
2 years
Я знаю, все ждут постов, команд и все такое. Постов достаточно. Лучшая команду - от местного тро - какой хуйни не творить (список). И. Мы ищем доступ. Не ддос, не инфо, не дефейсы, этим есть кому заниматься. Доступы. И уже ищем. Это будет не быстро, не зрелищно, но неотвратимо.
8
27
152
@vx_herm1t
herm1t
3 years
i missed the zines, and glad that there is the new one
Tweet media one
3
30
120
@vx_herm1t
herm1t
11 months
@netblocks
NetBlocks
11 months
⚠️ Confirmed: Metrics show a disruption to satellite internet provider Dozor-Teleport which supplies Russia's FSB, Gazprom, Rosatom and military installations; the incident comes amid a wave of cyberattacks by a group claiming affiliation with Wagner PMC 🛰️📉
Tweet media one
40
399
1K
2
17
126
@vx_herm1t
herm1t
2 years
My fellow hackers an security pros you could help us here in Ukraine to #StopRussia If you knew any vulns in russian systems, contact me or @UCA_ruhate_ Together we will make Russia pay a heavy price.
10
30
102
@vx_herm1t
herm1t
3 years
ShadowBrokers or scam?
Tweet media one
7
30
94
@vx_herm1t
herm1t
11 months
Agreement between FSB and Dozortel
Tweet media one
2
8
98
@vx_herm1t
herm1t
10 months
@olliecarroll Butthurt of so called "good russians" clearly shows that our enemy is the entire russian nation, drown too deep in their jingoistic exceptionalism, so the NAFO black joke is indeed a good one
1
3
92
@vx_herm1t
herm1t
1 year
Dumping the "Russian Post"
Tweet media one
2
10
87
@vx_herm1t
herm1t
7 months
dd'ing NSPK/Mir payment system twelve hours after the breach while admins watching top
Tweet media one
3
10
91
@vx_herm1t
herm1t
2 years
Ukrainian authorities prohibit citizens from using Starlink to maintain internet censorship. @elonmusk , JFYI
Tweet media one
10
24
86
@vx_herm1t
herm1t
2 years
"Ukraine does not conduct offensive cyber operations but does conduct defensive ones"
Tweet media one
3
14
78
@vx_herm1t
herm1t
7 months
Mir payment system
Tweet media one
4
13
78
@vx_herm1t
herm1t
2 years
Rostelecom called ongoing cyber attacks on Russia "unprecedented" and "never seen before". That's just the beginning. Russia wanted to turn back the history and will return to stone age instead.
2
18
65
@vx_herm1t
herm1t
3 years
just because I'm paranoid doesn't mean they're not out to get me. a bit chilling, less chilling than "Government-backed attack alerts" (seen 'em too)
Tweet media one
5
9
59
@vx_herm1t
herm1t
3 years
I am not able to compete with @netspooky 's 82 bytes ELF, but here is my version (84 bytes)
Tweet media one
2
11
61
@vx_herm1t
herm1t
2 years
Unidentified persons posted data (possibly) stolen from the state portal Diia on RaidForums. And it looks real :-(
Tweet media one
5
29
61
@vx_herm1t
herm1t
2 years
I like this design of the website of the Donetsk railway
Tweet media one
3
9
55
@vx_herm1t
herm1t
7 months
Tweet media one
4
0
63
@vx_herm1t
herm1t
11 months
@Cyberknow20 An addition to your collection
2
1
60
@vx_herm1t
herm1t
2 years
Unlike russian blitzcringe, cyber is day-to-day job to seed disruption, deception and disorder in russia. Geo-fencing will not stop us.
Tweet media one
3
12
50
@vx_herm1t
herm1t
2 years
We at @UCA_ruhate_ have hacked one of the most important departments in Russia - the prison one. Let's start with "FSIN-Letter". Each letter has both the sender and recipient, and as you can see by the numbers, we have a lot of such letters. Sample
Tweet media one
2
13
53
@vx_herm1t
herm1t
3 years
The bug in the ukrainian state portal "Diia" allows you to specify any date in the vaccination certificate
Tweet media one
2
18
49
@vx_herm1t
herm1t
2 years
Found next to a blown up jeep...
Tweet media one
4
6
51
@vx_herm1t
herm1t
2 years
FIDONet and UNIX-VIRUS mailing list archives @silviocesare
Tweet media one
4
18
48
@vx_herm1t
herm1t
1 year
@BackAndAlive @Portmonecomua Пока больше похоже на киберпиздеж
2
0
50
@vx_herm1t
herm1t
3 years
If I were the author of ransomware I would read inodes directly from the file system's device. Just tried it on XFS, a few hundreds lines and it's damn fast.
4
3
48
@vx_herm1t
herm1t
2 years
Tweet media one
2
1
48
@vx_herm1t
herm1t
2 years
@leonidragozin The same Menendez who once said that life in Donetsk is getting better because "the bodies are removed on time"
1
3
38
@vx_herm1t
herm1t
2 years
Xaknet and Killnet are so upset by the failures of the Russian army that they hacked and mined Putin's Ferris wheel
6
8
39
@vx_herm1t
herm1t
1 year
Russian bots in TG trying to pretend they are ukrainians. Extremely funny :-) #підлогакраїни
Tweet media one
5
2
42
@vx_herm1t
herm1t
3 years
So called "cyberweapon" is extremely boring and bug-ridden. It's a miracle that spooks are able to achieve their goals with such lame malware :-)
1
2
37
@vx_herm1t
herm1t
2 years
Ministry of digital transformation used bot farm to flood my post about possible leak from Diia state app. Their embarrassment looks like confirmation of breach an leak
Tweet media one
2
6
35
@vx_herm1t
herm1t
1 year
@EP_President @bert_hu_bert @Europarl_EN There is nothing “sophisticated” in ddos
5
0
37
@vx_herm1t
herm1t
2 years
C.A.S and DF broke into 1C
Tweet media one
3
8
34
@vx_herm1t
herm1t
2 years
btw, if one need to open a port without modifying the firewall rules, there is nice nf_register_net_hook function
0
3
32
@vx_herm1t
herm1t
2 years
"highly sophisticated state-aligned ddos-botnet" #legion #vera
Tweet media one
1
5
31
@vx_herm1t
herm1t
1 year
Героям слава!
1
3
31
@vx_herm1t
herm1t
1 year
Tweet media one
2
0
33
@vx_herm1t
herm1t
7 months
@joetidy because they're so lame that they cannot do any harm beyond ddos anyway :-)
2
1
33
@vx_herm1t
herm1t
2 years
Got my hardware back
Tweet media one
3
1
31
@vx_herm1t
herm1t
11 months
@shashj @ddd1ms Who kbiws? If the hack wasn't so significant, I wouldn't have posted it at all, because I consider the wagnerittes as bloody pigs.
2
0
29
@vx_herm1t
herm1t
11 months
@ddd1ms Well, let's see what the Wagner press service would say
2
0
28
@vx_herm1t
herm1t
2 years
Вы кстати можете поучаствовать в ДДоС-атаках (сделали ребята из DC) или пораскидывать по заберебрику ссылки на двухсотых захватчиков
0
14
28
@vx_herm1t
herm1t
2 years
Happy Data Privacy Day!
Tweet media one
1
3
27
@vx_herm1t
herm1t
1 year
Just to show that we are deep inside russian networks, techspec of their USV
Tweet media one
1
7
29
@vx_herm1t
herm1t
2 years
@UCA_ruhate_ really like places where generals, ministers and press secretaries show documents at the entrance. I think that this person does not need to be introduced. While our counterparts are doxing lockheed, we will hack a bit through the russian "decision-making centers".
Tweet media one
1
6
26
@vx_herm1t
herm1t
1 year
According to Russia Today, we are using SBU to wage war on Russia. What a wonderful nahryuk :-)
Tweet media one
6
6
30
@vx_herm1t
herm1t
2 years
Groups C.A.S., UCA and DF take responsibility for hacking the CSTO
Tweet media one
3
7
28
@vx_herm1t
herm1t
3 years
btw, routine for self-removal in Hive will never work as intended due to ETXTBSY, one need to unmap running executable first before wiping
1
3
24
@vx_herm1t
herm1t
3 years
The trivial change to Huffman would produce random encoding, still optimal and fully equivalent to canonical one. Just swap zeroes and ones randomly to get a "polymorphic compression"
Tweet media one
1
3
25
@vx_herm1t
herm1t
10 months
One hundred years of modern crypto and special services and finally this :-)
Tweet media one
3
2
27
@vx_herm1t
herm1t
1 year
load shared object from memory, sort of
Tweet media one
0
3
26
@vx_herm1t
herm1t
8 months
I have been asked to assist with the purchase of 0/N-days (not for criminal activities). I am ready to act as an escrow. The client is ready to spent up to one and a half million. If you have something, drop me a line with you contact here or in TG (herm1t_ruh8)
1
15
27
@vx_herm1t
herm1t
11 months
@shashj @ddd1ms The TG channel, they also defaced some sites and posted the video with the armed uniformed man with PMC's insignia
1
1
23
@vx_herm1t
herm1t
3 years
Wait for trigger with filter attached
Tweet media one
1
4
21
@vx_herm1t
herm1t
3 years
Send the trigger-packet
Tweet media one
1
5
21
@vx_herm1t
herm1t
1 year
@vxunderground LOL! "Zip archiving and encryption using XOR method, which eliminates the possibility of reading archive files by third parties even knowing the password, for example, by intercepting data transmitted over a communication channel or when a user loses removable media"
Tweet media one
4
2
25
@vx_herm1t
herm1t
7 months
Backups are gone...
Tweet media one
1
0
25
@vx_herm1t
herm1t
2 years
In soviet russia anti-virus infects you
0
3
22
@vx_herm1t
herm1t
7 months
Two of IRC rules are ok: not to kill civilians in numbers, even if the enemy consists of cannibals. That's it. Naturally, hospitals, railways, and other "civil" infra are the top target for hackers. And cyber is one of the most humane way to destroy it
1
3
25
@vx_herm1t
herm1t
2 years
If a nuclear weapon is so powerful that you cannot win a war, "cyber" is so weak that you cannot lose one
2
6
23
@vx_herm1t
herm1t
3 years
Patch your apache! CVE-2021-42013
Tweet media one
2
4
22
@vx_herm1t
herm1t
1 year
@ruspostofficial Happy data privacy day!
0
1
22
@vx_herm1t
herm1t
2 years
Russian Orthodox Church goes wild...
Tweet media one
3
4
21
@vx_herm1t
herm1t
7 months
@pevchikh @christogrozev Русское говно уничтожает само себя. Так мило :-)
0
2
23
@vx_herm1t
herm1t
3 years
How data on russian hackers activity in Ukraine leaked from special services of Ukraine to Moscow (in russian)
Tweet media one
1
16
21
@vx_herm1t
herm1t
1 year
it's never too late to mend
Tweet media one
0
0
22
@vx_herm1t
herm1t
2 years
I've missed my opportunity to write for "Sputnik & Progrom"
Tweet media one
1
3
20
@vx_herm1t
herm1t
2 years
@UCA_ruhate_ new server
Tweet media one
3
1
17
@vx_herm1t
herm1t
2 years
It is difficult to underestimate how deeply I distrust, despise and hate Russia. All of it.
2
1
19
@vx_herm1t
herm1t
2 years
Не говоря уже о том, что учет старлинков у "спецпотребителей" приведет к утечке, и на россии сразу будут знать, где и у кого они есть. Учет угрожает безопасности военных.
0
3
20
@vx_herm1t
herm1t
2 years
There has been glaring holes in state portal Diia long before January 14th leaks (april 2021)
Tweet media one
1
1
15
@vx_herm1t
herm1t
7 months
Tweet media one
3
2
18
@vx_herm1t
herm1t
2 years
We at UCA hacked so many data, that we need extra storage just to keep it. You could help by donating: BTC 19fMSv8ULjoBR7UNgNGuTrqoQmwiZEa63v USDT TXJWvQMYAdCrPKVSQ37923uhuYrkzNSwx2 Mono/GPay Thank you!
1
5
19
@vx_herm1t
herm1t
3 years
and i take these two messages as equal
Tweet media one
1
2
17
@vx_herm1t
herm1t
2 years
Sample from ESIA (russian state services)
Tweet media one
0
3
18
@vx_herm1t
herm1t
3 years
As a representative of the organization behind the hacks mentioned by @InformNapalm , I must say that @UCA_ruhate_ has no other targets besides Russia (its military and political figures) and the so-called "people's republics" ( @leonidragozin , JFYI)
Tweet media one
1
5
17
@vx_herm1t
herm1t
7 months
@Cyberknow20 @joetidy We at UCA fucked the Red Cross (RU) long before it became mainstream, but because we share humanistic values, we never defaced or harmed this organization :-)
Tweet media one
0
0
18
@vx_herm1t
herm1t
2 years
It's not cyberwar, it's a special cyber operation :-)
1
4
18
@vx_herm1t
herm1t
2 years
Tweet media one
1
0
16
@vx_herm1t
herm1t
7 months
Admin panel, landing, blog, leaks site, internal server (rocketchat, atlassian), wallets and dev servers dumped and erased
1
0
17
@vx_herm1t
herm1t
2 years
I am tired of python -c 'import pty; pty.spawn("/bin/bash")'
Tweet media one
0
1
15