Posts: 2
Threads: 1
Joined: Oct 2023
Hi every1,
Today, I found a C2C server for russia-backed "voluntary" botnet called DDoSia. But I don't know what to do next. Server is hosted in Latvia. Any idea what to do next? I'm unable to breach into the server, so now willing to share IP address with screenshot from Ghidra to prove I indeed did find the C2C server - Shoot me a pm
Posts: 1,484
Threads: 64
Joined: Jun 2023
Read, learn and stay hard.
Posts: 504
Threads: 15
Joined: Sep 2023
What was your initial goal? Follow that.
Posts: 2
Threads: 1
Joined: Oct 2023
Dec 06, 2023, 05:39 PM
(This post was last modified: Dec 06, 2023, 05:41 PM by br4xx.)
(Dec 06, 2023, 05:34 PM)N1k7 Wrote: What was your initial goal? Follow that.
tbh, I was trying to take it down or take control over this, but without any success. So I'm willing to give everyone a try and maybe someone figures it out - I wasn't able to. But I would be really happy if someone figures it out and shares it with me so I can learn something new.
Read, learn and stay hard.
Posts: 504
Threads: 15
Joined: Sep 2023
Dec 06, 2023, 05:46 PM
(This post was last modified: Dec 06, 2023, 06:37 PM by N1k7.)
(Dec 06, 2023, 05:39 PM)br4xx Wrote: (Dec 06, 2023, 05:34 PM)N1k7 Wrote: What was your initial goal? Follow that.
tbh, I was trying to take it down or take control over this, but without any success. So I'm willing to give everyone a try and maybe someone figures it out - I wasn't able to. But I would be really happy if someone figures it out and shares it with me so I can learn something new.
I see.
(Dec 06, 2023, 05:39 PM)br4xx Wrote: (Dec 06, 2023, 05:34 PM)N1k7 Wrote: What was your initial goal? Follow that.
tbh, I was trying to take it down or take control over this, but without any success. So I'm willing to give everyone a try and maybe someone figures it out - I wasn't able to. But I would be really happy if someone figures it out and shares it with me so I can learn something new.
Hello,
I can't help with the project that you're working on right now. Due to being a pro-russian person myself. There's also this small probability of them having a vulnerability on their ddosia c2 server as it should be guarded with maximum security.
Because the ddosia project as I've seen is very public and the volunteers can easily download the Go lang binaries and contribute their band width as they would like. The C2 you've found by reversing the binary would already be found by security reseachers if they tried and fear not. People are trying to make the C2 go offline, not regular people but Law Enforcement.
~ peace out
|