jbablestime




Aworex DB Leak

A couple of weeks ago we did some analysis on Aworex, we found that he was webhooking from the Aworex website. The webhook would grab sensitive information (Tokens, Cookies, Keylogging, etc.). So we did a further investigation and found a RAT inside of the EFT Loader. So we breached their database (PhpMyAdmin) and stored it. Then we got their site's source code which helped us gain access to their admin panel. Which lead us to delete 1.6K+ user accounts including Aworex's personal account, overtake their reviews and blog posts, and just overall trolled them.


Aworex Aworex