WANT SWEET DEALS? JOIN OUR MAILING LIST
Dissecting the Dark Web

Dissecting the Dark Web

Reverse Engineering the Tools of the Underground Economy
by Lindsay Kaye
June 2026, 400 pp.
ISBN-13: 
9781718504608

Download Chapter 7: Command-and-Control Frameworks

Getting into the dark web isn’t simple. You need Tor. You need clean OPSEC. And even then, the forums worth being in don’t just let you walk through the door. The top-tier ones require vouches from established members, Bitcoin deposits, proof that you’re somebody.

In 2021, Lindsay Kaye was among the first to reverse engineer and publicly disclose a new ransomware variant. She did it before the group behind it, BlackMatter, had even started operations. How? She found it by watching the dark web forums where the group was quietly recruiting affiliates.

This book takes you inside that world and into the code behind the tools she found there:

  • Raccoon Stealer—a credential stealer behind hundreds of millions of stolen passwords, and the SQL query it uses to pull them straight out of your browser
  • TrickBot—the banking trojan that infected millions of Windows machines, and how it injects into Chrome and hooks the functions handling your banking traffic
  • Cerberus—an Android banking trojan sold on dark web forums for $200 a month, and how it overlays a fake login page on top of your real banking app
  • LockBit—one of the most prolific ransomware operations in history, and how it kills backup services, deletes shadow copies, and pushes a Group Policy update to every machine on the domain before encryption starts
  • Mirai—the botnet that knocked half the internet offline in 2016, and how it’s able to find and infect new devices to expand its reach
  • Sodinokibi/REvil and ALPHV—two of the most destructive ransomware-as-a-service operations ever, taken apart from the affiliate recruitment posts to the encryption code

Threat reports tell you what happened. This book shows you how.

Author Bio 

Lindsay Kaye, expert malware analyst and reverse engineer, is Vice President of Threat Intelligence at HUMAN Security. Kaye is also an internationally recognized cybersecurity speaker, trainer, and author.

Table of contents 

Acknowledgments
Introduction

Chapter 1: A Visit to the Dark Web
Chapter 2. Vulnerabilities, Exploits, and Access
Chapter 3: Malware Delivery Techniques
Chapter 4: Information Stealers
Chapter 5: Banking Trojans
Chapter 6: Packers and Crypters
Chapter 7: Command-and-Control Frameworks
Chapter 8: Post-Exploitation Toolkits
Chapter 9: Living off the Land
Chapter 10: Windows Ransomware
Chapter 11: Linux and ESXi Ransomware
Chapter 12: Lessons from the Underground Economy

Appendix: Exercise Solutions
Index

View the Copyright page
View the detailed Table of Contents
View the Index