๐Ÿ”ช Slice For Life ๐Ÿ”ช
3.41K subscribers
842 photos
3 videos
699 links
Download Telegram
๐Ÿšจ FBI Watchdog - SEIZURE ESCALATION ALERT ๐Ÿšจ
๐Ÿ”— DarkWebInformer.com - Cyber Threat Intelligence

Domain: offshore.cx
Triggered By: HTTP (Status code changed to 403)
Time Detected: 2026-03-13 17:40:40 UTC

๐Ÿ” HTTP Fingerprint Changes:
  Status: 200 โ†’ 403
x-xss-protection: 1; mode=block โ†’ None
x-content-type-options: nosniff โ†’ None
x-frame-options: SAMEORIGIN โ†’ None
Body hash: c15114f948ad โ†’ e478c00442ca (size: 58,704 โ†’ 1,483)
the body hash will do a check for size. i think its something like a 35% change or higher and it will notify

Edit: body_changed = size_ratio > 0.35
โš ๏ธ FBI Watchdog - HTTP Fingerprint Change โš ๏ธ
๐Ÿ”— DarkWebInformer.com - Cyber Threat Intelligence

Domain: offshore.cx
Record Type: HTTP Fingerprint Change
Time Detected: 2026-03-13 18:07:31 UTC

Previous Records:
Status: 403
Body: e478c00442ca

New Records:
Status: 403 โ†’ 200
Body hash: e478c00442ca โ†’ aae643f5235e (size: 1,483 โ†’ 58,704)
โ€ผ๏ธ๐Ÿ‡บ๐Ÿ‡ธ A threat actor is allegedly selling a private database of 2+ million users from a U.S.-based social media marketplace.

The data reportedly includes usernames, emails, passwords (bcrypt hashed), and registration dates. The threat actor requires proof of funds before responding.
โ€ผ๏ธ๐Ÿ‡ฆ๐Ÿ‡บ A threat actor is allegedly selling the database of Phonebot, an Australian retailer of refurbished and pre-owned electronics founded in 2012 in Melbourne, Victoria, containing 200K+ customer records.

The breached data reportedly includes customer IDs, full names, emails, phone numbers, fax numbers, passwords (MD5 hashed), IP addresses, platform details, two-factor status, Google IDs, reward points, and newsletter/marketing preferences.
โ€ผ๏ธ DOJ Press Release
โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”

Adobe Agrees to $150 Million Settlement and Injunction to Resolve Alleged Violations of the Restore Online Shoppersโ€™ Confidence Act

Full Press Release โ†’ justice.gov

โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”
๐Ÿ•ต๏ธ Dark Web Informer โ€ข DOJ Monitor
โ€ผ๏ธ๐Ÿ‡บ๐Ÿ‡ธ A threat actor has allegedly leaked the database of TLDR.Tech, a popular tech newsletter, exposing over 1.2 million unique users.

The compromised data reportedly includes emails, full names, phone numbers, LinkedIn URLs and identifiers, company details (name, industry, employee count, headquarters, website), education history, position history, skills, seniority, departments, and photo URLs.
Thanks
๐Ÿ˜ญ6
๐Ÿ”ช Slice For Life ๐Ÿ”ช
Photo
Not Chucky. leakbase[.]lol. But someone is using it as a site.
๐Ÿ˜2
โ€ผ๏ธ๐Ÿ‡บ๐Ÿ‡ธ A threat actor has allegedly leaked the database of MagicSlides App, a popular AI-powered document and presentation platform, exposing over 2.3 million unique users.

The compromised data reportedly includes emails, phone numbers, payment info, Stripe customer IDs, Telegram IDs, account plans, usage data, organization IDs, workspaces, referral codes, onboarding data, and login attempt records, among other platform metadata.
โš ๏ธ FBI Watchdog - HTTP Fingerprint Change โš ๏ธ
๐Ÿ”— DarkWebInformer.com - Cyber Threat Intelligence

Domain: wormgpt.net
Record Type: HTTP Fingerprint Change
Time Detected: 2026-03-14 17:40:03 UTC

Previous Records:
Status: 415
Body: ff332b8fd23c

New Records:
Status: 415 โ†’ 200
strict-transport-security: None โ†’ max-age=31536000; includeSubDomains
x-frame-options: None โ†’ DENY
x-content-type-options: None โ†’ nosniff
x-xss-protection: None โ†’ 1; mode=block
Body hash: ff332b8fd23c โ†’ d9d294408508 (size: 587 โ†’ 22,234)
โ€ผ๏ธ๐Ÿ‡ฎ๐Ÿ‡ณ A threat actor is allegedly selling administrator/root database access to an Indian construction company with $1 billion in revenue, containing over 44 GB of data.

A screenshot shows a database data export tool with multiple schemas available for export.

Price: $1,500.
f i deleted the breachforums fbi watchdog update by mistake. anyways 502 502 502 502 502 502 502 502 502
๐Ÿ˜ญ6
โš ๏ธ FBI Watchdog - IP Change (ips removed) โš ๏ธ
๐Ÿ”— DarkWebInformer.com - Cyber Threat Intelligence

Domain: cockbox.org
Record Type: IP Change (ips removed)
Time Detected: 2026-03-14 19:55:31 UTC

Previous Records:
A: 193.239.85.202
AAAA: 2001:ac8:7d:1e::c0cc:2

New Records:
A: 193.239.85.202 โ†’ None
Classification: 1 IP(s) removed
โš ๏ธ FBI Watchdog - IP Change (new ips added) โš ๏ธ
๐Ÿ”— DarkWebInformer.com - Cyber Threat Intelligence

Domain: cockbox.org
Record Type: IP Change (new ips added)
Time Detected: 2026-03-14 20:20:56 UTC

Previous Records:
A: 
AAAA: 2001:ac8:7d:1e::c0cc:2

New Records:
A: None โ†’ 193.239.85.202
Classification: 1 new IP(s) added
I'm aware of a newly registered BF and LeakBase domain. Not confirmed who owns them.
.@CCITIC_ORG (Cyber Counter-Intelligence Threat Investigation Consortium) has identified the AS BreachForums servers.

They have a message for the forum: "Sleep better tonight, your leaked data is on vacation."

https://fr.linkedin.com/posts/ccitic_dormez-mieux-ce-soir-vos-donn%C3%A9es-fuit%C3%A9es-activity-7438699970070777856-A5K8
๐Ÿ˜2๐Ÿ”ฅ1