f i deleted the breachforums fbi watchdog update by mistake. anyways 502 502 502 502 502 502 502 502 502
๐ญ6
โ ๏ธ FBI Watchdog - IP Change (ips removed) โ ๏ธ
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: cockbox.org
Record Type: IP Change (ips removed)
Time Detected: 2026-03-14 19:55:31 UTC
Previous Records:
New Records:
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: cockbox.org
Record Type: IP Change (ips removed)
Time Detected: 2026-03-14 19:55:31 UTC
Previous Records:
A: 193.239.85.202
AAAA: 2001:ac8:7d:1e::c0cc:2
New Records:
A: 193.239.85.202 โ None
Classification: 1 IP(s) removed
โ ๏ธ FBI Watchdog - IP Change (new ips added) โ ๏ธ
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: cockbox.org
Record Type: IP Change (new ips added)
Time Detected: 2026-03-14 20:20:56 UTC
Previous Records:
New Records:
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: cockbox.org
Record Type: IP Change (new ips added)
Time Detected: 2026-03-14 20:20:56 UTC
Previous Records:
A:
AAAA: 2001:ac8:7d:1e::c0cc:2
New Records:
A: None โ 193.239.85.202
Classification: 1 new IP(s) added
I'm aware of a newly registered BF and LeakBase domain. Not confirmed who owns them.
.@CCITIC_ORG (Cyber Counter-Intelligence Threat Investigation Consortium) has identified the AS BreachForums servers.
They have a message for the forum: "Sleep better tonight, your leaked data is on vacation."
https://fr.linkedin.com/posts/ccitic_dormez-mieux-ce-soir-vos-donn%C3%A9es-fuit%C3%A9es-activity-7438699970070777856-A5K8
They have a message for the forum: "Sleep better tonight, your leaked data is on vacation."
https://fr.linkedin.com/posts/ccitic_dormez-mieux-ce-soir-vos-donn%C3%A9es-fuit%C3%A9es-activity-7438699970070777856-A5K8
๐2๐ฅ1
โ ๏ธ FBI Watchdog - WHOIS Change โ ๏ธ
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: doxbin.net
Record Type: WHOIS Change
Time Detected: 2026-03-15 13:44:44 UTC
Previous Records:
New Records:
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: doxbin.net
Record Type: WHOIS Change
Time Detected: 2026-03-15 13:44:44 UTC
Previous Records:
status: ['clientdeleteprohibited', 'clienttransferprohibited']
New Records:
status: ['clientdeleteprohibited', 'clienttransferprohibited'] โ ['clientdeleteprohibited', 'clienthold', 'clienttransferprohibited']
โ ๏ธ FBI Watchdog - IP Change (ips removed) โ ๏ธ
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: doxbin.net
Record Type: IP Change (ips removed)
Time Detected: 2026-03-15 14:09:03 UTC
Previous Records:
New Records:
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: doxbin.net
Record Type: IP Change (ips removed)
Time Detected: 2026-03-15 14:09:03 UTC
Previous Records:
A: 104.20.41.231, 172.66.155.33
AAAA: 2606:4700:10::6814:29e7, 2606:4700:10::ac42:9b21
New Records:
AAAA: 2606:4700:10::6814:29e7, 2606:4700:10::ac42:9b21 โ None
Classification: 2 IP(s) removed
๐1
their main site is still up, they probably removed the ips is my guess. who knows at this point.
โผ๏ธ๐ฒ๐ฝ A threat actor has allegedly leaked the database of Universidad Tecnolรณgica del Centro de Veracruz, a Mexican university.
The data reportedly includes full names, paternal and maternal surnames, phone numbers, personal emails, dates of birth, addresses, ages, positions, academic programs, disabilities, and income information.
The data reportedly includes full names, paternal and maternal surnames, phone numbers, personal emails, dates of birth, addresses, ages, positions, academic programs, disabilities, and income information.
Cyberattack News Alert
โโโโโโโโโโโโโโโโโโโโโโโโโ
Victim: DeKalb County Sheriff's Department and Jail
Domain:
Country: ๐บ๐ธ US
Date: Mar 14th, 2026
Summary:
On March 14, 2026, the DeKalb County Sheriff's Department and Jail in Georgia reported that their main computer server was compromised by a ransomware virus. The breach affected critical systems including email and booking software, but authorities successfully recovered the booking data with help from their vendor. Sheriff Patrick Ray confirmed that law enforcement agencies including the FBI and TBI are assisting with the investigation, noting this incident may be linked to broader foreign cyber attacks targeting law enforcement agencies nationwide.
Source: https://www.wjle.com/sheriffs-department-and-jails-main-computers-hacked/
โโโโโโโโโโโโโโโโโโโโโโโโโ
Victim: DeKalb County Sheriff's Department and Jail
Domain:
dekalbsheriff.orgCountry: ๐บ๐ธ US
Date: Mar 14th, 2026
Summary:
On March 14, 2026, the DeKalb County Sheriff's Department and Jail in Georgia reported that their main computer server was compromised by a ransomware virus. The breach affected critical systems including email and booking software, but authorities successfully recovered the booking data with help from their vendor. Sheriff Patrick Ray confirmed that law enforcement agencies including the FBI and TBI are assisting with the investigation, noting this incident may be linked to broader foreign cyber attacks targeting law enforcement agencies nationwide.
Source: https://www.wjle.com/sheriffs-department-and-jails-main-computers-hacked/
๐ช Slice For Life ๐ช
โผ๏ธ๐จ๐ฆ A threat actor claims to have breached Loblaw, Canada's largest food and pharmacy retailer, threatening to publicly leak all data if the company does not respond by March 19th. The allegedly exfiltrated data includes 75.1M Salesforce customer PII recordsโฆ
โผ๏ธ๐จ๐ฆ The actor has released the first 251,366 Salesforce records of Loblaw and threatens more to come if the company does not contact them.
โผ๏ธ BreachForums has been down for roughly a day now, but they claim they will be back up after an "internal problem," although @CCITIC has claimed to have knocked the forum offline (see secondary post).
https://x.com/DarkWebInformer/status/2032955324953477256
https://x.com/DarkWebInformer/status/2032955324953477256
โค1
If I can expand the threat feed to include replies in a different section or feed from forum posts, would you be interested? It would be something like check X hours, screenshot and add to separate feed. Haven't thought it all the way through yet.
Anonymous Poll
78%
Yes
5%
No
18%
Show Results
โ ๏ธ FBI Watchdog - WHOIS Change โ ๏ธ
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: doxbin.net
Record Type: WHOIS Change
Time Detected: 2026-03-16 04:40:54 UTC
Previous Records:
New Records:
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: doxbin.net
Record Type: WHOIS Change
Time Detected: 2026-03-16 04:40:54 UTC
Previous Records:
status: ['clientdeleteprohibited', 'clienthold', 'clienttransferproh
New Records:
status: ['clientdeleteprohibited', 'clienthold', 'clienttransferprohibited'] โ ['clientdeleteprohibited', 'clienttransferprohibited']
๐1
โ ๏ธ FBI Watchdog - IP Change (new ips added) โ ๏ธ
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: doxbin.net
Record Type: IP Change (new ips added)
Time Detected: 2026-03-16 05:01:40 UTC
Previous Records:
New Records:
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: doxbin.net
Record Type: IP Change (new ips added)
Time Detected: 2026-03-16 05:01:40 UTC
Previous Records:
A: 104.20.41.231, 172.66.155.33
AAAA:
New Records:
AAAA: None โ 2606:4700:10::6814:29e7, 2606:4700:10::ac42:9b21
Classification: 2 new IP(s) added
โ ๏ธ FBI Watchdog - HTTP Fingerprint Change โ ๏ธ
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: enclave.cc
Record Type: HTTP Fingerprint Change
Time Detected: 2026-03-16 11:36:46 UTC
Previous Records:
New Records:
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: enclave.cc
Record Type: HTTP Fingerprint Change
Time Detected: 2026-03-16 11:36:46 UTC
Previous Records:
Status: 200
Body: 12f18a7445ce
New Records:
Status: 200 โ 500
Redirect: https://www.enclave.cc/ โ https://enclave.cc/
x-xss-protection: 0 โ None
Body hash: 12f18a7445ce โ e59fdfbc657b (size: 48,402 โ 1,576)
โ ๏ธ FBI Watchdog - HTTP Fingerprint Change โ ๏ธ
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: enclave.cc
Record Type: HTTP Fingerprint Change
Time Detected: 2026-03-16 13:54:00 UTC
Previous Records:
New Records:
๐ DarkWebInformer.com - Cyber Threat Intelligence
Domain: enclave.cc
Record Type: HTTP Fingerprint Change
Time Detected: 2026-03-16 13:54:00 UTC
Previous Records:
Status: 500
Body: e59fdfbc657b
New Records:
Status: 500 โ 200
Redirect: https://enclave.cc/ โ https://www.enclave.cc/
x-xss-protection: None โ 0
Body hash: e59fdfbc657b โ 06d9ec7c57fb (size: 1,576 โ 48,382)