🔪 Slice For Life 🔪
3.47K subscribers
939 photos
5 videos
732 links
Download Telegram
Cyberattack News Alert
━━━━━━━━━━━━━━━━━━━━━━━━━

Victim: Winona County
Domain: winonacounty.gov

Country: 🇺🇸 US
Date: Apr 6th, 2026

Summary:
Le gouverneur du Minnesota, Tim Walz, a autorisé la Garde nationale à fournir une assistance d'urgence au comté de Winona suite à une cyberattaque survenue le lundi 7 avril 2026. Cette attaque, qui s'est prolongée jusqu'au mardi, a considérablement entravé la capacité du comté à fournir des services municipaux et d'urgence essentiels. Les autorités locales collaborent avec diverses agences, notamment le FBI et des experts en cybersécurité, pour sécuriser les opérations, alors que le comté avait déjà subi une attaque par ransomware en janvier.

Source: https://www.kttc.com/2026/04/07/national-guard-assist-winona-county-following-cyberattack/
‼️ A threat actor claims to have leaked AMAInterview[.]ai database containing personal information of over 24,000 users including emails, resumes, subscription data, and career information from a March 2026 breach.
‼️🇨🇴 Threat actors claim to be selling a database containing over 20,000 customer records from Banco de Bogotá, including personal information, phone numbers, addresses, and financial obligation details.

The data allegedly originates from the banks collections unit operated by EmergiaCC Conalcreditos.
1
‼️🇲🇽 Medical records, appointment data, and inventory information from a Mexican clinical studies center has been leaked.

The data includes patient personal information, medical details, appointment records, and facility inventory data made available for free download.
‼️🇺🇸 Actor coderx shared a 758MB database dump from Eastern Illinois University containing 93 CSV files, claiming the action was in response to attacks on Iranian universities.
‼️ Threat actor c00lssh is offering anonymous offshore VPS/RDP hosting services with various bandwidth options starting at $5, marketed as bulletproof hosting.

coolsshservers[.]com
🔥1
‼️ A threat actor is advertising a Session ID hijacking service, claiming the ability to hijack any Session IDs with additional information for $5,000 USD in XMR.
‼️ New DLS Identified: TiMc

http://rzzfiwoop67jrxadngcy7nvjm7suwtrjznview63ooowqfsm5sq7gmqd[.]onion
2
‼️🇧🇷 The Nova Department of BlackAds group allegedly leaked 1TB of data from VX Case, a Brazilian e-commerce store selling cell phone accessories and electronics.
‼️ Gunra Ransomware Claims 16 Victims

🇰🇷 KUKJE PHARM CO.,LTD.
🇹🇭 bkksky[.com
🇸🇬 triotech[.com[.sg
🇦🇺 ASPShips
🇫🇷 Diamond
🇩🇪 VINTAGE HOMESTEAD
🇨🇿 Envy Recycling
🇪🇸 Ventilaciones Nerual
🇦🇺 Eric Davis Dental
🇪🇸 INCARFE S.L.
🇭🇰 NeoDerm
🇧🇷 Ipiranga Contábil
🇦🇷 Grupo PyD
🇹🇭 Thai Petroleum & Trading
🇦🇪 El Ezh Building Contracting
🇭🇰 Frontier Financial Group
‼️ Linkc Ransomware has updated their DLS, as well as claiming 3 new victims:

🇺🇸 Network Technology Services of New Jersey
🇺🇸 Sajet Products
🇺🇸 StrongLink
‼️🇺🇸 Threat actor TRD is allegedly selling two databases containing 2.1 million New York/Brooklyn resident records with personal information and a processed Binance US database with 918,000 records after doxing enrichment. The seller is requesting $1,000 OBO for each database.
Media is too big
VIEW IN TELEGRAM
‼️ M6Plus Proof of Concept (POC) CVE-2026-4583 (Missing Replay Protection)

The M6PLUS Bluetooth protocol lacks cryptographic authentication mechanisms. The only integrity check is a trivial single-byte XOR checksum, which can be easily recalculated by an attacker.

This allows any Bluetooth device to inject arbitrary transaction commands without the terminal being able to verify the command's origin or authenticity.

Video Credit: youtube.com/@davi_mou
1