๐Ÿ”ช Slice For Life - Part 2 ๐Ÿ”ช
3.5K subscribers
918 photos
22 videos
737 links
Download Telegram
๐Ÿšจ๐Ÿ‡ซ๐Ÿ‡ท Groupe IMA allegedly targeted in 6.2GB data leak

A threat actor on an underground forum is claiming to have leaked data allegedly originating from Groupe IMA (Inter Mutuelles Habitat), a major French assistance provider that delivers 24/7 emergency support services, including roadside assistance, medical aid, and home repairs, on behalf of insurance companies and mutuals.

The actor claims the leak contains roughly 6.2 GB of data including invoices and other customer information.

๐—ช๐—ต๐—ฎ๐˜'๐˜€ ๐—ฎ๐—น๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ๐—น๐˜† ๐—ฒ๐˜…๐—ฝ๐—ผ๐˜€๐—ฒ๐—ฑ:

โ€ข Invoices
โ€ข Customer information

๐——๐—ฒ๐˜๐—ฎ๐—ถ๐—น๐˜€:

๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜: Groupe IMA (Inter Mutuelles Habitat)
๐—–๐—ผ๐˜‚๐—ป๐˜๐—ฟ๐˜†: France ๐Ÿ‡ซ๐Ÿ‡ท
๐—ฆ๐—ฒ๐—ฐ๐˜๐—ผ๐—ฟ: Insurance / Assistance Services
๐—”๐—ฐ๐˜๐—ผ๐—ฟ: NightLeVrai
๐—–๐—น๐—ฎ๐—ถ๐—บ: Leaked data
๐—˜๐˜…๐—ฝ๐—ผ๐˜€๐˜‚๐—ฟ๐—ฒ: ~6.2 GB
๐—ฃ๐—ฟ๐—ถ๐—ฐ๐—ฒ: Free
๐—ข๐—ฏ๐˜€๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฑ: May 28, 2026

๐Ÿ’ฅ Stop guessing what's redacted. Subscribers see everything: darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โค1
๐Ÿšจ๐Ÿ‡ช๐Ÿ‡จ Ecuadorian Armed Forces allegedly targeted in confidential insurance document leak

A threat actor on an underground forum is claiming to have leaked confidential insurance policy information allegedly originating from the Armed Forces of Ecuador (Fuerzas Armadas del Ecuador).

The actor claims the documents cover insurance policies worth more than $200,000,000 and include sensitive military data.

๐—ช๐—ต๐—ฎ๐˜'๐˜€ ๐—ฎ๐—น๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ๐—น๐˜† ๐—ฒ๐˜…๐—ฝ๐—ผ๐˜€๐—ฒ๐—ฑ:

โ€ข Confidential insurance policy information
โ€ข Inventories
โ€ข Armament data
โ€ข Military vehicles
โ€ข Combat aircraft
โ€ข Warship details

๐——๐—ฒ๐˜๐—ฎ๐—ถ๐—น๐˜€:

๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜: Fuerzas Armadas del Ecuador (Armed Forces of Ecuador)
๐—–๐—ผ๐˜‚๐—ป๐˜๐—ฟ๐˜†: Ecuador ๐Ÿ‡ช๐Ÿ‡จ
๐—ฆ๐—ฒ๐—ฐ๐˜๐—ผ๐—ฟ: Military / Defense
๐—”๐—ฐ๐˜๐—ผ๐—ฟ: V0lt4r0x
๐—–๐—น๐—ฎ๐—ถ๐—บ: Leaked confidential insurance documents
๐—˜๐˜…๐—ฝ๐—ผ๐˜€๐˜‚๐—ฟ๐—ฒ: Insurance policies valued over $200,000,000
๐—ฃ๐—ฟ๐—ถ๐—ฐ๐—ฒ: Free
๐—ข๐—ฏ๐˜€๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฑ: May 28, 2026

๐Ÿ’ฅ Stop guessing what's redacted. Subscribers see everything: darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
The threat actor leaderboard and cybercrime website leaderboard that are in the early access program may stop working every once and a while for the next couple of weeks as I make changes for Threat Feed 3.0. Apologies in advance. Bonk me if I don't notice it.
๐Ÿšจ๐Ÿ‡บ๐Ÿ‡ธ Smoker's Choice USA allegedly targeted in 980GB corporate document leak

A threat actor on an underground forum is claiming to sell a corporate document leak allegedly originating from Smoker's Choice USA, one of the largest cigarette and tobacco outlets in the United States, with over 50 retail locations across New York and Pennsylvania.

The actor claims the leak totals roughly 980 GB across more than 303,000 files covering a wide range of internal topics.

๐—ช๐—ต๐—ฎ๐˜'๐˜€ ๐—ฎ๐—น๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ๐—น๐˜† ๐—ฒ๐˜…๐—ฝ๐—ผ๐˜€๐—ฒ๐—ฑ:

โ€ข Billing and payments
โ€ข Laboratory reports
โ€ข Internal employee documents and directives
โ€ข Employee resumes
โ€ข Tests
โ€ข Goods movements
โ€ข Operations of individual representative stores
โ€ข Product certification
โ€ข Bank statements and checks

๐——๐—ฒ๐˜๐—ฎ๐—ถ๐—น๐˜€:

๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜: Smoker's Choice USA
๐—–๐—ผ๐˜‚๐—ป๐˜๐—ฟ๐˜†: United States ๐Ÿ‡บ๐Ÿ‡ธ
๐—ฆ๐—ฒ๐—ฐ๐˜๐—ผ๐—ฟ: Retail / Tobacco
๐—”๐—ฐ๐˜๐—ผ๐—ฟ: Masterbyte
๐—–๐—น๐—ฎ๐—ถ๐—บ: Corporate document leak, one-time sale
๐—˜๐˜…๐—ฝ๐—ผ๐˜€๐˜‚๐—ฟ๐—ฒ: ~980 GB (303,000+ files)
๐—ข๐—ฏ๐˜€๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฑ: May 28, 2026

๐Ÿ’ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐Ÿ”ฅ1
๐Ÿšจ๐Ÿ‡ช๐Ÿ‡ฌ Citex Systems allegedly targeted in database breach

A threat actor on an underground forum is claiming access to databases allegedly originating from Citex Systems, a major integrated telecom and business solutions provider headquartered in Giza, Cairo, Egypt, founded in 2003. The company provides telecom and ICT, smart card and banking payment systems, GIS projects, and customized software.

The actor claims access to employee, project, and mailing databases covering around 800 personnel.

๐—ช๐—ต๐—ฎ๐˜'๐˜€ ๐—ฎ๐—น๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ๐—น๐˜† ๐—ฒ๐˜…๐—ฝ๐—ผ๐˜€๐—ฒ๐—ฑ:

โ€ข Employee management database (names list, positions, ~800 persons)
โ€ข Projects management database (available projects, responsible parties, worker names, dates, and locations)
โ€ข Mailing data (all mails and contacts in the mailing system)

๐——๐—ฒ๐˜๐—ฎ๐—ถ๐—น๐˜€:

๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜: Citex Systems
๐—–๐—ผ๐˜‚๐—ป๐˜๐—ฟ๐˜†: Egypt ๐Ÿ‡ช๐Ÿ‡ฌ
๐—ฆ๐—ฒ๐—ฐ๐˜๐—ผ๐—ฟ: Telecom / ICT
๐—”๐—ฐ๐˜๐—ผ๐—ฟ: Keymous
๐—–๐—น๐—ฎ๐—ถ๐—บ: Database access
๐—˜๐˜…๐—ฝ๐—ผ๐˜€๐˜‚๐—ฟ๐—ฒ: Employee, project, and mailing databases (~800 personnel)
๐—ฃ๐—ฟ๐—ถ๐—ฐ๐—ฒ: Free
๐—ข๐—ฏ๐˜€๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฑ: May 28, 2026

๐Ÿ’ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐Ÿšจ Allianz allegedly targeted in ~500 internal Docker images leak

A threat actor on an underground forum is claiming to release a full dump of roughly 500 Docker images, totaling around 40 GB, allegedly originating from Allianz internal infrastructure.

The actor claims the images contain exposed configuration files, source code, credentials, and private keys.

๐—ช๐—ต๐—ฎ๐˜'๐˜€ ๐—ฎ๐—น๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ๐—น๐˜† ๐—ฒ๐˜…๐—ฝ๐—ผ๐˜€๐—ฒ๐—ฑ:

โ€ข Exposed configuration files with API keys, DB passwords, and service tokens
โ€ข Internal microservices with source code
โ€ข Hardcoded credentials for staging and prod environments
โ€ข TLS private keys and internal CA certs

๐——๐—ฒ๐˜๐—ฎ๐—ถ๐—น๐˜€:

๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜: Allianz
๐—ฆ๐—ฒ๐—ฐ๐˜๐—ผ๐—ฟ: Insurance / Financial Services
๐—”๐—ฐ๐˜๐—ผ๐—ฟ: hackformetome
๐—–๐—น๐—ฎ๐—ถ๐—บ: Full dump of internal Docker images
๐—˜๐˜…๐—ฝ๐—ผ๐˜€๐˜‚๐—ฟ๐—ฒ: ~500 Docker images (~40 GB)
๐—ฃ๐—ฟ๐—ถ๐—ฐ๐—ฒ: 10 Points
๐—ข๐—ฏ๐˜€๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฑ: May 28, 2026

๐Ÿ’ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โค1
Cyberattack News Alert
โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”โ”

Victim: Landeszentrale fรผr politische Bildung
Domain: lpb.rlp.de

Country: ๐Ÿ‡ฉ๐Ÿ‡ช DE
Date: May 28th, 2026

Summary:
The Landeszentrale fรผr politische Bildung has fallen victim to a cyberattack, according to its own statements. The institution was forced to isolate its websites as well as those of its memorials, rendering them currently inaccessible. The organization is investigating whether subscriber and customer data may have been exfiltrated as a result of the incident.

Source: https://www.rheinpfalz.de/lokal/pfalz-ticker_artikel,-landeszentrale-und-gedenkstรคtten-komplett-offline-_arid,5894846.html
โ€ผ๏ธ๐Ÿ‡ณ๐Ÿ‡ฑ BCD Travel has been named a victim on ShinyHunters Pay or Leak dark web portal

BCD Travel is a global corporate travel management company that helps businesses manage travel programs, bookings, meetings, and traveler support.
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐Ÿšจ๐Ÿ‡ง๐Ÿ‡ท Autoline allegedly targeted in 812K automotive contacts database sale

A threat actor on an underground forum is claiming to sell a dataset allegedly originating from Autoline, a Brazilian automotive organization. The actor says the data is organized across 3 interconnected sections covering contacts, vehicle inquiries, and service requests.

The actor claims the dataset contains roughly 812K records of automotive contacts, inquiries, and service data.

๐—ช๐—ต๐—ฎ๐˜'๐˜€ ๐—ฎ๐—น๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ๐—น๐˜† ๐—ฒ๐˜…๐—ฝ๐—ผ๐˜€๐—ฒ๐—ฑ:

โ€ข Contacts (names, emails, primary/secondary phones, city, state, address, lead source, account tier, birth date, industry segment, LinkedIn/Twitter handles, vehicles owned)
โ€ข Vehicle inquiries (vehicle model, client message, contact details, status, priority, assigned staff, pipeline stage, vehicle condition, campaign data, case reference numbers)
โ€ข Service requests (requested service, descriptions, customer contact details, technician assignments, payment status, account IDs, contract type, warranty coverage, cost estimates)

๐——๐—ฒ๐˜๐—ฎ๐—ถ๐—น๐˜€:

๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜: Autoline
๐—–๐—ผ๐˜‚๐—ป๐˜๐—ฟ๐˜†: Brazil ๐Ÿ‡ง๐Ÿ‡ท
๐—ฆ๐—ฒ๐—ฐ๐˜๐—ผ๐—ฟ: Automotive
๐—”๐—ฐ๐˜๐—ผ๐—ฟ: Rupert
๐—–๐—น๐—ฎ๐—ถ๐—บ: Automotive contacts database sale
๐—˜๐˜…๐—ฝ๐—ผ๐˜€๐˜‚๐—ฟ๐—ฒ: ~812K records
๐—ฃ๐—ฟ๐—ถ๐—ฐ๐—ฒ: $1,000
๐—ข๐—ฏ๐˜€๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฑ: May 28, 2026

๐Ÿ’ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐Ÿšจ๐Ÿ‡จ๐Ÿ‡ด Punto Vital allegedly targeted in patient records leak

A threat actor on an underground forum is claiming to have leaked patient records allegedly originating from Punto Vital, a private healthcare provider (IPS) in Colombia. The actor says the data spans from 2019 to 2026.

The actor claims the leak contains over 3K patient expedientes (case files) including personal and medical record data.

๐—ช๐—ต๐—ฎ๐˜'๐˜€ ๐—ฎ๐—น๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ๐—น๐˜† ๐—ฒ๐˜…๐—ฝ๐—ผ๐˜€๐—ฒ๐—ฑ:

โ€ข Full names
โ€ข Dates of birth
โ€ข Phone numbers
โ€ข Addresses
โ€ข Place of birth
โ€ข Patient signatures
โ€ข Patient photos
โ€ข Additional record data

๐——๐—ฒ๐˜๐—ฎ๐—ถ๐—น๐˜€:

๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜: Punto Vital
๐—–๐—ผ๐˜‚๐—ป๐˜๐—ฟ๐˜†: Colombia ๐Ÿ‡จ๐Ÿ‡ด
๐—ฆ๐—ฒ๐—ฐ๐˜๐—ผ๐—ฟ: Healthcare
๐—”๐—ฐ๐˜๐—ผ๐—ฟ: Bytedope157sp
๐—–๐—น๐—ฎ๐—ถ๐—บ: Leaked patient expedientes (2019 to 2026)
๐—˜๐˜…๐—ฝ๐—ผ๐˜€๐˜‚๐—ฟ๐—ฒ: +3K records
๐—ฃ๐—ฟ๐—ถ๐—ฐ๐—ฒ: Free
๐—ข๐—ฏ๐˜€๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฑ: May 28, 2026

๐Ÿ’ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐Ÿšจ๐Ÿ‡ญ๐Ÿ‡ท Croatian government site (*.gov.hr) allegedly targeted in 60K records leak

A threat actor on an underground forum, claiming affiliation with a group called INFGRUPA, says they have breached a *.gov.hr (Croatian government) website and are releasing the data for free.

The actor claims the leak contains roughly 60,000 people records including national identification numbers.

๐—ช๐—ต๐—ฎ๐˜'๐˜€ ๐—ฎ๐—น๐—น๐—ฒ๐—ด๐—ฒ๐—ฑ๐—น๐˜† ๐—ฒ๐˜…๐—ฝ๐—ผ๐˜€๐—ฒ๐—ฑ:

โ€ข First and last names
โ€ข OIB (Personal Identification Number)
โ€ข JMBG (Unique Citizen Identification Number)
โ€ข Dates of birth

๐——๐—ฒ๐˜๐—ฎ๐—ถ๐—น๐˜€:

๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜: *.gov.hr (Croatian government website)
๐—–๐—ผ๐˜‚๐—ป๐˜๐—ฟ๐˜†: Croatia ๐Ÿ‡ญ๐Ÿ‡ท
๐—ฆ๐—ฒ๐—ฐ๐˜๐—ผ๐—ฟ: Government
๐—”๐—ฐ๐˜๐—ผ๐—ฟ: vvvv (INFGRUPA)
๐—–๐—น๐—ฎ๐—ถ๐—บ: Breached government website, data released for free
๐—˜๐˜…๐—ฝ๐—ผ๐˜€๐˜‚๐—ฟ๐—ฒ: ~60,000 records
๐—ฃ๐—ฟ๐—ถ๐—ฐ๐—ฒ: Free
๐—ข๐—ฏ๐˜€๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฑ: May 28, 2026

๐Ÿ’ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations