๐จ๐ญ๐ฐ Hong Kong school and food sector orgs allegedly targeted in 120K database leak
A threat actor group on an underground forum, identifying as Anka Red Team (TurkHackTeam), is claiming to have dumped a database allegedly originating from Hong Kong based school and food sector entities.
The actors claim the leak contains roughly 120,000 records, with targets listed as a Hong Kong education institution and a food sector company.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Member and company names
โข Member language and address fields
โข Usernames and login names
โข Passwords (hashed)
โข User emails
โข Account creation IPs and timestamps
โข User roles (including Administrator accounts)
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Hong Kong school and food sector entities
๐๐ผ๐๐ป๐๐ฟ๐: Hong Kong ๐ญ๐ฐ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Education / Food
๐๐ฐ๐๐ผ๐ฟ: 'SALDIRGAN (Anka Red Team / TurkHackTeam)
๐๐น๐ฎ๐ถ๐บ: Database dump
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~120,000 records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: 3 Credits
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor group on an underground forum, identifying as Anka Red Team (TurkHackTeam), is claiming to have dumped a database allegedly originating from Hong Kong based school and food sector entities.
The actors claim the leak contains roughly 120,000 records, with targets listed as a Hong Kong education institution and a food sector company.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Member and company names
โข Member language and address fields
โข Usernames and login names
โข Passwords (hashed)
โข User emails
โข Account creation IPs and timestamps
โข User roles (including Administrator accounts)
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Hong Kong school and food sector entities
๐๐ผ๐๐ป๐๐ฟ๐: Hong Kong ๐ญ๐ฐ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Education / Food
๐๐ฐ๐๐ผ๐ฟ: 'SALDIRGAN (Anka Red Team / TurkHackTeam)
๐๐น๐ฎ๐ถ๐บ: Database dump
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~120,000 records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: 3 Credits
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐จ๐ด Colombian government systems allegedly compromised by EsqueleSquad (150 GB)
A threat actor group on an underground forum, identifying as EsqueleSquad, is claiming to have compromised 15 official Colombian government databases, extracted directly from internal servers. The actors are threatening to release the full package after election day.
The actors claim to hold roughly 150 GB of data and around 75 million rows across critical national systems.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข DIAN - taxes, RUT, income tax returns, companies (48.5 GB)
โข Registradurรญa - IDs, biometrics, civil registry, electoral data (28.3 GB)
โข ICETEX - educational debts of millions (19.7 GB)
โข Colpensiones - pensions and financial data of retirees (16.8 GB)
โข ICFES - student exam results and educational data (24.7 GB combined)
โข Migraciรณn Colombia - passports, visas, migration records (9.1 GB)
โข Seguridad Social - EPS health affiliations and social security (7.4 GB)
โข Policรญa - internal National Police data (3.2 GB)
โข Fiscalรญa - criminal investigations and legal cases (2.8 GB)
โข DANE, CNSC, Gobierno Bogotรก, Medellรญn, Datos.gov (national statistics, public competitions, city government, open data)
โข Intelligence reports, SISBEN + Prosperidad Social (15M+ records), and 2026 campaign financing data
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Multiple Colombian government agencies
๐๐ผ๐๐ป๐๐ฟ๐: Colombia ๐จ๐ด
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Government
๐๐ฐ๐๐ผ๐ฟ: Skull1172 (EsqueleSquad)
๐๐น๐ฎ๐ถ๐บ: 15 official government databases compromised
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~75 million rows (~155 GB total)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free (samples now, full release threatened after election day)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor group on an underground forum, identifying as EsqueleSquad, is claiming to have compromised 15 official Colombian government databases, extracted directly from internal servers. The actors are threatening to release the full package after election day.
The actors claim to hold roughly 150 GB of data and around 75 million rows across critical national systems.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข DIAN - taxes, RUT, income tax returns, companies (48.5 GB)
โข Registradurรญa - IDs, biometrics, civil registry, electoral data (28.3 GB)
โข ICETEX - educational debts of millions (19.7 GB)
โข Colpensiones - pensions and financial data of retirees (16.8 GB)
โข ICFES - student exam results and educational data (24.7 GB combined)
โข Migraciรณn Colombia - passports, visas, migration records (9.1 GB)
โข Seguridad Social - EPS health affiliations and social security (7.4 GB)
โข Policรญa - internal National Police data (3.2 GB)
โข Fiscalรญa - criminal investigations and legal cases (2.8 GB)
โข DANE, CNSC, Gobierno Bogotรก, Medellรญn, Datos.gov (national statistics, public competitions, city government, open data)
โข Intelligence reports, SISBEN + Prosperidad Social (15M+ records), and 2026 campaign financing data
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Multiple Colombian government agencies
๐๐ผ๐๐ป๐๐ฟ๐: Colombia ๐จ๐ด
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Government
๐๐ฐ๐๐ผ๐ฟ: Skull1172 (EsqueleSquad)
๐๐น๐ฎ๐ถ๐บ: 15 official government databases compromised
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~75 million rows (~155 GB total)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free (samples now, full release threatened after election day)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
Here are SOME features coming to the new Threat Feed in June.
- OCR Text Scanning. Click a button to scan the screenshot, wait a couple seconds and it will pull any links, session IDs, tox, telegrams from the screenshot back to you with easy to copy buttons
- Threat report generation. You can run it per Threat Alert or via bookmarks, the first 100 alerts, etc.
- Ability to search different APIs. I don't want to name openly for now.
- Search WhiteIntels stealer log database for any domain (no longer limited by alert). It will currently return only stats for that domain. But surely your company is safe, right? RIGHT?
- Search filters that are also now bound to the filtered export button. Multiple exports daily, not limited to 1.
Many new features coming. Just wanted to provide a simple update. Don't worry I'm cooking.
- OCR Text Scanning. Click a button to scan the screenshot, wait a couple seconds and it will pull any links, session IDs, tox, telegrams from the screenshot back to you with easy to copy buttons
- Threat report generation. You can run it per Threat Alert or via bookmarks, the first 100 alerts, etc.
- Ability to search different APIs. I don't want to name openly for now.
- Search WhiteIntels stealer log database for any domain (no longer limited by alert). It will currently return only stats for that domain. But surely your company is safe, right? RIGHT?
- Search filters that are also now bound to the filtered export button. Multiple exports daily, not limited to 1.
Many new features coming. Just wanted to provide a simple update. Don't worry I'm cooking.
โค1
๐จ GoldenBullet cracking tool advertised on underground forum
A threat actor on an underground forum marketplace is advertising GoldenBullet, an automation and web testing framework being promoted as a credential-stuffing and account-checking tool. The post markets version 2.1 with a refreshed UI and updated libraries.
The actor is promoting the tool's account-cracking, proxy, and config management capabilities to other forum users.
๐ช๐ต๐ฎ๐'๐ ๐ฏ๐ฒ๐ถ๐ป๐ด ๐ฎ๐ฑ๐๐ฒ๐ฟ๐๐ถ๐๐ฒ๐ฑ:
โข Multi-run job engine with bot/proxy stats and hit outputs to database
โข Netflix cookie checker with auto-add to hits
โข ULP to Combo extraction and Logs to ULP conversion
โข Keyword remover for trimming ULP files
โข Proxy checker with auto type/country detection
โข Config manager supporting .tic, .opk, .loli, .svb formats
โข Captcha-solving blocks (ReCaptcha, Slide, PoW)
โข Hashing and utility blocks (MD5, SHA256, GenerateGUID, Unix time)
โข Multipart HTTP request builder and TLS bypass options
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: N/A (offensive tooling)
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Cybercrime Tooling
๐๐ฐ๐๐ผ๐ฟ: ticnico
๐๐น๐ฎ๐ถ๐บ: Selling/advertising GoldenBullet cracking tool (v2.1)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Credential-stuffing and account-checking framework
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Listed in forum marketplace (sellers section)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum marketplace is advertising GoldenBullet, an automation and web testing framework being promoted as a credential-stuffing and account-checking tool. The post markets version 2.1 with a refreshed UI and updated libraries.
The actor is promoting the tool's account-cracking, proxy, and config management capabilities to other forum users.
๐ช๐ต๐ฎ๐'๐ ๐ฏ๐ฒ๐ถ๐ป๐ด ๐ฎ๐ฑ๐๐ฒ๐ฟ๐๐ถ๐๐ฒ๐ฑ:
โข Multi-run job engine with bot/proxy stats and hit outputs to database
โข Netflix cookie checker with auto-add to hits
โข ULP to Combo extraction and Logs to ULP conversion
โข Keyword remover for trimming ULP files
โข Proxy checker with auto type/country detection
โข Config manager supporting .tic, .opk, .loli, .svb formats
โข Captcha-solving blocks (ReCaptcha, Slide, PoW)
โข Hashing and utility blocks (MD5, SHA256, GenerateGUID, Unix time)
โข Multipart HTTP request builder and TLS bypass options
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: N/A (offensive tooling)
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Cybercrime Tooling
๐๐ฐ๐๐ผ๐ฟ: ticnico
๐๐น๐ฎ๐ถ๐บ: Selling/advertising GoldenBullet cracking tool (v2.1)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Credential-stuffing and account-checking framework
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Listed in forum marketplace (sellers section)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โค1
โผ๏ธ๐บ๐ธ Genesis Ransomware Claims 5 Victims
๐บ๐ธ A Roettgers - Fuel distributor and gas station operator.
๐บ๐ธ Cedar Street Capital - Private investment entity associated with Cynvestors Limited Partnership.
๐บ๐ธ Green Resource - Distributor of professional fertilizers, chemicals, and seeds for turf, lawn, and landscaping markets.
๐บ๐ธ Wentworth - DC Metro area design-build firm.
๐บ๐ธ Cavalier Flooring Systems Inc. - Flooring and tile contractor.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐บ๐ธ A Roettgers - Fuel distributor and gas station operator.
๐บ๐ธ Cedar Street Capital - Private investment entity associated with Cynvestors Limited Partnership.
๐บ๐ธ Green Resource - Distributor of professional fertilizers, chemicals, and seeds for turf, lawn, and landscaping markets.
๐บ๐ธ Wentworth - DC Metro area design-build firm.
๐บ๐ธ Cavalier Flooring Systems Inc. - Flooring and tile contractor.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ Bumble allegedly targeted in massive 32 million user database sale
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from Bumble, the dating app. The actor describes it as a clean JSON dump of fresh records.
The actor claims the dataset contains roughly 32 million records including authentication hashes and detailed profile data.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Email addresses
โข Authentication credentials (bcrypt hashed)
โข Phone numbers
โข Full bios (name, date of birth, work, education)
โข Location data
โข Habits and lifestyle fields (drinking, smoking, exercise)
โข Political and religious affiliations
โข Linked Instagram/Spotify accounts
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Bumble
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Technology / Dating
๐๐ฐ๐๐ผ๐ฟ: Euphoric_Reply_5727
๐๐น๐ฎ๐ถ๐บ: User database sale (clean JSON dump)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~32,105,822 records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: $999
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from Bumble, the dating app. The actor describes it as a clean JSON dump of fresh records.
The actor claims the dataset contains roughly 32 million records including authentication hashes and detailed profile data.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Email addresses
โข Authentication credentials (bcrypt hashed)
โข Phone numbers
โข Full bios (name, date of birth, work, education)
โข Location data
โข Habits and lifestyle fields (drinking, smoking, exercise)
โข Political and religious affiliations
โข Linked Instagram/Spotify accounts
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Bumble
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Technology / Dating
๐๐ฐ๐๐ผ๐ฟ: Euphoric_Reply_5727
๐๐น๐ฎ๐ถ๐บ: User database sale (clean JSON dump)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~32,105,822 records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: $999
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โค1๐ฅ1
๐จ๐บ๐ธ HungerRush allegedly targeted in breach exposing 26.8M+ customers
A threat actor on an underground forum is claiming to have leaked a dataset allegedly originating from HungerRush, a U.S.-based restaurant technology company headquartered in Houston that provides cloud-based point-of-sale (POS) and restaurant management software for quick-service, fast-casual, and pizza restaurants.
The actor claims the breach contains over 26.8M customer records across two datasets.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names
โข Addresses (line 1, line 2, city, state, zip, country)
โข Phone numbers and fax numbers
โข Email addresses
โข Dates of birth
โข Owner and domain names
โข Twilio phone numbers
โข Account status and modification dates
โข Marketing, conversion, and survey report data
โข Brand and order source metadata
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: HungerRush
๐๐ผ๐๐ป๐๐ฟ๐: United States ๐บ๐ธ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Technology / Restaurant POS
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 26.8M+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to have leaked a dataset allegedly originating from HungerRush, a U.S.-based restaurant technology company headquartered in Houston that provides cloud-based point-of-sale (POS) and restaurant management software for quick-service, fast-casual, and pizza restaurants.
The actor claims the breach contains over 26.8M customer records across two datasets.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names
โข Addresses (line 1, line 2, city, state, zip, country)
โข Phone numbers and fax numbers
โข Email addresses
โข Dates of birth
โข Owner and domain names
โข Twilio phone numbers
โข Account status and modification dates
โข Marketing, conversion, and survey report data
โข Brand and order source metadata
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: HungerRush
๐๐ผ๐๐ป๐๐ฟ๐: United States ๐บ๐ธ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Technology / Restaurant POS
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 26.8M+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐ฆ๐บ Melbourne International Film Festival allegedly targeted in breach exposing 340K+ customers
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from the Melbourne International Film Festival (MIFF), Australia's largest and one of the world's oldest film festivals, running annually in Melbourne since 1952.
The actor claims the breach contains over 340K customer records across two datasets.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names (first and surname)
โข Company names
โข Email addresses
โข Phone and mobile numbers
โข Addresses (street, suburb, state, post code)
โข Booking totals and registration dates
โข Member numbers and membership status
โข Unit price, membership type, and suspension status
โข Purchase dates and membership period dates
โข Shipping data
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Melbourne International Film Festival (MIFF)
๐๐ผ๐๐ป๐๐ฟ๐: Australia ๐ฆ๐บ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Entertainment / Events
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 340K+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Offer / one-time sale (BTC, ETH, XMR)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from the Melbourne International Film Festival (MIFF), Australia's largest and one of the world's oldest film festivals, running annually in Melbourne since 1952.
The actor claims the breach contains over 340K customer records across two datasets.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names (first and surname)
โข Company names
โข Email addresses
โข Phone and mobile numbers
โข Addresses (street, suburb, state, post code)
โข Booking totals and registration dates
โข Member numbers and membership status
โข Unit price, membership type, and suspension status
โข Purchase dates and membership period dates
โข Shipping data
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Melbourne International Film Festival (MIFF)
๐๐ผ๐๐ป๐๐ฟ๐: Australia ๐ฆ๐บ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Entertainment / Events
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 340K+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Offer / one-time sale (BTC, ETH, XMR)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐ฆ๐บ RIC Publications allegedly targeted in breach exposing 116K+ customers
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from RIC Publications, an Australian educational publishing company that develops teaching resources, student workbooks, lesson plans, and curriculum-aligned classroom content for schools.
The actor claims the breach contains over 116K customer records.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข First and last names
โข Email addresses
โข Telephone numbers
โข Street addresses (city, state, post code)
โข IP addresses
โข Order IDs, order codes, and store codes
โข Payment method and payment details
โข Full price, paid price, and amounts
โข School and product names
โข POS codes and signature-required flags
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: RIC Publications
๐๐ผ๐๐ป๐๐ฟ๐: Australia ๐ฆ๐บ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Education / Publishing
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 116K+ records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Offer / one-time sale (BTC, ETH, XMR)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from RIC Publications, an Australian educational publishing company that develops teaching resources, student workbooks, lesson plans, and curriculum-aligned classroom content for schools.
The actor claims the breach contains over 116K customer records.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข First and last names
โข Email addresses
โข Telephone numbers
โข Street addresses (city, state, post code)
โข IP addresses
โข Order IDs, order codes, and store codes
โข Payment method and payment details
โข Full price, paid price, and amounts
โข School and product names
โข POS codes and signature-required flags
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: RIC Publications
๐๐ผ๐๐ป๐๐ฟ๐: Australia ๐ฆ๐บ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Education / Publishing
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 116K+ records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Offer / one-time sale (BTC, ETH, XMR)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ Security researchers are now handing over vulnerabilities to Nightmare Eclipse after he was banned on both GitLab and GitHub.
It should be a fun month, because man has it been boring the last couple of weeks.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
It should be a fun month, because man has it been boring the last couple of weeks.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ FalkonC2 Windows RAT advertised on a Russian speaking underground forum
A threat actor on an underground forum is advertising FalkonC2, a private Windows remote access trojan (RAT) written in C++ and assembly. The seller markets two payload variants, one aimed at consumer systems and one at corporate environments, and claims the malware operates in memory and is designed to evade common antivirus and EDR products.
The listing promotes the tool to other forum members on a paid monthly subscription basis.
๐ช๐ต๐ฎ๐'๐ ๐ฏ๐ฒ๐ถ๐ป๐ด ๐ฎ๐ฑ๐๐ฒ๐ฟ๐๐ถ๐๐ฒ๐ฑ:
โข A private Windows RAT (DLL and EXE payloads)
โข Two variants: one targeting consumer systems, one targeting corporate systems
โข Claimed antivirus and EDR/XDR evasion
โข Remote shell and remote management capabilities
โข Reconnaissance, persistence, and privilege escalation features
โข Multiple architecture outputs (x32, x64, arm64)
โข Claimed support across modern Windows desktop and server versions
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: N/A (offensive malware)
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Cybercrime Tooling / Malware-as-a-Service
๐๐ฐ๐๐ผ๐ฟ: DarkFalcon
๐๐น๐ฎ๐ถ๐บ: Selling private Windows RAT (FalkonC2)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Remote access trojan with claimed AV/EDR evasion
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Monthly subscription (consumer tier โฌ249, corporate tier โฌ1,499)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 23, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is advertising FalkonC2, a private Windows remote access trojan (RAT) written in C++ and assembly. The seller markets two payload variants, one aimed at consumer systems and one at corporate environments, and claims the malware operates in memory and is designed to evade common antivirus and EDR products.
The listing promotes the tool to other forum members on a paid monthly subscription basis.
๐ช๐ต๐ฎ๐'๐ ๐ฏ๐ฒ๐ถ๐ป๐ด ๐ฎ๐ฑ๐๐ฒ๐ฟ๐๐ถ๐๐ฒ๐ฑ:
โข A private Windows RAT (DLL and EXE payloads)
โข Two variants: one targeting consumer systems, one targeting corporate systems
โข Claimed antivirus and EDR/XDR evasion
โข Remote shell and remote management capabilities
โข Reconnaissance, persistence, and privilege escalation features
โข Multiple architecture outputs (x32, x64, arm64)
โข Claimed support across modern Windows desktop and server versions
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: N/A (offensive malware)
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Cybercrime Tooling / Malware-as-a-Service
๐๐ฐ๐๐ผ๐ฟ: DarkFalcon
๐๐น๐ฎ๐ถ๐บ: Selling private Windows RAT (FalkonC2)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Remote access trojan with claimed AV/EDR evasion
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Monthly subscription (consumer tier โฌ249, corporate tier โฌ1,499)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 23, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
1
๐จ๐จ๐ด CNE (National Electoral Council) allegedly targeted by EsqueleSquad
A threat actor on an underground forum, attributing the leak to a group called EsqueleSquad, is claiming to have obtained confidential material directly from the CNE (Consejo Nacional Electoral), Colombia's National Electoral Council, and related sources. The actor timed the post to coincide with Colombia's elections.
The actor claims to hold internal confidential documents and campaign financing records.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข CNE internal confidential documents (internal reports, audit findings, formal complaints about electoral irregularities)
โข Sensitive correspondence between CNE officials and campaign teams
โข Documents showing weaknesses and anomalies in the voter registry and polling stations
โข 2026 campaign financing records (declared and hidden donor lists)
โข Alleged dark money movements and suspicious transfers
โข Ghost companies and large contracts awarded to campaign donors
โข Discrepancies between official reports and actual financial movements
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: CNE (Consejo Nacional Electoral)
๐๐ผ๐๐ป๐๐ฟ๐: Colombia ๐จ๐ด
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Government / Elections
๐๐ฐ๐๐ผ๐ฟ: Hydr0gen (EsqueleSquad)
๐๐น๐ฎ๐ถ๐บ: Confidential electoral documents and campaign financing records
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Internal documents and financial records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum, attributing the leak to a group called EsqueleSquad, is claiming to have obtained confidential material directly from the CNE (Consejo Nacional Electoral), Colombia's National Electoral Council, and related sources. The actor timed the post to coincide with Colombia's elections.
The actor claims to hold internal confidential documents and campaign financing records.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข CNE internal confidential documents (internal reports, audit findings, formal complaints about electoral irregularities)
โข Sensitive correspondence between CNE officials and campaign teams
โข Documents showing weaknesses and anomalies in the voter registry and polling stations
โข 2026 campaign financing records (declared and hidden donor lists)
โข Alleged dark money movements and suspicious transfers
โข Ghost companies and large contracts awarded to campaign donors
โข Discrepancies between official reports and actual financial movements
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: CNE (Consejo Nacional Electoral)
๐๐ผ๐๐ป๐๐ฟ๐: Colombia ๐จ๐ด
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Government / Elections
๐๐ฐ๐๐ผ๐ฟ: Hydr0gen (EsqueleSquad)
๐๐น๐ฎ๐ถ๐บ: Confidential electoral documents and campaign financing records
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Internal documents and financial records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โค1