๐จ GoldenBullet cracking tool advertised on underground forum
A threat actor on an underground forum marketplace is advertising GoldenBullet, an automation and web testing framework being promoted as a credential-stuffing and account-checking tool. The post markets version 2.1 with a refreshed UI and updated libraries.
The actor is promoting the tool's account-cracking, proxy, and config management capabilities to other forum users.
๐ช๐ต๐ฎ๐'๐ ๐ฏ๐ฒ๐ถ๐ป๐ด ๐ฎ๐ฑ๐๐ฒ๐ฟ๐๐ถ๐๐ฒ๐ฑ:
โข Multi-run job engine with bot/proxy stats and hit outputs to database
โข Netflix cookie checker with auto-add to hits
โข ULP to Combo extraction and Logs to ULP conversion
โข Keyword remover for trimming ULP files
โข Proxy checker with auto type/country detection
โข Config manager supporting .tic, .opk, .loli, .svb formats
โข Captcha-solving blocks (ReCaptcha, Slide, PoW)
โข Hashing and utility blocks (MD5, SHA256, GenerateGUID, Unix time)
โข Multipart HTTP request builder and TLS bypass options
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: N/A (offensive tooling)
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Cybercrime Tooling
๐๐ฐ๐๐ผ๐ฟ: ticnico
๐๐น๐ฎ๐ถ๐บ: Selling/advertising GoldenBullet cracking tool (v2.1)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Credential-stuffing and account-checking framework
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Listed in forum marketplace (sellers section)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum marketplace is advertising GoldenBullet, an automation and web testing framework being promoted as a credential-stuffing and account-checking tool. The post markets version 2.1 with a refreshed UI and updated libraries.
The actor is promoting the tool's account-cracking, proxy, and config management capabilities to other forum users.
๐ช๐ต๐ฎ๐'๐ ๐ฏ๐ฒ๐ถ๐ป๐ด ๐ฎ๐ฑ๐๐ฒ๐ฟ๐๐ถ๐๐ฒ๐ฑ:
โข Multi-run job engine with bot/proxy stats and hit outputs to database
โข Netflix cookie checker with auto-add to hits
โข ULP to Combo extraction and Logs to ULP conversion
โข Keyword remover for trimming ULP files
โข Proxy checker with auto type/country detection
โข Config manager supporting .tic, .opk, .loli, .svb formats
โข Captcha-solving blocks (ReCaptcha, Slide, PoW)
โข Hashing and utility blocks (MD5, SHA256, GenerateGUID, Unix time)
โข Multipart HTTP request builder and TLS bypass options
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: N/A (offensive tooling)
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Cybercrime Tooling
๐๐ฐ๐๐ผ๐ฟ: ticnico
๐๐น๐ฎ๐ถ๐บ: Selling/advertising GoldenBullet cracking tool (v2.1)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Credential-stuffing and account-checking framework
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Listed in forum marketplace (sellers section)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โค1
โผ๏ธ๐บ๐ธ Genesis Ransomware Claims 5 Victims
๐บ๐ธ A Roettgers - Fuel distributor and gas station operator.
๐บ๐ธ Cedar Street Capital - Private investment entity associated with Cynvestors Limited Partnership.
๐บ๐ธ Green Resource - Distributor of professional fertilizers, chemicals, and seeds for turf, lawn, and landscaping markets.
๐บ๐ธ Wentworth - DC Metro area design-build firm.
๐บ๐ธ Cavalier Flooring Systems Inc. - Flooring and tile contractor.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐บ๐ธ A Roettgers - Fuel distributor and gas station operator.
๐บ๐ธ Cedar Street Capital - Private investment entity associated with Cynvestors Limited Partnership.
๐บ๐ธ Green Resource - Distributor of professional fertilizers, chemicals, and seeds for turf, lawn, and landscaping markets.
๐บ๐ธ Wentworth - DC Metro area design-build firm.
๐บ๐ธ Cavalier Flooring Systems Inc. - Flooring and tile contractor.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ Bumble allegedly targeted in massive 32 million user database sale
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from Bumble, the dating app. The actor describes it as a clean JSON dump of fresh records.
The actor claims the dataset contains roughly 32 million records including authentication hashes and detailed profile data.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Email addresses
โข Authentication credentials (bcrypt hashed)
โข Phone numbers
โข Full bios (name, date of birth, work, education)
โข Location data
โข Habits and lifestyle fields (drinking, smoking, exercise)
โข Political and religious affiliations
โข Linked Instagram/Spotify accounts
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Bumble
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Technology / Dating
๐๐ฐ๐๐ผ๐ฟ: Euphoric_Reply_5727
๐๐น๐ฎ๐ถ๐บ: User database sale (clean JSON dump)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~32,105,822 records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: $999
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from Bumble, the dating app. The actor describes it as a clean JSON dump of fresh records.
The actor claims the dataset contains roughly 32 million records including authentication hashes and detailed profile data.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Email addresses
โข Authentication credentials (bcrypt hashed)
โข Phone numbers
โข Full bios (name, date of birth, work, education)
โข Location data
โข Habits and lifestyle fields (drinking, smoking, exercise)
โข Political and religious affiliations
โข Linked Instagram/Spotify accounts
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Bumble
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Technology / Dating
๐๐ฐ๐๐ผ๐ฟ: Euphoric_Reply_5727
๐๐น๐ฎ๐ถ๐บ: User database sale (clean JSON dump)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~32,105,822 records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: $999
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โค1๐ฅ1
๐จ๐บ๐ธ HungerRush allegedly targeted in breach exposing 26.8M+ customers
A threat actor on an underground forum is claiming to have leaked a dataset allegedly originating from HungerRush, a U.S.-based restaurant technology company headquartered in Houston that provides cloud-based point-of-sale (POS) and restaurant management software for quick-service, fast-casual, and pizza restaurants.
The actor claims the breach contains over 26.8M customer records across two datasets.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names
โข Addresses (line 1, line 2, city, state, zip, country)
โข Phone numbers and fax numbers
โข Email addresses
โข Dates of birth
โข Owner and domain names
โข Twilio phone numbers
โข Account status and modification dates
โข Marketing, conversion, and survey report data
โข Brand and order source metadata
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: HungerRush
๐๐ผ๐๐ป๐๐ฟ๐: United States ๐บ๐ธ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Technology / Restaurant POS
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 26.8M+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to have leaked a dataset allegedly originating from HungerRush, a U.S.-based restaurant technology company headquartered in Houston that provides cloud-based point-of-sale (POS) and restaurant management software for quick-service, fast-casual, and pizza restaurants.
The actor claims the breach contains over 26.8M customer records across two datasets.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names
โข Addresses (line 1, line 2, city, state, zip, country)
โข Phone numbers and fax numbers
โข Email addresses
โข Dates of birth
โข Owner and domain names
โข Twilio phone numbers
โข Account status and modification dates
โข Marketing, conversion, and survey report data
โข Brand and order source metadata
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: HungerRush
๐๐ผ๐๐ป๐๐ฟ๐: United States ๐บ๐ธ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Technology / Restaurant POS
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 26.8M+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐ฆ๐บ Melbourne International Film Festival allegedly targeted in breach exposing 340K+ customers
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from the Melbourne International Film Festival (MIFF), Australia's largest and one of the world's oldest film festivals, running annually in Melbourne since 1952.
The actor claims the breach contains over 340K customer records across two datasets.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names (first and surname)
โข Company names
โข Email addresses
โข Phone and mobile numbers
โข Addresses (street, suburb, state, post code)
โข Booking totals and registration dates
โข Member numbers and membership status
โข Unit price, membership type, and suspension status
โข Purchase dates and membership period dates
โข Shipping data
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Melbourne International Film Festival (MIFF)
๐๐ผ๐๐ป๐๐ฟ๐: Australia ๐ฆ๐บ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Entertainment / Events
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 340K+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Offer / one-time sale (BTC, ETH, XMR)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from the Melbourne International Film Festival (MIFF), Australia's largest and one of the world's oldest film festivals, running annually in Melbourne since 1952.
The actor claims the breach contains over 340K customer records across two datasets.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names (first and surname)
โข Company names
โข Email addresses
โข Phone and mobile numbers
โข Addresses (street, suburb, state, post code)
โข Booking totals and registration dates
โข Member numbers and membership status
โข Unit price, membership type, and suspension status
โข Purchase dates and membership period dates
โข Shipping data
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Melbourne International Film Festival (MIFF)
๐๐ผ๐๐ป๐๐ฟ๐: Australia ๐ฆ๐บ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Entertainment / Events
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 340K+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Offer / one-time sale (BTC, ETH, XMR)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐ฆ๐บ RIC Publications allegedly targeted in breach exposing 116K+ customers
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from RIC Publications, an Australian educational publishing company that develops teaching resources, student workbooks, lesson plans, and curriculum-aligned classroom content for schools.
The actor claims the breach contains over 116K customer records.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข First and last names
โข Email addresses
โข Telephone numbers
โข Street addresses (city, state, post code)
โข IP addresses
โข Order IDs, order codes, and store codes
โข Payment method and payment details
โข Full price, paid price, and amounts
โข School and product names
โข POS codes and signature-required flags
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: RIC Publications
๐๐ผ๐๐ป๐๐ฟ๐: Australia ๐ฆ๐บ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Education / Publishing
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 116K+ records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Offer / one-time sale (BTC, ETH, XMR)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from RIC Publications, an Australian educational publishing company that develops teaching resources, student workbooks, lesson plans, and curriculum-aligned classroom content for schools.
The actor claims the breach contains over 116K customer records.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข First and last names
โข Email addresses
โข Telephone numbers
โข Street addresses (city, state, post code)
โข IP addresses
โข Order IDs, order codes, and store codes
โข Payment method and payment details
โข Full price, paid price, and amounts
โข School and product names
โข POS codes and signature-required flags
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: RIC Publications
๐๐ผ๐๐ป๐๐ฟ๐: Australia ๐ฆ๐บ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Education / Publishing
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked customer database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 116K+ records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Offer / one-time sale (BTC, ETH, XMR)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ Security researchers are now handing over vulnerabilities to Nightmare Eclipse after he was banned on both GitLab and GitHub.
It should be a fun month, because man has it been boring the last couple of weeks.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
It should be a fun month, because man has it been boring the last couple of weeks.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ FalkonC2 Windows RAT advertised on a Russian speaking underground forum
A threat actor on an underground forum is advertising FalkonC2, a private Windows remote access trojan (RAT) written in C++ and assembly. The seller markets two payload variants, one aimed at consumer systems and one at corporate environments, and claims the malware operates in memory and is designed to evade common antivirus and EDR products.
The listing promotes the tool to other forum members on a paid monthly subscription basis.
๐ช๐ต๐ฎ๐'๐ ๐ฏ๐ฒ๐ถ๐ป๐ด ๐ฎ๐ฑ๐๐ฒ๐ฟ๐๐ถ๐๐ฒ๐ฑ:
โข A private Windows RAT (DLL and EXE payloads)
โข Two variants: one targeting consumer systems, one targeting corporate systems
โข Claimed antivirus and EDR/XDR evasion
โข Remote shell and remote management capabilities
โข Reconnaissance, persistence, and privilege escalation features
โข Multiple architecture outputs (x32, x64, arm64)
โข Claimed support across modern Windows desktop and server versions
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: N/A (offensive malware)
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Cybercrime Tooling / Malware-as-a-Service
๐๐ฐ๐๐ผ๐ฟ: DarkFalcon
๐๐น๐ฎ๐ถ๐บ: Selling private Windows RAT (FalkonC2)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Remote access trojan with claimed AV/EDR evasion
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Monthly subscription (consumer tier โฌ249, corporate tier โฌ1,499)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 23, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is advertising FalkonC2, a private Windows remote access trojan (RAT) written in C++ and assembly. The seller markets two payload variants, one aimed at consumer systems and one at corporate environments, and claims the malware operates in memory and is designed to evade common antivirus and EDR products.
The listing promotes the tool to other forum members on a paid monthly subscription basis.
๐ช๐ต๐ฎ๐'๐ ๐ฏ๐ฒ๐ถ๐ป๐ด ๐ฎ๐ฑ๐๐ฒ๐ฟ๐๐ถ๐๐ฒ๐ฑ:
โข A private Windows RAT (DLL and EXE payloads)
โข Two variants: one targeting consumer systems, one targeting corporate systems
โข Claimed antivirus and EDR/XDR evasion
โข Remote shell and remote management capabilities
โข Reconnaissance, persistence, and privilege escalation features
โข Multiple architecture outputs (x32, x64, arm64)
โข Claimed support across modern Windows desktop and server versions
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: N/A (offensive malware)
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Cybercrime Tooling / Malware-as-a-Service
๐๐ฐ๐๐ผ๐ฟ: DarkFalcon
๐๐น๐ฎ๐ถ๐บ: Selling private Windows RAT (FalkonC2)
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Remote access trojan with claimed AV/EDR evasion
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Monthly subscription (consumer tier โฌ249, corporate tier โฌ1,499)
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 23, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
1
๐จ๐จ๐ด CNE (National Electoral Council) allegedly targeted by EsqueleSquad
A threat actor on an underground forum, attributing the leak to a group called EsqueleSquad, is claiming to have obtained confidential material directly from the CNE (Consejo Nacional Electoral), Colombia's National Electoral Council, and related sources. The actor timed the post to coincide with Colombia's elections.
The actor claims to hold internal confidential documents and campaign financing records.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข CNE internal confidential documents (internal reports, audit findings, formal complaints about electoral irregularities)
โข Sensitive correspondence between CNE officials and campaign teams
โข Documents showing weaknesses and anomalies in the voter registry and polling stations
โข 2026 campaign financing records (declared and hidden donor lists)
โข Alleged dark money movements and suspicious transfers
โข Ghost companies and large contracts awarded to campaign donors
โข Discrepancies between official reports and actual financial movements
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: CNE (Consejo Nacional Electoral)
๐๐ผ๐๐ป๐๐ฟ๐: Colombia ๐จ๐ด
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Government / Elections
๐๐ฐ๐๐ผ๐ฟ: Hydr0gen (EsqueleSquad)
๐๐น๐ฎ๐ถ๐บ: Confidential electoral documents and campaign financing records
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Internal documents and financial records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum, attributing the leak to a group called EsqueleSquad, is claiming to have obtained confidential material directly from the CNE (Consejo Nacional Electoral), Colombia's National Electoral Council, and related sources. The actor timed the post to coincide with Colombia's elections.
The actor claims to hold internal confidential documents and campaign financing records.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข CNE internal confidential documents (internal reports, audit findings, formal complaints about electoral irregularities)
โข Sensitive correspondence between CNE officials and campaign teams
โข Documents showing weaknesses and anomalies in the voter registry and polling stations
โข 2026 campaign financing records (declared and hidden donor lists)
โข Alleged dark money movements and suspicious transfers
โข Ghost companies and large contracts awarded to campaign donors
โข Discrepancies between official reports and actual financial movements
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: CNE (Consejo Nacional Electoral)
๐๐ผ๐๐ป๐๐ฟ๐: Colombia ๐จ๐ด
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Government / Elections
๐๐ฐ๐๐ผ๐ฟ: Hydr0gen (EsqueleSquad)
๐๐น๐ฎ๐ถ๐บ: Confidential electoral documents and campaign financing records
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: Internal documents and financial records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โค1
๐จ๐ฎ๐ณ Mydukaan allegedly targeted in massive breach exposing 100M users
A threat actor on an underground forum is claiming to sell a full database dump allegedly originating from Mydukaan, an e-commerce platform (described as similar to Shopify) widely used in India.
The actor claims the dump contains roughly 100M users, including purchase history and encrypted payment API keys.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Usernames, first and last names
โข Email addresses
โข Phone numbers
โข Passwords and account status fields
โข Full buyer addresses (line, city, state, pin, country)
โข Purchase and transaction history
โข Order, store lead, and seller data
โข Encrypted payment API keys
โข Activity logs and reseller SKU mapping
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Mydukaan
๐๐ผ๐๐ป๐๐ฟ๐: India ๐ฎ๐ณ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Retail / E-commerce
๐๐ฐ๐๐ผ๐ฟ: stalker8083
๐๐น๐ฎ๐ถ๐บ: Full database dump
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~100M users
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: $10,000 (open to negotiation)
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell a full database dump allegedly originating from Mydukaan, an e-commerce platform (described as similar to Shopify) widely used in India.
The actor claims the dump contains roughly 100M users, including purchase history and encrypted payment API keys.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Usernames, first and last names
โข Email addresses
โข Phone numbers
โข Passwords and account status fields
โข Full buyer addresses (line, city, state, pin, country)
โข Purchase and transaction history
โข Order, store lead, and seller data
โข Encrypted payment API keys
โข Activity logs and reseller SKU mapping
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Mydukaan
๐๐ผ๐๐ป๐๐ฟ๐: India ๐ฎ๐ณ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Retail / E-commerce
๐๐ฐ๐๐ผ๐ฟ: stalker8083
๐๐น๐ฎ๐ถ๐บ: Full database dump
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~100M users
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: $10,000 (open to negotiation)
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐ฎ๐ฉ Ratakan allegedly targeted in free database leak exposing 80K records
A threat actor on an underground forum is claiming to have published a database allegedly originating from Ratakan, an Indonesian digital marketplace and affiliate sales platform. The actor is releasing the data for free.
The actor claims the leak contains roughly 80K records across user and sales data.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Usernames and full names
โข Email addresses
โข Phone numbers
โข Passwords (plaintext and hashed)
โข Login tokens and device IDs
โข Account verification status
โข Profile, avatar, and banner image paths
โข Linked social media handles (Facebook, Instagram, Twitter, Google)
โข Sales, vendor, buyer, and affiliate commission data
โข Purchase status and payment account fields
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Ratakan
๐๐ผ๐๐ป๐๐ฟ๐: Indonesia ๐ฎ๐ฉ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Retail / E-commerce
๐๐ฐ๐๐ผ๐ฟ: Bambi
๐๐น๐ฎ๐ถ๐บ: Free database leak
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~80K records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to have published a database allegedly originating from Ratakan, an Indonesian digital marketplace and affiliate sales platform. The actor is releasing the data for free.
The actor claims the leak contains roughly 80K records across user and sales data.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Usernames and full names
โข Email addresses
โข Phone numbers
โข Passwords (plaintext and hashed)
โข Login tokens and device IDs
โข Account verification status
โข Profile, avatar, and banner image paths
โข Linked social media handles (Facebook, Instagram, Twitter, Google)
โข Sales, vendor, buyer, and affiliate commission data
โข Purchase status and payment account fields
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Ratakan
๐๐ผ๐๐ป๐๐ฟ๐: Indonesia ๐ฎ๐ฉ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Retail / E-commerce
๐๐ฐ๐๐ผ๐ฟ: Bambi
๐๐น๐ฎ๐ถ๐บ: Free database leak
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~80K records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 30, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐บ๐ธ Bridges Bay Resort allegedly targeted in database leak
A threat actor on an underground forum is claiming to have leaked a database allegedly originating from Bridges Bay Resort, a lakeside resort and waterpark located in Okoboji, Iowa. The actor is releasing the data for free.
The actor claims the leak contains 52,744 visitors and 85 users.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Visitor and user names
โข Email addresses
โข Phone numbers
โข Visitor consent and signature fields
โข Room numbers
โข Document/PDF links (hosted on S3)
โข User agents and source data
โข Account creation and update timestamps
โข Approval status and member counts
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Bridges Bay Resort
๐๐ผ๐๐ป๐๐ฟ๐: United States ๐บ๐ธ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Hospitality / Tourism
๐๐ฐ๐๐ผ๐ฟ: MirrorShell
๐๐น๐ฎ๐ถ๐บ: Leaked database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 52,744 visitors and 85 users
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 31, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to have leaked a database allegedly originating from Bridges Bay Resort, a lakeside resort and waterpark located in Okoboji, Iowa. The actor is releasing the data for free.
The actor claims the leak contains 52,744 visitors and 85 users.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Visitor and user names
โข Email addresses
โข Phone numbers
โข Visitor consent and signature fields
โข Room numbers
โข Document/PDF links (hosted on S3)
โข User agents and source data
โข Account creation and update timestamps
โข Approval status and member counts
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Bridges Bay Resort
๐๐ผ๐๐ป๐๐ฟ๐: United States ๐บ๐ธ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Hospitality / Tourism
๐๐ฐ๐๐ผ๐ฟ: MirrorShell
๐๐น๐ฎ๐ถ๐บ: Leaked database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 52,744 visitors and 85 users
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 31, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
โผ๏ธ New Dark Web Informer Blog Post!
Title: Australian Workplace Catering Platform Hampr Hit by Alleged 360K+ Record Leak
Link: https://darkwebinformer.com/australian-workplace-catering-platform-hampr-hit-by-alleged-360k-record-leak/
Title: Australian Workplace Catering Platform Hampr Hit by Alleged 360K+ Record Leak
Link: https://darkwebinformer.com/australian-workplace-catering-platform-hampr-hit-by-alleged-360k-record-leak/
Dark Web Informer
Australian Workplace Catering Platform Hampr Hit by Alleged 360K+ Record Leak
A threat actor using the alias 2019 claims to have leaked a database allegedly belonging to Hampr, an Australian workplace food and catering management platform used by businesses to organise office meals, corporate catering, pantry supplies, and workplaceโฆ
๐จ๐บ๐ธ MoniCare allegedly targeted in breach exposing 40K+ consumers
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from MoniCare, a Chicago-based domestic staffing agency that places professional nannies, babysitters, housekeepers, household managers, personal assistants, and caregivers.
The actor claims the breach contains over 40K consumer records along with a collection of identity documents.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names
โข Email addresses
โข Phone numbers
โข Addresses
โข Ages
โข PDF document attachments (driver's licenses, identification cards, passports, resumes, reference letters, vaccination cards)
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: MoniCare
๐๐ผ๐๐ป๐๐ฟ๐: United States ๐บ๐ธ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Staffing / Domestic Services
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked consumer database and identity documents
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 40K+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 31, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell a dataset allegedly originating from MoniCare, a Chicago-based domestic staffing agency that places professional nannies, babysitters, housekeepers, household managers, personal assistants, and caregivers.
The actor claims the breach contains over 40K consumer records along with a collection of identity documents.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names
โข Email addresses
โข Phone numbers
โข Addresses
โข Ages
โข PDF document attachments (driver's licenses, identification cards, passports, resumes, reference letters, vaccination cards)
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: MoniCare
๐๐ผ๐๐ป๐๐ฟ๐: United States ๐บ๐ธ
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Staffing / Domestic Services
๐๐ฐ๐๐ผ๐ฟ: 2019
๐๐น๐ฎ๐ถ๐บ: Leaked consumer database and identity documents
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 40K+ records (2 datasets)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 31, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐ซ๐ท Air Austral allegedly targeted in database leak
A threat actor on an underground forum is claiming to have leaked a database allegedly originating from Air Austral, a French airline specializing in flights between the Indian Ocean, metropolitan France, southern Africa, and certain Asian destinations. The actor is releasing the data for free.
The actor claims the leak contains roughly 1K records in JSON format (~125 KB), appearing to be employee/staff data.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข First and last names
โข Email addresses
โข Job titles (fonction)
โข Department/service
โข Location (localisation)
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Air Austral
๐๐ผ๐๐ป๐๐ฟ๐: France ๐ซ๐ท
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Aviation / Airline
๐๐ฐ๐๐ผ๐ฟ: ChimeraZ
๐๐น๐ฎ๐ถ๐บ: Leaked database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~1K records (~125 KB)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 31, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to have leaked a database allegedly originating from Air Austral, a French airline specializing in flights between the Indian Ocean, metropolitan France, southern Africa, and certain Asian destinations. The actor is releasing the data for free.
The actor claims the leak contains roughly 1K records in JSON format (~125 KB), appearing to be employee/staff data.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข First and last names
โข Email addresses
โข Job titles (fonction)
โข Department/service
โข Location (localisation)
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Air Austral
๐๐ผ๐๐ป๐๐ฟ๐: France ๐ซ๐ท
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Aviation / Airline
๐๐ฐ๐๐ผ๐ฟ: ChimeraZ
๐๐น๐ฎ๐ถ๐บ: Leaked database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: ~1K records (~125 KB)
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: Free
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 31, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
๐จ๐ฌ๐ง๐ฎ๐ช Nando's allegedly targeted in employee database breach
A threat actor on an underground forum is claiming to sell an employee database allegedly originating from Nando's, the restaurant chain. The actor says the breach occurred as of May 30, 2026, and the data consists mainly of UK and Irish employees.
The actor claims the database contains 87,000 records of past and current "Nandoca" employees.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names
โข Job titles and supervisory groups
โข Business and personal email addresses
โข Mobile and landline phone numbers
โข Employment locations
โข Employee roles
โข Business locations and numbers
โข Cost center information
โข Job listing information including salaries
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Nando's
๐๐ผ๐๐ป๐๐ฟ๐: United Kingdom ๐ฌ๐ง / Ireland ๐ฎ๐ช
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Retail / Restaurant
๐๐ฐ๐๐ผ๐ฟ: failing2
๐๐น๐ฎ๐ถ๐บ: Leaked employee database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 87,000 records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: $1,000
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 31, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations
A threat actor on an underground forum is claiming to sell an employee database allegedly originating from Nando's, the restaurant chain. The actor says the breach occurred as of May 30, 2026, and the data consists mainly of UK and Irish employees.
The actor claims the database contains 87,000 records of past and current "Nandoca" employees.
๐ช๐ต๐ฎ๐'๐ ๐ฎ๐น๐น๐ฒ๐ด๐ฒ๐ฑ๐น๐ ๐ฒ๐ ๐ฝ๐ผ๐๐ฒ๐ฑ:
โข Full names
โข Job titles and supervisory groups
โข Business and personal email addresses
โข Mobile and landline phone numbers
โข Employment locations
โข Employee roles
โข Business locations and numbers
โข Cost center information
โข Job listing information including salaries
๐๐ฒ๐๐ฎ๐ถ๐น๐:
๐ง๐ฎ๐ฟ๐ด๐ฒ๐: Nando's
๐๐ผ๐๐ป๐๐ฟ๐: United Kingdom ๐ฌ๐ง / Ireland ๐ฎ๐ช
๐ฆ๐ฒ๐ฐ๐๐ผ๐ฟ: Retail / Restaurant
๐๐ฐ๐๐ผ๐ฟ: failing2
๐๐น๐ฎ๐ถ๐บ: Leaked employee database
๐๐ ๐ฝ๐ผ๐๐๐ฟ๐ฒ: 87,000 records
๐ฃ๐ฟ๐ถ๐ฐ๐ฒ: $1,000
๐ข๐ฏ๐๐ฒ๐ฟ๐๐ฒ๐ฑ: May 31, 2026
๐ฅ Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Website: darkwebinformer.com
Pricing (Includes Crypto): darkwebinformer.com/pricing
API Access: darkwebinformer.com/api-details
Socials: darkwebinformer.com/socials
Donations: darkwebinformer.com/donations