🔪 Slice For Life - Part 2 🔪
4.69K subscribers
1.06K photos
59 videos
949 links
Download Telegram
🚨🇧🇷 IBAPE-PR member records and professional documents allegedly leaked

A forum actor claims to have breached the Instituto Brasileiro de Avaliações e Perícias de Engenharia do Paraná, an organization representing engineering appraisal and expert examination professionals in Paraná, Brazil.

The post says more than 3,700 personal records and 2,080 document files were released for free. The material allegedly contains information belonging to registered engineers and associated members.

The allegedly exposed information includes full names, CPF and RG identifiers, CREA registration numbers, dates of birth, email addresses, phone numbers, home and business addresses, postal codes, job titles, professions, company details, membership and payment records, account passwords, billing tokens, social media profiles, photographs, registration dates, and professional documents.

This claim is currently unverified.

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
🚨🇲🇽 Michoacán Es Mejor citizen petition records allegedly leaked

A forum actor claims to have leaked data from Michoacán Es Mejor, a citizen request and government services platform associated with the state of Michoacán, Mexico.

A sample posted on the forum contains records involving public service requests and administrative procedures, including interactions with the state tax administration service.

The allegedly exposed information includes petition numbers, request descriptions, government responses, case statuses, submission and response dates, service categories, responsible agencies, citizens’ full names, home addresses, phone numbers, email addresses, genders, online submission details, and internal user identifiers.

This claim is currently unverified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇨🇴 Data from five Colombian government domains allegedly leaked

A forum actor claims to have released an 897MB archive containing data obtained from five Colombian government domains.

The listing advertises more than 1.1 million records, including 932,207 vehicle tax debtor entries, 175,742 court collection records, 41,276 judicial embargo orders, 12,734 tax retention certificates, and 977 medical PDFs allegedly tied to ESE Hospital La María.

The allegedly exposed information also includes clinical histories, medical authorizations and referrals, employee payroll records, names, Colombian identification numbers, salaries, banking details, transportation payment documents, database credentials, Joomla configurations, and FTP credentials. The actor claims the tax-related records represent approximately COP 165.1 billion.

This claim is currently unverified.

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
1
‼️🇺🇸 Brooklyn Defender Services has been claimed a victim to INSOMNIA ransomware

🇺🇸 Brooklyn Defender Services - A Brooklyn-based public defense office providing free, client-centered legal representation and advocacy.

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
🚨🇧🇷 Celso Lisboa University student and employee data allegedly leaked

A forum actor claims to have breached Celso Lisboa University in Rio de Janeiro, Brazil, and released separate datasets containing personal information belonging to students and staff.

The post advertises more than 51,200 student records and 2,223 employee records.

The allegedly exposed information includes names, dates of birth, genders, marital statuses, contact details, home addresses, CPF and identity document numbers, education details, family information, special-needs data, employee roles, payroll and banking information, account credentials, passwords, and internal administrative records.

This claim is currently unverified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
‼️🇺🇸 Metropolitan Construction Systems has been claimed a victim to PEAR ransomware

🇺🇸 Metropolitan Construction Systems - A U.S.-based construction management company providing project planning, coordination, and building services.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
‼️🇺🇸🇦🇷 Qilin ransomware names 4 victims

🇺🇸 Stryker - A medical technology company that manufactures surgical equipment, implants, and healthcare products.

🇺🇸 Highline Community College - A public community college in Des Moines, Washington, offering academic and workforce education programs.

🇺🇸 Kean University - A public university in New Jersey offering undergraduate, graduate, and professional degree programs.

🇦🇷 Argentine Army - The land warfare branch of the Argentine Armed Forces.

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
🚨 AWS STS access tied to an unnamed telecommunications company allegedly listed for sale for $140,000.

A forum actor claims to be selling AWS Security Token Service access associated with an unidentified telecommunications company reporting approximately $9 billion in revenue.

The listing references 18 Amazon SQS queues, each allegedly processing or exposing up to 100,000 records per week. The seller also claims the access supports an “SQS downgrade attack” and set the asking price at $140,000.

No company name, sample data, proof of access, or additional technical details were publicly provided.

This claim is currently unverified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
This media is not supported in your browser
VIEW IN TELEGRAM
💥 Cariddi: Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

GitHub: https://github.com/edoardottt/cariddi
‼️ CVE-2026-58630: Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.

CVSS: 10

Details: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58630
1
‼️ CVE-2026-16232: An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges.

CVSS: 9.1

Scanner: https://github.com/WadesWeaponShed/Check-Point-Trusted-Access-Review

Details and Mitigation: https://support.checkpoint.com/results/sk/sk185169/
1
‼️ PoC released for CVE-2026-54121 codenamed Certighost

CVE-2026-54121 is a privilege escalation vulnerability in Active Directory Certificate Services that enables authorized attackers to elevate privileges.

GitHub: https://github.com/aniqfakhrul/cve-2026-54121
1😭1
🚨 CVE-2026-62835: Microsoft Azure Portal Information Disclosure Vulnerability

CVE-2026-62835 involves a flaw in the authorization process of Online Services, enabling attackers to access restricted information. The vulnerability documented by this CVE requires no customer action to resolve.

CVSS: 9.3

More information: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62835
1
🚨🇲🇽 Acomee customer dataset containing more than 17,000 records allegedly leaked

A forum actor claims to have leaked data tied to Acomee, a Mexican distributor of telecommunications, networking, surveillance, and electrical equipment.

The post advertises slightly more than 17,000 records.

The allegedly exposed information includes names, RFC identifiers, email addresses, usernames, password fields, registration dates, street addresses, phone numbers, cities, states, postal codes, account permissions, vendor details, purchasing preferences, marketplace settings, tax regimes, subscription validity dates, account statuses, and internal file references.

This claim is currently unverified.

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
🚨🇸🇦 GulfJobs[.]com recruitment dataset containing approximately 872,000 records allegedly listed for sale

A forum actor claims to be selling data tied to GulfJobs[.]com, a Saudi recruitment platform connecting employers with job candidates.

The listing advertises approximately 872,000 entity and metadata records covering candidate contacts, profiles, job applications, authentication logs, and third-party platform mappings.

The allegedly exposed information includes names, email addresses, phone numbers, dates of birth, genders, nationalities, home addresses, marital statuses, emergency contacts, passport details, employment histories, skills, salaries, police clearance certificates, résumés, physical attributes, disability information, application statuses, interview results, background checks, visa statuses, and onboarding records.

This claim is currently unverified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇻🇪 RDP access to unnamed Venezuelan equipment supplier allegedly listed for sale on a Russian speaking forum

A forum actor claims to be selling remote access to the network of a Venezuelan company that supplies industrial, agricultural, and household equipment.

The listing says the company has operated for more than 27 years, works with over 600 distributors, and maintains 20 authorized service centers. Its revenue is estimated at between 10 million and 25 million, although no currency was specified.

The advertised access allegedly includes an Active Directory user account on a Windows Server 2012 R2 system, Radmin VPN and AnyDesk connectivity, access to networked computers, and approximately 2TB of data. Bitdefender is reportedly installed on the environment.

This claim is currently unverified.

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
________________________________________

Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
1
🚨🌐 Coinbase session cookie checker and account takeover service advertised on a cybercrime forum

A forum actor is advertising a bot that allegedly checks stolen Coinbase session cookies for account balances, provides access without valid email credentials, and supports rapid withdrawals using methods designed to evade antifraud systems. The listing also advertises 2FA removal for Coinbase, MEXC, Kraken, Bybit, and other cryptocurrency exchanges.

The seller says personally sourced material is required and prioritizes stealer logs, macOS logs, RDP access, hVNC, and botnet data. Accounts from the US and UK must reportedly hold at least $1,000, while accounts from Europe and other regions require balances of at least $8,000. Revenue-sharing terms of 60/40 and 50/50 are advertised depending on the account balance.

This claim is currently unverified.

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
2