πͺ Slice For Life - Part 2 πͺ
βΌοΈ New Dark Web Informer Blog Post! Title: Dutch Police Seize Motherless Servers in International CSAM and Sexual Abuse Investigation Link: https://darkwebinformer.com/dutch-police-seize-motherless-servers-in-international-csam-and-sexual-abuse-investigation/β¦
They are trying to come back up chat, but their IP is leaking because they are fucking idiots.
88[.]80[.]24[.]250
88[.]80[.]24[.]250
π₯4π1
π¨ Coinbase Cartel ransomware group launches partnership program for data and access brokers
The cybercrime group calling itself Coinbase Cartel is recruiting individuals and teams with exclusive stolen data or access to compromised organizations, offering to manage the extortion process through payment.
The group advertises negotiable revenue splits of up to 90/10 for exclusive datasets and up to 50/50 for corporate access. It is also seeking established access providers for long-term partnerships and says individuals with specialized skills, including social engineering, may be considered.
The advertisement directs prospective partners to the groupβs dark web site and encrypted contact channel. The group is not affiliated with the Coinbase cryptocurrency exchange.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
The cybercrime group calling itself Coinbase Cartel is recruiting individuals and teams with exclusive stolen data or access to compromised organizations, offering to manage the extortion process through payment.
The group advertises negotiable revenue splits of up to 90/10 for exclusive datasets and up to 50/50 for corporate access. It is also seeking established access providers for long-term partnerships and says individuals with specialized skills, including social engineering, may be considered.
The advertisement directs prospective partners to the groupβs dark web site and encrypted contact channel. The group is not affiliated with the Coinbase cryptocurrency exchange.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β€1π₯1
πͺ Slice For Life - Part 2 πͺ
βΌοΈ raidforums[.]ac -> raidforums[.]ru 15[.]197[.]162[.]184 ASN: 16509 Org: Amazon.com, Inc.
Both domains suspended.
π6π5
I tried many times today to incorporate XSS into the feed, but it is constantly giving a 502 error. So when they finally get their act together, I will be able to take care of it. π€·ββοΈ
β€1
π¨π°π· Access to unnamed South Korean software company allegedly listed for sale
A forum actor claims to be selling access to a South Korean company operating in the software and hospitality sectors, with reported annual revenue of approximately $10 million.
The listing advertises MariaDB, SSH, and SFTP access across approximately 33 servers.
No company name, asking price, sample data, or technical proof of access was publicly provided.
This claim is currently unverified.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
A forum actor claims to be selling access to a South Korean company operating in the software and hospitality sectors, with reported annual revenue of approximately $10 million.
The listing advertises MariaDB, SSH, and SFTP access across approximately 33 servers.
No company name, asking price, sample data, or technical proof of access was publicly provided.
This claim is currently unverified.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
π¨π«π· French Archery Federation dataset allegedly listed for sale
A forum actor claims to be selling an updated database tied to the FΓ©dΓ©ration FranΓ§aise de Tir Γ lβArc, Franceβs national governing body for archery. The seller says the data was obtained through SQL injection and that an earlier version was sold approximately 18 months ago.
The listing advertises around 658,000 address records, 378,000 unique email addresses, 354,000 unique phone numbers, 92,600 legal representative records, 15,000 primary accounts, and 27,800 secondary accounts. The allegedly exposed information includes names, contact details, postal addresses, geographic coordinates, usernames, password hashes, authentication statuses, account timestamps, IP addresses, and administrative metadata.
This claim is currently unverified.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
A forum actor claims to be selling an updated database tied to the FΓ©dΓ©ration FranΓ§aise de Tir Γ lβArc, Franceβs national governing body for archery. The seller says the data was obtained through SQL injection and that an earlier version was sold approximately 18 months ago.
The listing advertises around 658,000 address records, 378,000 unique email addresses, 354,000 unique phone numbers, 92,600 legal representative records, 15,000 primary accounts, and 27,800 secondary accounts. The allegedly exposed information includes names, contact details, postal addresses, geographic coordinates, usernames, password hashes, authentication statuses, account timestamps, IP addresses, and administrative metadata.
This claim is currently unverified.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
β€1
π¨π«π· Cartogip contact dataset containing approximately 1,200 records allegedly leaked
A forum actor claims to have leaked contact data tied to Cartogip, a French web-based geographic information system developed by GIP ATGeRi for mapping, geospatial data, and field operations.
The allegedly exposed information includes names, titles, mobile and landline phone numbers, company or municipal organization names, job functions, customer numbers, liaison identifiers, and internal organization IDs.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
A forum actor claims to have leaked contact data tied to Cartogip, a French web-based geographic information system developed by GIP ATGeRi for mapping, geospatial data, and field operations.
The allegedly exposed information includes names, titles, mobile and landline phone numbers, company or municipal organization names, job functions, customer numbers, liaison identifiers, and internal organization IDs.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
π¨πͺπ¬ Egyptian Football Association database and player documents allegedly leaked
A forum actor claims to have leaked databases belonging to the Egyptian Football Association, the governing body responsible for football in Egypt.
The listing advertises a 9.6GB archive containing approximately 350,000 player records, along with photographs, identity documents, military forms, contracts, graduation certificates, birth certificates, and other files.
The allegedly exposed information includes playersβ names, dates and places of birth, genders, nationalities, national ID and passport numbers, team and transfer histories, disciplinary records, contract details, international card information, organizational identifiers, inquiry records, and internal administrative metadata.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
A forum actor claims to have leaked databases belonging to the Egyptian Football Association, the governing body responsible for football in Egypt.
The listing advertises a 9.6GB archive containing approximately 350,000 player records, along with photographs, identity documents, military forms, contracts, graduation certificates, birth certificates, and other files.
The allegedly exposed information includes playersβ names, dates and places of birth, genders, nationalities, national ID and passport numbers, team and transfer histories, disciplinary records, contract details, international card information, organizational identifiers, inquiry records, and internal administrative metadata.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
π3
US prosecutors charge Atlanta man after GrapheneOS phone wipes itself during airport search
https://www.techspot.com/news/113236-us-prosecutors-charge-atlanta-man-after-grapheneos-phone.html
https://www.techspot.com/news/113236-us-prosecutors-charge-atlanta-man-after-grapheneos-phone.html
TechSpot
US prosecutors charge Atlanta man after GrapheneOS phone wipes itself during airport search
The case centers on Tunick's use of GrapheneOS, an open-source operating system that works on Google Pixel phones and lets users enter a passcode to wipe a...
π1
βΌοΈπ¬π§πΊπΈπΊπΈ ShinyHunters claims 3 victims
π¬π§ Ernst & Young - A global professional services network providing audit, tax, consulting, and transaction advisory services.
πΊπΈ RingCentral, Inc. - A cloud communications provider offering business phone, messaging, video conferencing, and contact center solutions.
πΊπΈ BH Security, LLC (Brinks Home) - A home security company providing professionally monitored alarm, smart home, and life-safety services.
π¬π§ Ernst & Young - A global professional services network providing audit, tax, consulting, and transaction advisory services.
πΊπΈ RingCentral, Inc. - A cloud communications provider offering business phone, messaging, video conferencing, and contact center solutions.
πΊπΈ BH Security, LLC (Brinks Home) - A home security company providing professionally monitored alarm, smart home, and life-safety services.
β€1
π¨π¨π± Chilean Ministry of Health patient records allegedly leaked
A forum actor claims to have leaked approximately 5,000 records tied to Chileβs Ministry of Health and the Mi Paciente platform. Download and sample links were posted on the forum.
The allegedly exposed information includes patientsβ full names, Chilean RUT identifiers, phone numbers, email addresses, record dates, signatures, and associated document folders. The post does not provide further details about the medical information potentially contained in the archive.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
A forum actor claims to have leaked approximately 5,000 records tied to Chileβs Ministry of Health and the Mi Paciente platform. Download and sample links were posted on the forum.
The allegedly exposed information includes patientsβ full names, Chilean RUT identifiers, phone numbers, email addresses, record dates, signatures, and associated document folders. The post does not provide further details about the medical information potentially contained in the archive.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
π¨π«π· City of Paris dataset containing approximately 320,000 records allegedly listed for sale
A forum actor claims to be selling data obtained from paris.fr, the official website of the City of Paris. The seller dates the alleged breach to July 27, 2026, and is asking $150 for the dataset.
The listing advertises 320,293 records. The allegedly exposed information includes full names, dates of birth, street addresses, postal codes, cities, phone numbers, and email addresses. A sample containing personal records was posted on the forum.
This claim is currently unverified.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
A forum actor claims to be selling data obtained from paris.fr, the official website of the City of Paris. The seller dates the alleged breach to July 27, 2026, and is asking $150 for the dataset.
The listing advertises 320,293 records. The allegedly exposed information includes full names, dates of birth, street addresses, postal codes, cities, phone numbers, and email addresses. A sample containing personal records was posted on the forum.
This claim is currently unverified.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
π¨πΉπ· FortiGate access to an unnamed Turkish organization allegedly listed for sale
A forum actor claims to be selling privileged access to a Turkish organization reportedly generating approximately 500 million in revenue.
The listing advertises FortiGate SSH and web-panel access with super-administrator privileges across more than 100 hosts. The environment allegedly includes Windows, Linux, and virtual machines.
The seller is asking 3,000 and says transactions through an escrow service are accepted. No company name, industry, sample data, or technical proof was publicly provided.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
A forum actor claims to be selling privileged access to a Turkish organization reportedly generating approximately 500 million in revenue.
The listing advertises FortiGate SSH and web-panel access with super-administrator privileges across more than 100 hosts. The environment allegedly includes Windows, Linux, and virtual machines.
The seller is asking 3,000 and says transactions through an escrow service are accepted. No company name, industry, sample data, or technical proof was publicly provided.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
π¨πΈπ¦ Blackbox BBVAS Saudi mobile subscriber data allegedly leaked
A forum actor claims to have breached Blackbox LTD, a value-added services provider operating across Beirut, Dubai, and Riyadh that handles mobile subscription billing for services including Mobily and STC.
The post advertises 59,903 unique Saudi phone numbers and 88,501 transaction events. The exposed data allegedly includes transaction histories, timestamps, device and carrier details, IP addresses, locations, billing response codes, internal API endpoints, hardcoded credentials, affiliate tags, server details, fraud indicators, PIN codes, billing types, and service identifiers.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
A forum actor claims to have breached Blackbox LTD, a value-added services provider operating across Beirut, Dubai, and Riyadh that handles mobile subscription billing for services including Mobily and STC.
The post advertises 59,903 unique Saudi phone numbers and 88,501 transaction events. The exposed data allegedly includes transaction histories, timestamps, device and carrier details, IP addresses, locations, billing response codes, internal API endpoints, hardcoded credentials, affiliate tags, server details, fraud indicators, PIN codes, billing types, and service identifiers.
This claim is currently unverified.
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
π¨π§π· NΓΊcleoGov database and server access allegedly compromised
A forum actor claims to have breached NΓΊcleoGov, a Brazilian hosting provider reportedly responsible for infrastructure supporting multiple government websites, including domains under .leg.br and .gov.br.
The post advertises full access to the companyβs servers and a 15GB database dump, which was published across several download links. The actor also claims the access remains persistent and could be used to return to the affected systems.
This claim is currently unverified.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
A forum actor claims to have breached NΓΊcleoGov, a Brazilian hosting provider reportedly responsible for infrastructure supporting multiple government websites, including domains under .leg.br and .gov.br.
The post advertises full access to the companyβs servers and a 15GB database dump, which was published across several download links. The actor also claims the access remains persistent and could be used to return to the affected systems.
This claim is currently unverified.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: http://darkwebinformer.com/pricing
There is an issue with XMR transactions on my server fully confirming despite the transaction being fully confirmed on the blockchain. Looking into it. Will update once resolved.