πŸ”ͺ Slice For Life - Part 2 πŸ”ͺ
4.27K subscribers
766 photos
35 videos
709 links
Download Telegram
πŸš¨πŸ‡¨πŸ‡¦ Permis Plus Sherbrooke database allegedly leaked on a cybercrime forum, 1,292 records claimed
β €
A forum user claims to have released a previously unpublished dataset allegedly belonging to Γ‰cole de conduite Permis Plus Sherbrooke, part of the Permis Plus driving-school network in Quebec. (Γ‰cole de conduite Permis Plus inc.)
β €
The alleged leak contains 1,292 records, with the exposed fields including:
β €
β€’ User IDs
β€’ Email addresses
β€’ Usernames
β€’ First and last names
β€’ Account status information
β€’ Deleted-account indicators
β€’ User roles and permission classifications
β€’ School owner accounts
β€’ School administrator accounts
β€’ Student/customer accounts
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
πŸ”₯1
🚨 Dataset from an unidentified AI adult-content generation platform advertised for sale on a cybercrime forum
β €
A forum user claims to be selling access to data allegedly obtained from an AI adult-content generation platform, saying the dataset contains information tied to more than 150,000 users and over 250,000 AI-generated videos with associated source images.
β €
The advertised access reportedly includes:
β €
β€’ 150,000+ user accounts
β€’ 250,000+ AI-generated videos
β€’ Associated source images
β€’ A reportedly still-active proof of concept capable of refreshing the database
β€’ User activity and generation history
β€’ Information allegedly identifying higher-income users
β €
The listing explicitly claims some users generated explicit AI content involving themselves, friends or relatives, and markets the information as potential leads for blackmail and extortion.
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
😁1
🚨 Edge cryptocurrency wallet support data allegedly breached, 185K user emails claimed exposed
β €
A forum user claims to have breached the Edge cryptocurrency wallet support system in 2026, allegedly exposing approximately 185,000 user email addresses along with additional support-related metadata.
β €
The advertised data includes:
β €
β€’ 185,000 user email addresses
β€’ Support ticket identifiers
β€’ Assigned support agent information
β€’ Ticket creation and update timestamps
β€’ Ticket status information
β€’ Satisfaction ratings
β€’ Tags and ticket metadata
β€’ Messaging channel information
β€’ External and organization identifiers
β€’ Support platform URLs and record references
β €
A sample published in the thread appears to contain records associated with Edge's Zendesk support environment, including customer email addresses and ticket-related metadata.
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨 Moondancer ransomware group recruiting affiliates on a cybercrime forum
β €
A forum actor is promoting a ransomware operation called Moondancer and says the group is actively recruiting affiliates to participate in attacks against organizations across Latin America.
β €
The recruitment post claims:
β €
β€’ Operations are focused on Latin American companies
β€’ Priority is given to organizations dependent on critical infrastructure and continuous uptime
β€’ Healthcare services are explicitly excluded from targeting
β€’ Affiliates can join without an upfront fee
β€’ Applicants are expected to provide value to the group
β€’ Additional details are hidden behind forum content
β€’ Contact is offered through Telegram and Tox
β €
The group describes the campaign as a "big game hunting" operation and appears to be seeking partners capable of helping expand its ransomware activity.
β €
The claims and the capabilities, membership and operational scope of Moondancer have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
❀1
πŸš¨πŸ‡­πŸ‡· Croatian Pension Insurance Institute allegedly breached, 105K records leaked on a cybercrime forum
β €
A group identifying itself as INF GRUPA claims to have breached the Croatian Pension Insurance Institute (HZMO) and extracted personal information belonging to approximately 105,000 Croatian citizens.
β €
The advertised data includes:
β €
β€’ Full names and surnames
β€’ Phone numbers
β€’ OIB personal identification numbers
β€’ Email addresses
β €
INF GRUPA says the dataset is being released for free and claims the operation was not financially motivated. The group states that it is not seeking a ransom or cryptocurrency payment and describes the breach as part of a broader campaign targeting Croatian institutions.
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
πŸš¨πŸ‡«πŸ‡· Sport 2000 internal booking system allegedly breached, complete database released on a cybercrime forum
β €
A forum actor claims to have breached Sport 2000's internal booking system, known as Pilot, and extracted reservation data from the platform. The alleged breach is dated August 19, 2026, with the released dataset containing 17,851 records.
β €
The exposed data reportedly includes:
β €
β€’ Customer information
β€’ Booking and reservation records
β€’ Product information
β€’ Transaction amounts
β€’ Valid and cancelled bookings
β€’ Legacy booking references
β€’ Full reservation detail records
β €
According to the listing, approximately 14,500 valid bookings were obtained from a bulk export, while roughly 3,350 cancelled bookings were collected individually because they were not included in the export. Around 700 older bookings were also reportedly matched to their corresponding records using legacy reference numbers.
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
Securo: Self-hosted, privacy-first open-source personal finance manager.

GitHub: https://github.com/securo-finance/securo
❀1
🚨 Public PoC available for high-severity Android ContactsProvider flaw

https://github.com/qm4rs/cve-2026-0075

CVE-2026-0075 affects Android 14, 15, 16, and 16 QPR2 and can allow access to information from the contacts database through a SQL-related side channel without user interaction.

Researcher QM4RS has now released a controlled Android PoC that intentionally requests neither READ_CONTACTS nor WRITE_CONTACTS.

The issue involves ContactsProvider2 returning detailed SQLite errors to callers that lack contacts permission. Those errors could potentially be abused as an information side channel.

Google's fix strips sensitive JSON-related SQLite exception details from unauthorized callers.

The researcher cautions that the PoC is build-specific and does not demonstrate a universal exploitation path across every Android device.

Devices with the June 5, 2026 Android security patch level or later address the issue.
πŸ”₯1
Tails 7.11 has been released... update if you haven't already done so.

https://tails.net/news/version_7.11/
‼️ A forum actor advertises the sale of RDP and VPN access, offering to use a guarantor (escrow) for the transaction.

No specific victim organization or details are provided.

πŸ’₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
β€ΌοΈπŸ‡ΊπŸ‡Έ A forum actor is offering for sale super_admin-level SSH access to a FortiGate device belonging to an unnamed US retail company with reported revenue of $453.5 million, covering 378 hosts.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
🚨 WP-Admin, cPanel, Plesk and WHM administrative access advertised for sale on a cybercrime forum
β €
A forum seller is advertising compromised administrative access to websites and hosting control panels, claiming the credentials are valid and provide full administrator privileges.
β €
The advertised access includes:
β €
β€’ WordPress administrator accounts with plugin installation privileges
β€’ cPanel accounts with verified panel access and no 2FA
β€’ Plesk accounts with verified panel access and no 2FA
β€’ WHM accounts with verified panel access and no 2FA
β€’ Login credentials included with each access
β €
Pricing is advertised at $1 per WordPress admin, $3 per cPanel account, $3 per Plesk account and $25 per WHM account. The listing requires a $200 minimum purchase, with escrow available at the buyer's expense.
β €
The seller states that website characteristics, domains and SEO metrics have not been pre-screened.
β €
The claims and the authenticity, availability and scope of the advertised access have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨 EliteCrypt malware crypter and loader advertised on a cybercrime forum with Windows security bypass claims
β €
A forum seller is advertising EliteCrypt, a malware crypter and loader service designed to conceal malicious payloads and bypass Windows security controls during both scan-time and runtime execution.
β €
The advertised features include:
β €
β€’ Windows Defender 10/11 bypass
β€’ Microsoft SmartScreen bypass
β€’ Chrome security bypass claims
β€’ UAC bypass
β€’ Scan-time and runtime evasion
β€’ Support for stealers, RATs and cryptocurrency miners
β€’ Compatibility with Vidar, WebRAT, DCRat, HVNC, Stealc and other payloads
β€’ Native x64, x86 and .NET support
β€’ C-based loader stub
β€’ Unique builds rather than a shared static stub
β€’ DLL sideloading functionality
β€’ .LNK payload delivery
β€’ Ability to disguise .LNK loaders as PDF, DOCX, TXT and XLSX files
β €
Pricing is advertised at $37 for the standard crypt, $75 for DLL sideloading and $80 for the .LNK loader.
β €
The seller's claims and the capabilities of the tool have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
❀1😁1
🚨 Bugatti Cloud credential log distribution service advertised on a cybercrime forum
β €
A forum user is promoting Bugatti Cloud, a service distributing credential logs and other compromised data. The operator claims the project has attracted more than 2,000 users and has published over 1 million logs since launching.
β €
The advertised features include:
β €
β€’ More than 1 million previously published logs
β€’ 10+ GB of new material reportedly added each week
β€’ Logs collected from multiple sources
β€’ SEO-related logs
β€’ YouTube-related logs
β€’ Cryptocurrency exchange-related logs
β€’ Access to downloadable log archives
β€’ Extended exports and "HQ combo" datasets
β€’ Community access and active support
β€’ Private access through Bugatti Private Cloud
β€’ Exclusive material reportedly added every 2 days
β€’ Personalized support and potential collaboration opportunities
β €
The operator's claims and the authenticity, source and scope of the advertised logs have not been independently verified.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
Kriminal AI: "The AI That Answers Everything"

https://kriminal[.]ai
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
❀4πŸ”₯2
XSS is having domain problems again. 🀑
😭4
The fake X account claiming to be the Grand Theft Auto 6 leakers was just suspended by X.

x.com/cyberleek_ar_io
😭2❀1
πŸš¨πŸ‡«πŸ‡· Alaxione allegedly breached, 6.8M patient records and 10.1M appointment records advertised on a cybercrime forum
β €
A forum actor claims to have breached Alaxione, a French e-health company, and extracted approximately 12.8 GB of data spanning more than 18 million records. The listing claims the compromised data includes 6,835,489 patient/user records and 10,145,988 appointment records.
β €
The advertised data includes:
β €
β€’ First and last names
β€’ Email and billing email addresses
β€’ Phone and fax numbers
β€’ Dates of birth
β€’ Gender information
β€’ Physical addresses and postal codes
β€’ Cities and professions
β€’ Account identifiers and user roles
β€’ Healthcare practitioner information
β€’ Insurance and healthcare-related fields
β€’ Appointment dates and times
β€’ Patient and practitioner identifiers
β€’ Appointment locations and statuses
β€’ Appointment reasons and results
β€’ Waiting-time information
β€’ Discussion and messaging records
β€’ Internal application and account metadata
β €
The listing also references two discussion datasets containing approximately 144,310 and 129,729 records, along with additional practitioner-related information. Samples from multiple datasets were published directly in the thread.
β €
The data is being offered for $5,000 without exclusivity, with a higher price requested for an exclusive sale.
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
πŸ”₯1