π¨πΊπΈ Cornerstone Residential allegedly breached, SQL dump advertised on cybercrime forum
β
Cornerstone Residential, a Texas-based property management company, is allegedly the target of a claimed breach after a threat actor advertised what they describe as a full SQL database dump from the company.
β
The threat actor claims the leaked data includes:
β
β’ User preferences
β’ User roles
β’ Elementor API access tokens and secrets
β’ Administrator IP location information
β’ Additional database records
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
Cornerstone Residential, a Texas-based property management company, is allegedly the target of a claimed breach after a threat actor advertised what they describe as a full SQL database dump from the company.
β
The threat actor claims the leaked data includes:
β
β’ User preferences
β’ User roles
β’ Elementor API access tokens and secrets
β’ Administrator IP location information
β’ Additional database records
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
βΌοΈ New Dark Web Informer Blog Post!
Title: Electoral Roll Data on 13.7 Million Chileans Advertised as a Complete Database
Link: https://darkwebinformer.com/electoral-roll-data-on-13-7-million-chileans-advertised-as-a-complete-database/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: Electoral Roll Data on 13.7 Million Chileans Advertised as a Complete Database
Link: https://darkwebinformer.com/electoral-roll-data-on-13-7-million-chileans-advertised-as-a-complete-database/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
Electoral Roll Data on 13.7 Million Chileans Advertised as a Complete Database
A forum user posting as GordonFreeman is advertising what they describe as the complete electoral roll of Chile, listing 13,737,519 citizens and attributing it to SERVEL, the national electoral service.
βΌοΈ New Dark Web Informer Blog Post!
Title: Agence Vauban Client Accounts and Property Files Shared Free on a Forum
Link: https://darkwebinformer.com/agence-vauban-client-accounts-and-property-files-shared-free-on-a-forum/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: Agence Vauban Client Accounts and Property Files Shared Free on a Forum
Link: https://darkwebinformer.com/agence-vauban-client-accounts-and-property-files-shared-free-on-a-forum/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
Agence Vauban Client Accounts and Property Files Shared Free on a Forum
A forum user posting as sh444d0w has published what they describe as the database of Agence Vauban, a real estate agency working the Antibes and French Riviera market.
π¨ D*xbin source code allegedly offered for sale on a cybercrime forum
β
DF owner is advertising what they claim is the complete source code for D*xbin, a platform associated with the publication of personal information. The actor claims the code can be used to build a D*xbin/Vilebin-style platform or operate a similar paste site.
β
The advertised offering includes:
β
β’ Complete platform source code
β’ Updated version of the claimed Doxbin codebase
β’ Ability to create a clone-style platform
β’ Existing forum infrastructure components
β’ Custom deployment capabilities
β
The actor claims the source code is the same version currently used by D*xbin and states that some clone paste sites are already operating using the code.
β
The seller's claims and the authenticity, ownership and functionality of the advertised source code have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
DF owner is advertising what they claim is the complete source code for D*xbin, a platform associated with the publication of personal information. The actor claims the code can be used to build a D*xbin/Vilebin-style platform or operate a similar paste site.
β
The advertised offering includes:
β
β’ Complete platform source code
β’ Updated version of the claimed Doxbin codebase
β’ Ability to create a clone-style platform
β’ Existing forum infrastructure components
β’ Custom deployment capabilities
β
The actor claims the source code is the same version currently used by D*xbin and states that some clone paste sites are already operating using the code.
β
The seller's claims and the authenticity, ownership and functionality of the advertised source code have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
βΌοΈ New Dark Web Informer Blog Post!
Title: JCE Records on 7.1 Million Dominicans Advertised With 5.76 Million ID Photographs
Link: https://darkwebinformer.com/jce-records-on-7-1-million-dominicans-advertised-with-5-76-million-id-photographs/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: JCE Records on 7.1 Million Dominicans Advertised With 5.76 Million ID Photographs
Link: https://darkwebinformer.com/jce-records-on-7-1-million-dominicans-advertised-with-5-76-million-id-photographs/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
JCE Records on 7.1 Million Dominicans Advertised With 5.76 Million ID Photographs
A forum user posting as GordonFreeman claims to have breached the Junta Central Electoral, the Dominican Republic's central electoral board, and is publishing what they describe as 7,141,313 citizen records alongside 5,758,124 identity card photographs keyedβ¦
π¨ Corporate access broker advertises stolen access marketplace on cybercrime forum, 2 BTC deposit claimed
β
A threat actor is advertising what they describe as a service for buying and selling corporate network access. The listing claims they work with all types of access and are seeking ongoing suppliers of compromised corporate environments.
β
The advertised service includes:
β
β’ Corporate access brokerage
β’ Multiple types of network access
β’ Access from high-value targets
β’ Initial access listings valued from $1,000+
β’ Supplier relationships for future access sales
β
The actor claims to only work with access involving organizations with revenues above $30 million and states they are looking for brokers to provide available listings.
β
The listing references a claimed 2 BTC total deposit and states that verification is conducted through encrypted communication platforms.
β
The claims and the authenticity, source and validity of the advertised access have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
A threat actor is advertising what they describe as a service for buying and selling corporate network access. The listing claims they work with all types of access and are seeking ongoing suppliers of compromised corporate environments.
β
The advertised service includes:
β
β’ Corporate access brokerage
β’ Multiple types of network access
β’ Access from high-value targets
β’ Initial access listings valued from $1,000+
β’ Supplier relationships for future access sales
β
The actor claims to only work with access involving organizations with revenues above $30 million and states they are looking for brokers to provide available listings.
β
The listing references a claimed 2 BTC total deposit and states that verification is conducted through encrypted communication platforms.
β
The claims and the authenticity, source and validity of the advertised access have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
π¨πΊπΈ Toledo Zoo database allegedly leaked on a cybercrime forum, 1.9M+ records claimed
β
Toledo Zoo & Aquarium, an Ohio-based zoo and aquarium housing thousands of animals across hundreds of species, is allegedly the target of a claimed data breach after a threat actor advertised a database dump containing approximately 1.9 million records.
β
The threat actor claims the database was obtained through a zero-day vulnerability in a third-party system and contains personally identifiable information.
β
The advertised data includes:
β
β’ Email addresses
β’ First names
β’ Middle names
β’ Last names
β’ Spouse information
β’ Street addresses
β’ Cities, states and ZIP codes
β’ Phone numbers
β’ County information
β’ Deceased status
β’ Children count
β’ Membership information
β’ Titles and suffixes
β
The listing includes samples of the alleged dataset and is being offered for $800 in cryptocurrency.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
Toledo Zoo & Aquarium, an Ohio-based zoo and aquarium housing thousands of animals across hundreds of species, is allegedly the target of a claimed data breach after a threat actor advertised a database dump containing approximately 1.9 million records.
β
The threat actor claims the database was obtained through a zero-day vulnerability in a third-party system and contains personally identifiable information.
β
The advertised data includes:
β
β’ Email addresses
β’ First names
β’ Middle names
β’ Last names
β’ Spouse information
β’ Street addresses
β’ Cities, states and ZIP codes
β’ Phone numbers
β’ County information
β’ Deceased status
β’ Children count
β’ Membership information
β’ Titles and suffixes
β
The listing includes samples of the alleged dataset and is being offered for $800 in cryptocurrency.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
βΌοΈ New Dark Web Informer Blog Post!
Title: Docurba User Tables Shared, Exposing French Planning Officials and Admin Flags
Link: https://darkwebinformer.com/docurba-user-tables-shared-exposing-french-planning-officials-and-admin-flags/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: Docurba User Tables Shared, Exposing French Planning Officials and Admin Flags
Link: https://darkwebinformer.com/docurba-user-tables-shared-exposing-french-planning-officials-and-admin-flags/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
Docurba User Tables Shared, Exposing French Planning Officials and Admin Flags
A forum user posting as 0xSec has published what they describe as the user tables of docurba.beta.gouv.fr, a French state platform used by local authorities, consulting firms and government services to develop urban planning documents such as PLUs and SCoTs.
βΌοΈπΊπΈ An actor is offering VPN-based local user access to a US organizations internal network, claiming full visibility across 600+ hosts and revenue over $1 billion.
Access is priced at 1-2K with a PoC available on request.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Access is priced at 1-2K with a PoC available on request.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
π¨ KodexGlobal database allegedly offered for sale on a cybercrime forum, 251K+ user accounts claimed
β
KodexGlobal, a platform used by law enforcement agencies to submit and manage legal data requests, is allegedly the target of a breach after a threat actor claimed to have accessed its backend through an exposed administrative API and obtained a full database dump.
β
The advertised data includes:
β
β’ 251,384 user accounts
β’ Names
β’ Email addresses
β’ Phone numbers
β’ Agency affiliations
β’ User roles and access levels
β’ 15,000+ law enforcement agencies
β’ 187,462 records requests
β’ Case numbers
β’ Legal process information
β’ Statute citations
β’ 41,208 preservation requests
β’ 9,743 non-disclosure orders with expiration dates
β’ 1,284,517 request action logs
β’ IP addresses and timestamps
β’ Administrator and agent accounts
β’ MFA status information
β
The actor claims the dataset includes accounts associated with law enforcement agencies worldwide, including agencies such as the FBI and DEA.
β
The database is being offered for $2,000, with the seller stating payment will only be accepted in XMR or BTC and that the sale will be limited to a single buyer.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
KodexGlobal, a platform used by law enforcement agencies to submit and manage legal data requests, is allegedly the target of a breach after a threat actor claimed to have accessed its backend through an exposed administrative API and obtained a full database dump.
β
The advertised data includes:
β
β’ 251,384 user accounts
β’ Names
β’ Email addresses
β’ Phone numbers
β’ Agency affiliations
β’ User roles and access levels
β’ 15,000+ law enforcement agencies
β’ 187,462 records requests
β’ Case numbers
β’ Legal process information
β’ Statute citations
β’ 41,208 preservation requests
β’ 9,743 non-disclosure orders with expiration dates
β’ 1,284,517 request action logs
β’ IP addresses and timestamps
β’ Administrator and agent accounts
β’ MFA status information
β
The actor claims the dataset includes accounts associated with law enforcement agencies worldwide, including agencies such as the FBI and DEA.
β
The database is being offered for $2,000, with the seller stating payment will only be accepted in XMR or BTC and that the sale will be limited to a single buyer.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
βΌοΈ New Dark Web Informer Blog Post!
Title: A French GDPR Compliance Provider's Client Records Shared on a Forum
Link: https://darkwebinformer.com/a-french-gdpr-compliance-providers-client-records-shared-on-a-forum/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: A French GDPR Compliance Provider's Client Records Shared on a Forum
Link: https://darkwebinformer.com/a-french-gdpr-compliance-providers-client-records-shared-on-a-forum/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
A French GDPR Compliance Provider's Client Records Shared on a Forum
A forum user posting as 0xSec has published what they describe as the database of metabase.dipeeo.fr.
βΌοΈπΊπΈ National Kidney Registry has been claimed a victim to Direwolf Ransomware
πΊπΈ National Kidney Registry - A U.S.-based nonprofit organization that facilitates kidney-paired donation and transplant matching between incompatible donor-recipient pairs.
The listing claims 253 GB of data was compromised.
πΊπΈ National Kidney Registry - A U.S.-based nonprofit organization that facilitates kidney-paired donation and transplant matching between incompatible donor-recipient pairs.
The listing claims 253 GB of data was compromised.
βΌοΈ New Dark Web Informer Blog Post!
Title: MyNewTerm Applicant Data on 142,653 Users Offered as a One Time Sale
Link: https://darkwebinformer.com/mynewterm-applicant-data-on-142-653-users-offered-as-a-one-time-sale/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: MyNewTerm Applicant Data on 142,653 Users Offered as a One Time Sale
Link: https://darkwebinformer.com/mynewterm-applicant-data-on-142-653-users-offered-as-a-one-time-sale/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
MyNewTerm Applicant Data on 142,653 Users Offered as a One Time Sale
A forum actor posting as 888 is selling what they describe as the database of MyNewTerm, a recruitment platform built for the education sector that handles the hiring cycle for schools and trusts from job advert through interview scheduling, references andβ¦
These Domains Have Been Seized will finally be available for free in September. There is some bugs I am working on. The seizure images and any raid video will be independently added.
The initial data load comes from seized.fyi. Check out their site!
The initial data load comes from seized.fyi. Check out their site!
β€2
π¨πΊπΈ FBI traces crypto payment to dark web CSAM site, leading to arrest of Texas man
Federal authorities charged 39-year-old Jose Adrian Bosquez (pictured) of Amarillo with accessing child sexual abuse material with intent to view.
According to the criminal complaint, the FBI investigated a dark web site that sold subscription access to CSAM using cryptocurrency.
Investigators extracted wallet addresses used to pay the site and allegedly traced an April 2024 payment to a Coinbase account registered to Bosquez.
The FBI searched his home on August 19. During a non-custodial interview, Bosquez allegedly admitted sending cryptocurrency to access the site and visiting it around five times, most recently in February or March 2026.
He remains in custody pending his next federal court appearance.
Source: https://www.newschannel10.com/2026/08/25/feds-charge-amarillo-man-buying-explicit-images-children-dark-web/
Federal authorities charged 39-year-old Jose Adrian Bosquez (pictured) of Amarillo with accessing child sexual abuse material with intent to view.
According to the criminal complaint, the FBI investigated a dark web site that sold subscription access to CSAM using cryptocurrency.
Investigators extracted wallet addresses used to pay the site and allegedly traced an April 2024 payment to a Coinbase account registered to Bosquez.
The FBI searched his home on August 19. During a non-custodial interview, Bosquez allegedly admitted sending cryptocurrency to access the site and visiting it around five times, most recently in February or March 2026.
He remains in custody pending his next federal court appearance.
Source: https://www.newschannel10.com/2026/08/25/feds-charge-amarillo-man-buying-explicit-images-children-dark-web/
πͺ That Dark Web Guy - Part 3 πͺ
βΌοΈ CYBERLEEK, Grand Theft Auto 6, Dark Web Onion: IOC: http://leekrdlpsy3xcxwcvfje7ovj34fo4y2xqaghdikhf3t7hatev346h6qd[.]onion/
The CYBERLEEK onion site hasn't be reachable for several hours now.
π2
Just a reminder... FBI Watchdog updates can be found in: https://t.me/FBI_Watchdog
Telegram
FBI Watchdog Alerts by Dark Web Informer
Website: darkwebinformer.com
Website Pricing (Includes Crypto): darkwebinformer.com/pricing
Socials: darkwebinformer.com/socials
API: https://darkwebinformer.com/api-details
Main: https://t.me/SliceForLifeee
Website Pricing (Includes Crypto): darkwebinformer.com/pricing
Socials: darkwebinformer.com/socials
API: https://darkwebinformer.com/api-details
Main: https://t.me/SliceForLifeee
π¨ INTERPOL operation targets Black Axe and other West African cybercrime networks across 22 countries
Operation Jackal IV resulted in 58 arrests and identified 263 suspects linked to organized crime groups involved in cyber-enabled financial fraud and money laundering.
The networks are tied to:
β’ Romance scams
β’ Cryptocurrency and investment fraud
β’ Business email compromise
β’ Money laundering
β’ Sextortion
β’ Crime-as-a-Service
In South Africa, authorities arrested 39 people, blocked 257 bank accounts, and seized $2.67M while targeting a syndicate running romance and investment scams against retirees.
Investigators in Argentina also identified 196 people linked to a Crime-as-a-Service network allegedly supplying domains and money-laundering services to West African criminal groups.
INTERPOL says some of these networks are increasingly using sextortion against minors as young as 14 and outsourcing criminal infrastructure through dark web service providers.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
Operation Jackal IV resulted in 58 arrests and identified 263 suspects linked to organized crime groups involved in cyber-enabled financial fraud and money laundering.
The networks are tied to:
β’ Romance scams
β’ Cryptocurrency and investment fraud
β’ Business email compromise
β’ Money laundering
β’ Sextortion
β’ Crime-as-a-Service
In South Africa, authorities arrested 39 people, blocked 257 bank accounts, and seized $2.67M while targeting a syndicate running romance and investment scams against retirees.
Investigators in Argentina also identified 196 people linked to a Crime-as-a-Service network allegedly supplying domains and money-laundering services to West African criminal groups.
INTERPOL says some of these networks are increasingly using sextortion against minors as young as 14 and outsourcing criminal infrastructure through dark web service providers.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials