βΌοΈ New Dark Web Informer Blog Post!
Title: Docurba User Tables Shared, Exposing French Planning Officials and Admin Flags
Link: https://darkwebinformer.com/docurba-user-tables-shared-exposing-french-planning-officials-and-admin-flags/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: Docurba User Tables Shared, Exposing French Planning Officials and Admin Flags
Link: https://darkwebinformer.com/docurba-user-tables-shared-exposing-french-planning-officials-and-admin-flags/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
Docurba User Tables Shared, Exposing French Planning Officials and Admin Flags
A forum user posting as 0xSec has published what they describe as the user tables of docurba.beta.gouv.fr, a French state platform used by local authorities, consulting firms and government services to develop urban planning documents such as PLUs and SCoTs.
βΌοΈπΊπΈ An actor is offering VPN-based local user access to a US organizations internal network, claiming full visibility across 600+ hosts and revenue over $1 billion.
Access is priced at 1-2K with a PoC available on request.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Access is priced at 1-2K with a PoC available on request.
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
π¨ KodexGlobal database allegedly offered for sale on a cybercrime forum, 251K+ user accounts claimed
β
KodexGlobal, a platform used by law enforcement agencies to submit and manage legal data requests, is allegedly the target of a breach after a threat actor claimed to have accessed its backend through an exposed administrative API and obtained a full database dump.
β
The advertised data includes:
β
β’ 251,384 user accounts
β’ Names
β’ Email addresses
β’ Phone numbers
β’ Agency affiliations
β’ User roles and access levels
β’ 15,000+ law enforcement agencies
β’ 187,462 records requests
β’ Case numbers
β’ Legal process information
β’ Statute citations
β’ 41,208 preservation requests
β’ 9,743 non-disclosure orders with expiration dates
β’ 1,284,517 request action logs
β’ IP addresses and timestamps
β’ Administrator and agent accounts
β’ MFA status information
β
The actor claims the dataset includes accounts associated with law enforcement agencies worldwide, including agencies such as the FBI and DEA.
β
The database is being offered for $2,000, with the seller stating payment will only be accepted in XMR or BTC and that the sale will be limited to a single buyer.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
KodexGlobal, a platform used by law enforcement agencies to submit and manage legal data requests, is allegedly the target of a breach after a threat actor claimed to have accessed its backend through an exposed administrative API and obtained a full database dump.
β
The advertised data includes:
β
β’ 251,384 user accounts
β’ Names
β’ Email addresses
β’ Phone numbers
β’ Agency affiliations
β’ User roles and access levels
β’ 15,000+ law enforcement agencies
β’ 187,462 records requests
β’ Case numbers
β’ Legal process information
β’ Statute citations
β’ 41,208 preservation requests
β’ 9,743 non-disclosure orders with expiration dates
β’ 1,284,517 request action logs
β’ IP addresses and timestamps
β’ Administrator and agent accounts
β’ MFA status information
β
The actor claims the dataset includes accounts associated with law enforcement agencies worldwide, including agencies such as the FBI and DEA.
β
The database is being offered for $2,000, with the seller stating payment will only be accepted in XMR or BTC and that the sale will be limited to a single buyer.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
βΌοΈ New Dark Web Informer Blog Post!
Title: A French GDPR Compliance Provider's Client Records Shared on a Forum
Link: https://darkwebinformer.com/a-french-gdpr-compliance-providers-client-records-shared-on-a-forum/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: A French GDPR Compliance Provider's Client Records Shared on a Forum
Link: https://darkwebinformer.com/a-french-gdpr-compliance-providers-client-records-shared-on-a-forum/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
A French GDPR Compliance Provider's Client Records Shared on a Forum
A forum user posting as 0xSec has published what they describe as the database of metabase.dipeeo.fr.
βΌοΈπΊπΈ National Kidney Registry has been claimed a victim to Direwolf Ransomware
πΊπΈ National Kidney Registry - A U.S.-based nonprofit organization that facilitates kidney-paired donation and transplant matching between incompatible donor-recipient pairs.
The listing claims 253 GB of data was compromised.
πΊπΈ National Kidney Registry - A U.S.-based nonprofit organization that facilitates kidney-paired donation and transplant matching between incompatible donor-recipient pairs.
The listing claims 253 GB of data was compromised.
βΌοΈ New Dark Web Informer Blog Post!
Title: MyNewTerm Applicant Data on 142,653 Users Offered as a One Time Sale
Link: https://darkwebinformer.com/mynewterm-applicant-data-on-142-653-users-offered-as-a-one-time-sale/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: MyNewTerm Applicant Data on 142,653 Users Offered as a One Time Sale
Link: https://darkwebinformer.com/mynewterm-applicant-data-on-142-653-users-offered-as-a-one-time-sale/
π₯ Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
MyNewTerm Applicant Data on 142,653 Users Offered as a One Time Sale
A forum actor posting as 888 is selling what they describe as the database of MyNewTerm, a recruitment platform built for the education sector that handles the hiring cycle for schools and trusts from job advert through interview scheduling, references andβ¦
These Domains Have Been Seized will finally be available for free in September. There is some bugs I am working on. The seizure images and any raid video will be independently added.
The initial data load comes from seized.fyi. Check out their site!
The initial data load comes from seized.fyi. Check out their site!
β€2
π¨πΊπΈ FBI traces crypto payment to dark web CSAM site, leading to arrest of Texas man
Federal authorities charged 39-year-old Jose Adrian Bosquez (pictured) of Amarillo with accessing child sexual abuse material with intent to view.
According to the criminal complaint, the FBI investigated a dark web site that sold subscription access to CSAM using cryptocurrency.
Investigators extracted wallet addresses used to pay the site and allegedly traced an April 2024 payment to a Coinbase account registered to Bosquez.
The FBI searched his home on August 19. During a non-custodial interview, Bosquez allegedly admitted sending cryptocurrency to access the site and visiting it around five times, most recently in February or March 2026.
He remains in custody pending his next federal court appearance.
Source: https://www.newschannel10.com/2026/08/25/feds-charge-amarillo-man-buying-explicit-images-children-dark-web/
Federal authorities charged 39-year-old Jose Adrian Bosquez (pictured) of Amarillo with accessing child sexual abuse material with intent to view.
According to the criminal complaint, the FBI investigated a dark web site that sold subscription access to CSAM using cryptocurrency.
Investigators extracted wallet addresses used to pay the site and allegedly traced an April 2024 payment to a Coinbase account registered to Bosquez.
The FBI searched his home on August 19. During a non-custodial interview, Bosquez allegedly admitted sending cryptocurrency to access the site and visiting it around five times, most recently in February or March 2026.
He remains in custody pending his next federal court appearance.
Source: https://www.newschannel10.com/2026/08/25/feds-charge-amarillo-man-buying-explicit-images-children-dark-web/
πͺ That Dark Web Guy - Part 3 πͺ
βΌοΈ CYBERLEEK, Grand Theft Auto 6, Dark Web Onion: IOC: http://leekrdlpsy3xcxwcvfje7ovj34fo4y2xqaghdikhf3t7hatev346h6qd[.]onion/
The CYBERLEEK onion site hasn't be reachable for several hours now.
π2
Just a reminder... FBI Watchdog updates can be found in: https://t.me/FBI_Watchdog
Telegram
FBI Watchdog Alerts by Dark Web Informer
Website: darkwebinformer.com
Website Pricing (Includes Crypto): darkwebinformer.com/pricing
Socials: darkwebinformer.com/socials
API: https://darkwebinformer.com/api-details
Main: https://t.me/SliceForLifeee
Website Pricing (Includes Crypto): darkwebinformer.com/pricing
Socials: darkwebinformer.com/socials
API: https://darkwebinformer.com/api-details
Main: https://t.me/SliceForLifeee
π¨ INTERPOL operation targets Black Axe and other West African cybercrime networks across 22 countries
Operation Jackal IV resulted in 58 arrests and identified 263 suspects linked to organized crime groups involved in cyber-enabled financial fraud and money laundering.
The networks are tied to:
β’ Romance scams
β’ Cryptocurrency and investment fraud
β’ Business email compromise
β’ Money laundering
β’ Sextortion
β’ Crime-as-a-Service
In South Africa, authorities arrested 39 people, blocked 257 bank accounts, and seized $2.67M while targeting a syndicate running romance and investment scams against retirees.
Investigators in Argentina also identified 196 people linked to a Crime-as-a-Service network allegedly supplying domains and money-laundering services to West African criminal groups.
INTERPOL says some of these networks are increasingly using sextortion against minors as young as 14 and outsourcing criminal infrastructure through dark web service providers.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
Operation Jackal IV resulted in 58 arrests and identified 263 suspects linked to organized crime groups involved in cyber-enabled financial fraud and money laundering.
The networks are tied to:
β’ Romance scams
β’ Cryptocurrency and investment fraud
β’ Business email compromise
β’ Money laundering
β’ Sextortion
β’ Crime-as-a-Service
In South Africa, authorities arrested 39 people, blocked 257 bank accounts, and seized $2.67M while targeting a syndicate running romance and investment scams against retirees.
Investigators in Argentina also identified 196 people linked to a Crime-as-a-Service network allegedly supplying domains and money-laundering services to West African criminal groups.
INTERPOL says some of these networks are increasingly using sextortion against minors as young as 14 and outsourcing criminal infrastructure through dark web service providers.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
πͺ That Dark Web Guy - Part 3 πͺ
π¨ INTERPOL operation targets Black Axe and other West African cybercrime networks across 22 countries Operation Jackal IV resulted in 58 arrests and identified 263 suspects linked to organized crime groups involved in cyber-enabled financial fraud and moneyβ¦
Source: https://www.interpol.int/en/News-and-Events/News/2026/58-arrests-in-global-effort-to-dismantle-West-African-organized-crime-groups
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
Interpol
58 arrests in global effort to dismantle West African organized crime groups
INTERPOL-coordinated operation leads to the identification of 263 suspects
Forum: sinister[.]ly
IP: 103[.]155[.]93[.]134
ASN: 45839 π²πΎ
Org: Shinjiru Technology Sdn Bhd
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
IP: 103[.]155[.]93[.]134
ASN: 45839 π²πΎ
Org: Shinjiru Technology Sdn Bhd
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
π2π₯1
π¨ Nitter development has stopped after X Corp. sent cease-and-desist letters demanding the permanent takedown of Nitter instances and the projectβs repository.
The maintainer says nitter.net is now offline while legal advice is being sought. Nitter had operated for more than seven years.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
The maintainer says nitter.net is now offline while legal advice is being sought. Nitter had operated for more than seven years.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
π6
πͺ That Dark Web Guy - Part 3 πͺ
π¨ Nitter development has stopped after X Corp. sent cease-and-desist letters demanding the permanent takedown of Nitter instances and the projectβs repository. The maintainer says nitter.net is now offline while legal advice is being sought. Nitter had operatedβ¦
GitHub: https://github.com/zedeus/nitter
πΊπΈ Former U.S. Representative for Georgia Marjorie Taylor Greene says she was phished by scammers impersonating X, resulting in her personal X account being hacked. π€·ββοΈ
https://x.com/DarkWebInformer/status/2092391695434330194
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
https://x.com/DarkWebInformer/status/2092391695434330194
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
X (formerly Twitter)
Dark Web Informer (@DarkWebInformer) on X
πΊπΈ Former U.S. Representative for Georgia Marjorie Taylor Greene says she was phished by scammers impersonating X, resulting in her personal X account being hacked. π€·ββοΈ
π¨π«π· MsSantΓ© database allegedly offered for sale on a cybercrime forum, 535K+ records claimed
β
MsSantΓ©, France's secure healthcare messaging ecosystem, is allegedly affected by a data exposure after a threat actor advertised a database containing 535,358 records.
β
The sample published with the listing appears to contain information associated with healthcare professionals and organizations.
β
The advertised data includes:
β
β’ First and last names
β’ National professional identifiers
β’ Healthcare professional ID numbers
β’ Professional categories
β’ Medical specialties
β’ Organization and facility names
β’ Department and service information
β’ Business and practice addresses
β’ Cities and postal codes
β’ Professional role information
β’ Additional healthcare directory-related fields
β
The actor included a sample of the alleged records and provided contact information for prospective buyers.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
β
MsSantΓ©, France's secure healthcare messaging ecosystem, is allegedly affected by a data exposure after a threat actor advertised a database containing 535,358 records.
β
The sample published with the listing appears to contain information associated with healthcare professionals and organizations.
β
The advertised data includes:
β
β’ First and last names
β’ National professional identifiers
β’ Healthcare professional ID numbers
β’ Professional categories
β’ Medical specialties
β’ Organization and facility names
β’ Department and service information
β’ Business and practice addresses
β’ Cities and postal codes
β’ Professional role information
β’ Additional healthcare directory-related fields
β
The actor included a sample of the alleged records and provided contact information for prospective buyers.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
π¨π΅πΈ Palestinian Ministry of Interior citizen database allegedly leaked on a cybercrime forum, 3.56M records claimed
β
A threat actor claims to have obtained a database attributed to the Palestinian Ministry of Interior containing information on 3,559,378 Palestinian citizens.
β
The advertised data appears to include:
β
β’ Citizen identification numbers
β’ Full names
β’ Dates of birth
β’ Arabic-language identity records
β’ Additional demographic and registry-related fields
β
The actor published what they describe as a 500,000-record proof of concept from the alleged dataset. The complete database is claimed to be approximately 445 MB and provided in .DB format.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
β
A threat actor claims to have obtained a database attributed to the Palestinian Ministry of Interior containing information on 3,559,378 Palestinian citizens.
β
The advertised data appears to include:
β
β’ Citizen identification numbers
β’ Full names
β’ Dates of birth
β’ Arabic-language identity records
β’ Additional demographic and registry-related fields
β
The actor published what they describe as a 500,000-record proof of concept from the alleged dataset. The complete database is claimed to be approximately 445 MB and provided in .DB format.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
π2π1