🚨🇭🇺 Complexpress Logisztika dataset allegedly offered for sale on a cybercrime forum, 1M+ records claimed
X: Sorbinfo
⠀
Complexpress Logisztika Kft., a Hungarian logistics and e-commerce fulfillment provider, is allegedly affected by a data exposure after a threat actor advertised a 3.8 GB CSV dataset containing shipment and customer information.
⠀
The actor claims the dataset contains approximately 1,018,000 unique personal records spanning 2021 through August 2026.
⠀
The advertised data includes:
⠀
• Shipment tracking numbers
• Parcel destinations
• Parcel status information
• Full names
• Physical addresses
• Email addresses, with 855K+ claimed unique
• Phone numbers, with 1.018M claimed records
• Declared shipment values
• Parcel weights
• Commission payment status
• Sender and recipient information
• Warehouse and logistics-related data
• Additional internal company fields
⠀
The listing includes samples of the alleged records and a link to what the actor describes as the full CSV dataset.
⠀
The dataset is being offered for $1,200, with the seller stating escrow is accepted.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
X: Sorbinfo
⠀
Complexpress Logisztika Kft., a Hungarian logistics and e-commerce fulfillment provider, is allegedly affected by a data exposure after a threat actor advertised a 3.8 GB CSV dataset containing shipment and customer information.
⠀
The actor claims the dataset contains approximately 1,018,000 unique personal records spanning 2021 through August 2026.
⠀
The advertised data includes:
⠀
• Shipment tracking numbers
• Parcel destinations
• Parcel status information
• Full names
• Physical addresses
• Email addresses, with 855K+ claimed unique
• Phone numbers, with 1.018M claimed records
• Declared shipment values
• Parcel weights
• Commission payment status
• Sender and recipient information
• Warehouse and logistics-related data
• Additional internal company fields
⠀
The listing includes samples of the alleged records and a link to what the actor describes as the full CSV dataset.
⠀
The dataset is being offered for $1,200, with the seller stating escrow is accepted.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
❤1
Media is too big
VIEW IN TELEGRAM
The Ashley Madison Hack: Cheaters Exposed
After Ashley Madison, a hook-up site for married people, was hacked, its users weren't the only ones exposed. The breach also revealed that the cheating site may have been cheating its own customers.
Source: youtube.com/Vice
After Ashley Madison, a hook-up site for married people, was hacked, its users weren't the only ones exposed. The breach also revealed that the cheating site may have been cheating its own customers.
Source: youtube.com/Vice
😈2
‼️ Proton is currently experiencing a major outage due to a critical cooling failure in their Frankfurt datacenter.
😭6
🚨🇦🇺 Australian authorities have arrested two alleged TeamPCP members in Perth: Ruben Ian Thomson, 21, and Louis Michael Gaebler, 23.
TeamPCP has been linked to a series of npm supply chain compromises, including activity involving the Shai-Hulud worm.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
TeamPCP has been linked to a series of npm supply chain compromises, including activity involving the Shai-Hulud worm.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
❤1
🔪 That Dark Web Guy - Part 3 🔪
🚨🇦🇺 Australian authorities have arrested two alleged TeamPCP members in Perth: Ruben Ian Thomson, 21, and Louis Michael Gaebler, 23. TeamPCP has been linked to a series of npm supply chain compromises, including activity involving the Shai-Hulud worm. __…
Unmasking TeamPCP, King of Software Supply Chain Attacks
https://flare.io/learn/resources/blog/teampcp-software-supply-chain-attacks
https://flare.io/learn/resources/blog/teampcp-software-supply-chain-attacks
Flare | Identity First Threat Intelligence | Unmatched Visibility into Cybercrime
Unmasking TeamPCP, King of Software Supply Chain Attacks
A walkthrough of the process of deanonymization By Flare’s Emerging Threats Team For five days in March 2026, a single stolen token let one group poison five software ecosystems including a package downloaded 95 million times a month. The attack started with…
🔪 That Dark Web Guy - Part 3 🔪
🚨 All DarkForums sites are suspended/down including knox's personal site. darkforums[.]su darkforums[.]ru knox[.]hn
I doubt this has any relation to the TeamPCP arrests, but you never know. FBI Watchdog caught it at 7:14am UTC.
🚨🇺🇸 FLA Wireless dataset reposted on a cybercrime forum, 57K+ order records included
⠀
FLA Wireless, which operates under Florida-based Techy and provides phone accessories, pre-owned devices and device resale services, is the subject of a previously circulated leak that has been reposted on a cybercrime forum.
⠀
The actor states the material was originally posted by another threat actor and contains five CSV files covering orders, invoices, shipments, products and discount codes.
⠀
The advertised data includes:
⠀
• 57,120 order records
• 3,250 invoice records
• 2,065 shipment records
• 14,244 product records
• Customer names
• Email addresses
• Phone and mobile numbers
• Billing and shipping addresses
• Cities, states and ZIP codes
• Payment provider information
• Order and payment status
• Product and pricing information
• Shipping methods and tracking-related fields
• Customer and invoice identifiers
• Discount code information
⠀
The post includes samples from each portion of the alleged dataset and states the material is being reposted after previously being publicly available, rather than presented as a newly obtained breach.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
FLA Wireless, which operates under Florida-based Techy and provides phone accessories, pre-owned devices and device resale services, is the subject of a previously circulated leak that has been reposted on a cybercrime forum.
⠀
The actor states the material was originally posted by another threat actor and contains five CSV files covering orders, invoices, shipments, products and discount codes.
⠀
The advertised data includes:
⠀
• 57,120 order records
• 3,250 invoice records
• 2,065 shipment records
• 14,244 product records
• Customer names
• Email addresses
• Phone and mobile numbers
• Billing and shipping addresses
• Cities, states and ZIP codes
• Payment provider information
• Order and payment status
• Product and pricing information
• Shipping methods and tracking-related fields
• Customer and invoice identifiers
• Discount code information
⠀
The post includes samples from each portion of the alleged dataset and states the material is being reposted after previously being publicly available, rather than presented as a newly obtained breach.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
Brian Krebs put together a good article that goes into depth on TeamPCP... "Two Alleged ‘TeamPCP’ Hackers Arrested in Australia"
https://krebsonsecurity.com/2026/08/two-alleged-teampcp-hackers-arrested-in-australia/
https://krebsonsecurity.com/2026/08/two-alleged-teampcp-hackers-arrested-in-australia/
🚨🇬🇧 Loveelectric employee and driver dataset allegedly offered for sale on a cybercrime forum, 877K records claimed
⠀
Loveelectric, a UK-based electric vehicle leasing and employee benefits platform specializing in EV salary sacrifice schemes, is allegedly affected by a data exposure after a threat actor advertised a dataset containing approximately 877,000 records.
⠀
The actor claims the information was obtained in August 2026 through a zero-day vulnerability in a third-party system.
⠀
The advertised data includes:
⠀
• First and last names
• Email addresses
• Phone numbers
• Dates of birth
• Street addresses
• Cities and countries
• Postcodes
• National Insurance numbers
• Driving licence numbers
• Driving licence countries
• User IDs
• Quote IDs
• Weekly working hours
• Occupation information
• Titles
⠀
The listing includes a sample of the alleged dataset and is being offered for $600, with the price described as negotiable.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Loveelectric, a UK-based electric vehicle leasing and employee benefits platform specializing in EV salary sacrifice schemes, is allegedly affected by a data exposure after a threat actor advertised a dataset containing approximately 877,000 records.
⠀
The actor claims the information was obtained in August 2026 through a zero-day vulnerability in a third-party system.
⠀
The advertised data includes:
⠀
• First and last names
• Email addresses
• Phone numbers
• Dates of birth
• Street addresses
• Cities and countries
• Postcodes
• National Insurance numbers
• Driving licence numbers
• Driving licence countries
• User IDs
• Quote IDs
• Weekly working hours
• Occupation information
• Titles
⠀
The listing includes a sample of the alleged dataset and is being offered for $600, with the price described as negotiable.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
‼️🇮🇹 A threat actor is offering for sale a dataset of Italian healthcare leads containing 38 million records, including names, tax numbers, addresses, phone numbers, emails, and birth dates.
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🔪 That Dark Web Guy - Part 3 🔪
There is an issue with Telegram claims not showing on the threat feed, I'm looking into it and don't have a solution yet.
Telegram alerts are working again. Also in the midst of figuring that issue out, I found another bug where cybercrime alerts found in the news/media were not populating on the feed for the Cyberattack category. So both issues are fixed now.
🚨🇹🇬 Togolese National Police dataset and identity card records allegedly leaked on a cybercrime forum
⠀
Police Nationale Togolaise, Togo's national police force, is allegedly affected by a data exposure after a threat actor claimed to have leaked government-related records associated with the country's police control system.
⠀
The actor claims the leak contains:
⠀
• 148,882 dataset records
• 90,118 identity card records
• Nationality-related identifiers
• Identity information
• Additional police and government-related records
⠀
The post includes a sample of the alleged dataset along with multiple images presented as proof of access.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Police Nationale Togolaise, Togo's national police force, is allegedly affected by a data exposure after a threat actor claimed to have leaked government-related records associated with the country's police control system.
⠀
The actor claims the leak contains:
⠀
• 148,882 dataset records
• 90,118 identity card records
• Nationality-related identifiers
• Identity information
• Additional police and government-related records
⠀
The post includes a sample of the alleged dataset along with multiple images presented as proof of access.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇸🇦 Nawaqis dataset allegedly leaked on a cybercrime forum, 28GB of data claimed
⠀
Nawaqis, a Saudi Arabia-based B2B wholesale procurement marketplace connecting verified businesses with vendors, is allegedly affected by a major data breach after a threat actor published what they claim is the platform's complete 28GB dataset, compressed to approximately 1GB.
⠀
The actor claims the exposed material includes:
⠀
• 6,374 business accounts
• 7,079 user accounts
• 30,583 product catalog entries
• 734,912 tiered pricing records
• 608,519 inventory records
• 1.97M RFQ line items
• 41,871 quotations
• 3.28M quoted line items
• 3.22M shopping cart records
• 64,483 orders with 4.88M order line items
• 128,710 invoices with 2.48M invoice line items
• Payment and gateway transaction records
• Vendor storefront and business agreement data
• 315,813 notification records across email, WhatsApp, SMS and in-app channels
• Millions of integration and webhook records
• Geocoded shipping address information
• Product analytics and purchase activity
• 5.03M audit log entries
⠀
The actor also claims the material contains password hashes, access tokens, Firebase/FCM tokens and OTP codes.
⠀
According to the listing, the exposed records document approximately SAR 498.3 million in orders between October 2024 and August 2026. The actor is offering the alleged dataset as a free download and additionally claims to have wiped the underlying data after extracting it.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Nawaqis, a Saudi Arabia-based B2B wholesale procurement marketplace connecting verified businesses with vendors, is allegedly affected by a major data breach after a threat actor published what they claim is the platform's complete 28GB dataset, compressed to approximately 1GB.
⠀
The actor claims the exposed material includes:
⠀
• 6,374 business accounts
• 7,079 user accounts
• 30,583 product catalog entries
• 734,912 tiered pricing records
• 608,519 inventory records
• 1.97M RFQ line items
• 41,871 quotations
• 3.28M quoted line items
• 3.22M shopping cart records
• 64,483 orders with 4.88M order line items
• 128,710 invoices with 2.48M invoice line items
• Payment and gateway transaction records
• Vendor storefront and business agreement data
• 315,813 notification records across email, WhatsApp, SMS and in-app channels
• Millions of integration and webhook records
• Geocoded shipping address information
• Product analytics and purchase activity
• 5.03M audit log entries
⠀
The actor also claims the material contains password hashes, access tokens, Firebase/FCM tokens and OTP codes.
⠀
According to the listing, the exposed records document approximately SAR 498.3 million in orders between October 2024 and August 2026. The actor is offering the alleged dataset as a free download and additionally claims to have wiped the underlying data after extracting it.
⠀
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing