πŸ”ͺ Slice For Life - Part 2 πŸ”ͺ
4.86K subscribers
1.13K photos
64 videos
1.01K links
Download Telegram
🚨 RightInbox dataset allegedly leaked on a cybercrime forum, 121K+ unique profiles and 39.47M activity records claimed
β €
RightInbox, a Gmail productivity tool used for email scheduling, reminders, tracking and recurring messages, is allegedly affected by a data exposure after a threat actor published what they claim is information tied to 121,616 unique user profiles.
β €
The actor additionally claims to have obtained approximately 39,471,186 user activity records associated with those profiles.
β €
The advertised data includes:
β €
β€’ 121,616 unique email addresses
β€’ 121,616 unique user IDs
β€’ 84,836 unique IP addresses
β€’ 12,151 cities
β€’ 2,299 regions
β€’ 219 countries
β€’ Account and subscription information
β€’ Subscription plan and payment-related fields
β€’ Failed payment status information
β€’ Notification status data
β€’ IP-based location information
β€’ Latitude and longitude data
β€’ Device brands and manufacturers
β€’ Device models and device types
β€’ Operating system information
β€’ Application platform information
β€’ Browser/app version information
β€’ Language settings
β€’ User properties and activity data
β €
The actor claims one file contains the 121,616 deduplicated profiles, while a second contains approximately 39.47 million associated activity records. The material is advertised as a free download, with the compressed package listed at approximately 445 MB.
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
‼️ Security researcher Nightmare Eclipse has released a new zero-day dubbed HardBreacher, an elevation-of-privilege vulnerability affecting Kaspersky Endpoint Security.

GitHub: https://github.com/MSNightmare/HardBreacher
❀2
πŸš¨πŸ‡¬πŸ‡ͺ Scroll customer dataset and source code allegedly offered for sale on a cybercrime forum
β €
Scroll, a Georgian kicksharing service, is allegedly affected by a breach after a threat actor claimed to have extracted its customer dataset and obtained access to the company's source code.
β €
The advertised data includes:
β €
β€’ Customer names
β€’ Email addresses
β€’ Phone numbers
β€’ Secondary email and phone information
β€’ Account identifiers
β€’ Payment card metadata
β€’ Masked card numbers
β€’ Card types
β€’ Card expiration dates
β€’ Additional account-related records
β €
The actor also claims to have obtained GitHub fine-grained access tokens providing access to Scroll's repositories and says they downloaded the company's latest source code.
β €
The alleged customer dataset is being offered for $2,500, while the claimed GitHub access and source code are priced separately at $1,000.
β €
The claims and the authenticity, source and scope of the allegedly exposed data, credentials and source code have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
‼️ New RaidForums domain:

raidforums[.]im

95[.]216[.]247[.]178
πŸ”₯5😭5
1. You do realize there is multiple versions of the D*xbin leak.
2. I don't even know what you're saying. One, what makes this a honeypot? Two... whatever your talking about with searching databases or providing credentials, is not what this platform does, at all.

Some of you are really fucking stupid.
😭4😁3❀1
β€ΌοΈπŸ‡ΊπŸ‡Έ ShinyHunters claims a U.S.-based food and animal safety company.

πŸ‡ΊπŸ‡Έ Neogen Corporation - A U.S.-based food and animal safety company that develops diagnostic tests, veterinary products, genomic solutions, and food-safety technologies.
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API Access: https://darkwebinformer.com/api-details
Socials: https://darkwebinformer.com/socials
‼️ 12 terabytes of Valve data dating from 2003 to 2013 have just been leaked after reportedly being "hidden" in a public repository.

The archive is said to contain the complete Valve repository, potentially including unreleased prototypes, cut content, development assets, and material that has never been publicly seen before. Early builds of projects such as Half-Life 2: Episode Three could potentially be buried within the files.

The attached image reportedly shows the main menu of a 2009 build of Portal 2.

The community has already begun digging through the massive 12 TB archive to uncover what it contains.
πŸ”₯3
‼️ New Ransomware Group: ZaWoo

Dark Web: https://fyenuhkq3pfhnbpidj5jm2fl2lryxip4byhg6eozynrnlomu4szf2nyd[.]onion
πŸ”₯6
πŸš¨πŸ‡¬πŸ‡§ MKE Engineering Group dataset allegedly leaked on a cybercrime forum, 430GB of data claimed
β €
MKE Engineering Group, a UK-based mechanical and electrical engineering services provider headquartered in Sittingbourne, Kent, is allegedly affected by a breach after a threat actor claimed to have exfiltrated approximately 430 GB of company data.
β €
The actor claims the exposed material contains approximately 20,000 folders and 450,000 files, with records spanning from the 2000s through 2026.
β €
The advertised data includes:
β €
β€’ Customer and partner information
β€’ Employee and contact records
β€’ Names and email addresses
β€’ Phone numbers
β€’ Invoices
β€’ Purchase orders
β€’ Quotations
β€’ Financial information
β€’ Engineering tests
β€’ Technical drawings
β€’ Private communications
β€’ Internal datasets
β€’ Backups
β€’ Job and service documentation
β€’ Customer account information
β€’ Additional internal business files
β €
The forum post includes samples of alleged contact records, invoices, purchase orders, quotations and engineering job documentation as proof of the claimed breach.
β €
The actor states the data remained accessible for approximately a week before publication and claims the company had not detected the intrusion during that period.
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
πŸ€”2
πŸš¨πŸ‡«πŸ‡· Five French fire and rescue services allegedly targeted in data leaks, nearly 20K personnel records claimed
β €
A threat actor has published datasets allegedly belonging to five French departmental fire and rescue services (SDIS) across Vosges, Bas-Rhin, Moselle, Gard and Bouches-du-RhΓ΄ne. Combined, the listings claim information associated with approximately 19,952 people across 22,555 records/lines.
β €
The affected organizations and claimed figures include:
β €
β€’ SDIS 88, Vosges: 3,067 people, 4,226 lines, 175 MB CSV
β€’ SDIS 67, Bas-Rhin: 3,584 people, 4,423 lines, 5.83 MB JSON
β€’ SDIS 57, Moselle: 6,434 people, 6,449 lines, 3.20 MB JSON
β€’ SDIS 30, Gard: 3,168 people, 3,757 lines, 300 KB CSV
β€’ SDIS 13, Bouches-du-RhΓ΄ne: 3,699 people, 3,700 lines, 635 KB JSON
β €
The advertised data across the leaks includes:
β €
β€’ Personnel names
β€’ Employee and personnel IDs
β€’ Ranks and job titles
β€’ Email addresses
β€’ Phone numbers
β€’ Fire and rescue center assignments
β€’ Groups and departmental affiliations
β€’ User and account records
β€’ Access rights information
β€’ Login and connection records
β€’ Internal IP addresses
β€’ Password recovery records
β€’ Training and course information
β€’ Additional internal personnel data
β €
The actor published samples and download links for the alleged datasets. The SDIS 67 post also includes several links claimed to provide access to associated Google Drive folders.
β €
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β €
πŸ’₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
❀1