WHOIS for pwnforums.st
Domain: pwnforums.st
Registered On: 2026-03-31 00:00:00 UTC
Expires On: 2027-03-31 00:00:00 UTC
Updated On: 2026-06-01 00:00:00 UTC
Status:
ok
Name Servers:
frank.ns.cloudflare.com
serenity.ns.cloudflare.com
Registrar: NordNIC
URL: Not Available
Name: Not Available
Email: Not Available
Country: Not Available
Domain: pwnforums.st
Registered On: 2026-03-31 00:00:00 UTC
Expires On: 2027-03-31 00:00:00 UTC
Updated On: 2026-06-01 00:00:00 UTC
Status:
ok
Name Servers:
frank.ns.cloudflare.com
serenity.ns.cloudflare.com
Registrar: NordNIC
URL: Not Available
Name: Not Available
Email: Not Available
Country: Not Available
πͺ Slice For Life - Part 2 πͺ
WHOIS for pwnforums.st Domain: pwnforums.st Registered On: 2026-03-31 00:00:00 UTC Expires On: 2027-03-31 00:00:00 UTC Updated On: 2026-06-01 00:00:00 UTC Status: ok Name Servers: frank.ns.cloudflare.com serenity.ns.cloudflare.com Registrar: NordNICβ¦
Dear John, Please fix your site.
πͺ Slice For Life - Part 2 πͺ
Dear John, Please fix your site.
No, actually don't.
π4π3π€1
π¨π«π· Mutuelle des Motards customer dataset allegedly offered for sale on a cybercrime forum, 1.3M records claimed
β
Mutuelle des Motards, a French mutual insurer specializing in motorcycle and two-wheel vehicle insurance, is allegedly affected by a data exposure after a threat actor advertised what they claim is a customer dataset containing approximately 1.3 million records.
β
The advertised data includes:
β
β’ Customer and contact identifiers
β’ First and last names
β’ Email addresses
β’ Telephone numbers
β’ Mobile numbers
β’ Postal codes
β’ Contact creation dates
β’ Marketing channel information
β’ Marketing scores
β’ Contact and opportunity types
β’ Offer indicators
β’ Call-related fields
β’ Processing and expected dates
β’ Record forwarding status
β’ Additional customer relationship fields
β
The actor describes the dataset as being in JSON format and published sample records containing customer contact and marketing-related information.
β
No public asking price or dataset size is provided in the listing.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
Mutuelle des Motards, a French mutual insurer specializing in motorcycle and two-wheel vehicle insurance, is allegedly affected by a data exposure after a threat actor advertised what they claim is a customer dataset containing approximately 1.3 million records.
β
The advertised data includes:
β
β’ Customer and contact identifiers
β’ First and last names
β’ Email addresses
β’ Telephone numbers
β’ Mobile numbers
β’ Postal codes
β’ Contact creation dates
β’ Marketing channel information
β’ Marketing scores
β’ Contact and opportunity types
β’ Offer indicators
β’ Call-related fields
β’ Processing and expected dates
β’ Record forwarding status
β’ Additional customer relationship fields
β
The actor describes the dataset as being in JSON format and published sample records containing customer contact and marketing-related information.
β
No public asking price or dataset size is provided in the listing.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
βΌοΈπ¬π§ FulcrumSec announces Manchester Airports Group (MAG)
π¬π§ Manchester Airports Group (MAG) - A UK airport operator managing Manchester Airport, London Stansted Airport, and East Midlands Airport.
The listing claims approximately 550 GB of data, including 8,672,291 customer profiles, 1.169 billion marketing events, 2,482,763 purchases, 461,433 SMS messages, 108,077 vehicle registrations, platform configuration data, and future booking information.
The group claims access was obtained through exposed Iterable administrative keys in the airportsβ frontend code.
π¬π§ Manchester Airports Group (MAG) - A UK airport operator managing Manchester Airport, London Stansted Airport, and East Midlands Airport.
The listing claims approximately 550 GB of data, including 8,672,291 customer profiles, 1.169 billion marketing events, 2,482,763 purchases, 461,433 SMS messages, 108,077 vehicle registrations, platform configuration data, and future booking information.
The group claims access was obtained through exposed Iterable administrative keys in the airportsβ frontend code.
π¨πͺπΈ Reig Jofre dataset allegedly stolen and offered for sale on a cybercrime forum, WordPress records and internal data claimed
β
Laboratorio Reig Jofre, a Spanish pharmaceutical company, is allegedly affected by a security breach after a threat actor claimed to have compromised an internal asset, extracted company data and subsequently deleted the underlying dataset.
β
The advertised material includes:
β
β’ Full WordPress SQL dataset
β’ Approximately 6,098 user records
β’ Full names
β’ Email addresses
β’ Hashed passwords
β’ Pharmacy names
β’ CIF/NIF identifiers
β’ Postal codes
β’ Phone numbers
β’ Professional categories
β’ Contact form submissions
β’ Client and prospect communications
β’ Administrative and scheduler logs
β’ Cookie scan records
β’ Internal operational data
β’ Pharmacy professional and partner information
β’ Internal employee references
β’ Communication logs
β’ Custom WordPress tables and metadata
β
The actor claims the material includes multiple form submissions containing personal data and requests, alongside structured records associated with pharmacy professionals and partner organizations.
β
A password-protected sample was published as alleged proof of the dataset and access. The actor states the complete material is now being offered for sale.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
Laboratorio Reig Jofre, a Spanish pharmaceutical company, is allegedly affected by a security breach after a threat actor claimed to have compromised an internal asset, extracted company data and subsequently deleted the underlying dataset.
β
The advertised material includes:
β
β’ Full WordPress SQL dataset
β’ Approximately 6,098 user records
β’ Full names
β’ Email addresses
β’ Hashed passwords
β’ Pharmacy names
β’ CIF/NIF identifiers
β’ Postal codes
β’ Phone numbers
β’ Professional categories
β’ Contact form submissions
β’ Client and prospect communications
β’ Administrative and scheduler logs
β’ Cookie scan records
β’ Internal operational data
β’ Pharmacy professional and partner information
β’ Internal employee references
β’ Communication logs
β’ Custom WordPress tables and metadata
β
The actor claims the material includes multiple form submissions containing personal data and requests, alongside structured records associated with pharmacy professionals and partner organizations.
β
A password-protected sample was published as alleged proof of the dataset and access. The actor states the complete material is now being offered for sale.
β
The claims and the authenticity, source and scope of the allegedly exposed data have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
π¨π¦π· Access to Argentinian insurance company allegedly offered for sale on a cybercrime forum for $2,000
β
An unnamed insurance company in Argentina, with claimed annual revenue of approximately $30 million, is allegedly compromised after a threat actor advertised access to its corporate environment.
β
The advertised access includes:
β
β’ Domain user access
β’ VNC remote access
β’ Access to a domain-joined system
β’ Microsoft Defender present on the environment
β’ Insurance sector organization
β’ Privately held company
β
The actor is asking $2,000 for the access. The listing does not identify the affected company or provide additional information regarding the size of the network or level of privileges available.
β
The seller's claims and the authenticity, scope and current validity of the allegedly compromised access have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
β
An unnamed insurance company in Argentina, with claimed annual revenue of approximately $30 million, is allegedly compromised after a threat actor advertised access to its corporate environment.
β
The advertised access includes:
β
β’ Domain user access
β’ VNC remote access
β’ Access to a domain-joined system
β’ Microsoft Defender present on the environment
β’ Insurance sector organization
β’ Privately held company
β
The actor is asking $2,000 for the access. The listing does not identify the affected company or provide additional information regarding the size of the network or level of privileges available.
β
The seller's claims and the authenticity, scope and current validity of the allegedly compromised access have not been independently verified.
β
π₯ No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
βΌοΈ If you are receiving a large number of unsolicited password reset emails on X, make sure you have βPassword Reset Protectβ enabled.
I also highly recommend enabling an authenticator app, or even better, using a security key.
I also highly recommend enabling an authenticator app, or even better, using a security key.
πͺ Slice For Life - Part 2 πͺ
βΌοΈ If you are receiving a large number of unsolicited password reset emails on X, make sure you have βPassword Reset Protectβ enabled. I also highly recommend enabling an authenticator app, or even better, using a security key.
Settings and Privacy -> Security and account access -> Security
Media is too big
VIEW IN TELEGRAM
I Live For This S***
Video Credit: Mr. Robot
Video Credit: Mr. Robot
I meant to release the OpSec Failures page in early August, but thought of some last second ideas that I'm currently implementing. I'm pretty sure sometime in September I will release this. No paid subscription required.
β€1π₯1
πͺ Slice For Life - Part 2 πͺ
I meant to release the OpSec Failures page in early August, but thought of some last second ideas that I'm currently implementing. I'm pretty sure sometime in September I will release this. No paid subscription required.
Also, there will be a submission button somewhere on the page if you feel like adding anything. Everyone is fair game so long as it is public record.