‼️ ShinyHunters claims a Swiss medical technology company
🇨🇭 Medela - A Swiss medical technology company specializing in breast pumps, breastfeeding products, and healthcare solutions for mothers, infants, and hospitals.
The listing includes a September 8, 2026 deadline, but does not specify the claimed data volume or types of information compromised.
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
🇨🇭 Medela - A Swiss medical technology company specializing in breast pumps, breastfeeding products, and healthcare solutions for mothers, infants, and hospitals.
The listing includes a September 8, 2026 deadline, but does not specify the claimed data volume or types of information compromised.
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
OSINTsearch is a live data search engine that helps individuals, investigators, and security teams explore social profiles and available breach exposure data from supported sources and third-party providers.
Link: https://osintsearch.org
Credit: @weezerOSINT (X)
Link: https://osintsearch.org
Credit: @weezerOSINT (X)
🚨🇧🇷 Claro Brasil allegedly breached, 46M+ phone numbers linked to CPF claimed
⠀
Claro Brasil, one of Brazil’s largest telecommunications providers, is named in a cybercrime forum post where a threat actor claims to have compromised an exposed API and extracted 46,033,380 telephone numbers linked to Brazilian CPF identifiers.
⠀
Claimed exposure
⠀
• 46,033,380 phone numbers
• CPF identifiers linked to telephone numbers
• Historical records reportedly dating from 2004 to early 2026
• Approximately 2 million records released as proof of concept
• 6.1 GB dataset
• Database provided in .DB format
⠀
The actor claims Claro has approximately 90.8 million existing phone numbers in Brazil, but says only slightly more than half could be extracted before the activity was detected.
⠀
The actor also claims the 2 million-record proof of concept contains phone numbers linked to CPF data, with some records dating through 2019.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Claro Brasil, one of Brazil’s largest telecommunications providers, is named in a cybercrime forum post where a threat actor claims to have compromised an exposed API and extracted 46,033,380 telephone numbers linked to Brazilian CPF identifiers.
⠀
Claimed exposure
⠀
• 46,033,380 phone numbers
• CPF identifiers linked to telephone numbers
• Historical records reportedly dating from 2004 to early 2026
• Approximately 2 million records released as proof of concept
• 6.1 GB dataset
• Database provided in .DB format
⠀
The actor claims Claro has approximately 90.8 million existing phone numbers in Brazil, but says only slightly more than half could be extracted before the activity was detected.
⠀
The actor also claims the 2 million-record proof of concept contains phone numbers linked to CPF data, with some records dating through 2019.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇦🇷 Hospital Alemán and OSDEPYM allegedly breached, sensitive medical and customer data leaked
⠀
Hospital Alemán and OSDEPYM, two Argentine healthcare organizations, are named in a cybercrime forum post where a threat actor claims negotiations failed and data belonging to both organizations is now being released.
⠀
Hospital Alemán claimed exposure
⠀
• Approximately 84,000 prescription records
• Patient names and dates of birth
• DNI identification numbers
• Medical coverage information
• Diagnoses and treatment details
• Prescription and medication information
• Physician and electronic prescription data
⠀
The actor published a sample containing highly sensitive medical information and claims the prescription data was converted into CSV format for release.
⠀
OSDEPYM claimed exposure
⠀
• Approximately 7,000 customer records
• Names and dates of birth
• DNI and affiliate identifiers
• Email addresses and phone numbers
• Residential addresses
• Health plan and coverage information
• Account and registration-related data
⠀
Samples of the allegedly exposed OSDEPYM customer data were also published in the forum post.
⠀
The breach claims, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Hospital Alemán and OSDEPYM, two Argentine healthcare organizations, are named in a cybercrime forum post where a threat actor claims negotiations failed and data belonging to both organizations is now being released.
⠀
Hospital Alemán claimed exposure
⠀
• Approximately 84,000 prescription records
• Patient names and dates of birth
• DNI identification numbers
• Medical coverage information
• Diagnoses and treatment details
• Prescription and medication information
• Physician and electronic prescription data
⠀
The actor published a sample containing highly sensitive medical information and claims the prescription data was converted into CSV format for release.
⠀
OSDEPYM claimed exposure
⠀
• Approximately 7,000 customer records
• Names and dates of birth
• DNI and affiliate identifiers
• Email addresses and phone numbers
• Residential addresses
• Health plan and coverage information
• Account and registration-related data
⠀
Samples of the allegedly exposed OSDEPYM customer data were also published in the forum post.
⠀
The breach claims, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
Malone Lam is expected to plead guilty tomorrow in connection with the $263 million social engineering heist.
Lam had been scheduled for a “status hearing,” which was later changed to a “change of plea hearing,” indicating he is expected to enter a guilty plea.
He is one of 18 people charged in connection with the case.
Lam had been scheduled for a “status hearing,” which was later changed to a “change of plea hearing,” indicating he is expected to enter a guilty plea.
He is one of 18 people charged in connection with the case.
😭2
🔪 Slice For Life - Part 2 🔪
Malone Lam is expected to plead guilty tomorrow in connection with the $263 million social engineering heist. Lam had been scheduled for a “status hearing,” which was later changed to a “change of plea hearing,” indicating he is expected to enter a guilty…
Source: https://apnews.com/article/cryptocurrency-scam-malone-lam-guilty-3d40f81fd3ba0b5e28d6b962ca6b343d
AP News
Party's over for crypto scammers who went on a spending spree after a $240 million bitcoin theft
A 22-year-old man from Singapore is expected to plead guilty this week in Washington to orchestrating one of the largest cryptocurrency thefts in U.S. history, duping a stranger out of bitcoin worth over $240 million.
🚨🇲🇽 Root access to Mega Gas allegedly offered for sale on a cybercrime forum
⠀
Mega Gasolineras, S.A. de C.V. (Mega Gas), a Mexican fuel retailer and gas station operator, is named in a cybercrime forum post where a threat actor claims to be selling root-level access to its infrastructure.
⠀
Advertised access
⠀
• Root access
• Approximately 1.9 TB of data
• Access tied to Mega Gas infrastructure
• Asking price: $450
⠀
The seller claims the company generates approximately $122.9 million in annual revenue and employs between 501 and 1,000 people.
⠀
The access claim, data volume and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Mega Gasolineras, S.A. de C.V. (Mega Gas), a Mexican fuel retailer and gas station operator, is named in a cybercrime forum post where a threat actor claims to be selling root-level access to its infrastructure.
⠀
Advertised access
⠀
• Root access
• Approximately 1.9 TB of data
• Access tied to Mega Gas infrastructure
• Asking price: $450
⠀
The seller claims the company generates approximately $122.9 million in annual revenue and employs between 501 and 1,000 people.
⠀
The access claim, data volume and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
‼️ New Dark Web Informer Blog Post!
Title: Admin Access to a Dubai Car Marketplace Advertised With Seller Data
Link: https://darkwebinformer.com/admin-access-to-a-dubai-car-marketplace-advertised-with-seller-data/
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: Admin Access to a Dubai Car Marketplace Advertised With Seller Data
Link: https://darkwebinformer.com/admin-access-to-a-dubai-car-marketplace-advertised-with-seller-data/
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
Admin Access to a Dubai Car Marketplace Advertised With Seller Data
A forum actor posting as Keishell, crediting two others, claims to have gained access to the administrative panel of ryxcars.com, a luxury vehicle marketplace based in Dubai.
‼️ New Dark Web Informer Blog Post!
Title: Jinko Patient Records Published With Diagnoses and Private Messages
Link: https://darkwebinformer.com/jinko-patient-records-published-with-diagnoses-and-private-messages/
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: Jinko Patient Records Published With Diagnoses and Private Messages
Link: https://darkwebinformer.com/jinko-patient-records-published-with-diagnoses-and-private-messages/
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
Jinko Patient Records Published With Diagnoses and Private Messages
A forum actor posting as DaOnlySpark has published 3.7 GB attributed to Jinko, a French cancer care support platform.
🚨🇧🇷 Municipality of Rincão allegedly compromised, administrative access claimed
⠀
Prefeitura Municipal de Rincão, the municipal government of Rincão in São Paulo, Brazil, is named in a cybercrime forum post where a threat actor claims to have compromised multiple administrative accounts and gained access to internal government systems.
⠀
Claimed access
⠀
• Government administrative accounts
• Full administrator access
• Municipal CRM access
• User management capabilities
• Government email accounts
• Confidential documents
• Access to a Strapi administrative dashboard
⠀
The actor claims they were able to identify and disable website categories and render portions of the municipal website inoperable.
⠀
Screenshots published in the forum post appear to show access to a Strapi administration panel containing municipal user accounts, email addresses, roles and account status information.
⠀
The access claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Prefeitura Municipal de Rincão, the municipal government of Rincão in São Paulo, Brazil, is named in a cybercrime forum post where a threat actor claims to have compromised multiple administrative accounts and gained access to internal government systems.
⠀
Claimed access
⠀
• Government administrative accounts
• Full administrator access
• Municipal CRM access
• User management capabilities
• Government email accounts
• Confidential documents
• Access to a Strapi administrative dashboard
⠀
The actor claims they were able to identify and disable website categories and render portions of the municipal website inoperable.
⠀
Screenshots published in the forum post appear to show access to a Strapi administration panel containing municipal user accounts, email addresses, roles and account status information.
⠀
The access claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
‼️ New Dark Web Informer Blog Post!
Title: MSM Unify Extorted for 400,000 Dollars Over Student Passport and Visa Files
Link: https://darkwebinformer.com/msm-unify-extorted-for-400-000-dollars-over-student-passport-and-visa-files/
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: MSM Unify Extorted for 400,000 Dollars Over Student Passport and Visa Files
Link: https://darkwebinformer.com/msm-unify-extorted-for-400-000-dollars-over-student-passport-and-visa-files/
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
MSM Unify Extorted for 400,000 Dollars Over Student Passport and Visa Files
A forum actor posting as Kazu claims to hold 1.45 TB taken from MSM Unify, a Canadian education technology platform that helps students apply to universities abroad.
🔪 Slice For Life - Part 2 🔪
⚠️ A lot of talk on Dread about Dark Matter still being down and jokes on a possible exit scam. My private link is working fine. See response header date/time with the market loaded.
⚠️ Dark Matter has provided an update to it's downtime. Stay vigilant.
Thread: https://dreadytofatroptsdj6io7l3xptbet6onoyno2yv7jicoxknyazubrad[.]onion/post/3a4526d61445e3539680
There is also now a mega thread to keep everything in one place.
Thread: https://dreadytofatroptsdj6io7l3xptbet6onoyno2yv7jicoxknyazubrad[.]onion/post/62c85b0b9ee1a3030427
Thread: https://dreadytofatroptsdj6io7l3xptbet6onoyno2yv7jicoxknyazubrad[.]onion/post/3a4526d61445e3539680
There is also now a mega thread to keep everything in one place.
Thread: https://dreadytofatroptsdj6io7l3xptbet6onoyno2yv7jicoxknyazubrad[.]onion/post/62c85b0b9ee1a3030427
🚨 ExEngine AV/EDR killer advertised on a cybercrime forum, Ring-3 rootkit and UAC bypass claimed
⠀
ExEngine, a malware tool advertised as an AV/EDR killer for Windows systems, is being promoted on a cybercrime forum with claims that it can disable mainstream consumer antivirus products and allow additional payloads to execute with reduced interference.
⠀
Advertised capabilities
⠀
• AV/EDR termination
• UAC bypass for privilege escalation
• Ring-3 rootkit functionality
• Process, file and registry hiding
• Network connection concealment
• Discord webhook logging
• Persistence across reboots and logouts
• Anti-VM and anti-debug features
• Support for Windows 10 and 11
• Secondary decoy payload support
⠀
The seller specifically claims compatibility against products including Windows Defender, Malwarebytes, Bitdefender and Avast, while stating support for additional antivirus software.
⠀
ExEngine is advertised at $750 per month or $2,500 per year.
⠀
The functionality, effectiveness and compatibility claims have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
⠀
ExEngine, a malware tool advertised as an AV/EDR killer for Windows systems, is being promoted on a cybercrime forum with claims that it can disable mainstream consumer antivirus products and allow additional payloads to execute with reduced interference.
⠀
Advertised capabilities
⠀
• AV/EDR termination
• UAC bypass for privilege escalation
• Ring-3 rootkit functionality
• Process, file and registry hiding
• Network connection concealment
• Discord webhook logging
• Persistence across reboots and logouts
• Anti-VM and anti-debug features
• Support for Windows 10 and 11
• Secondary decoy payload support
⠀
The seller specifically claims compatibility against products including Windows Defender, Malwarebytes, Bitdefender and Avast, while stating support for additional antivirus software.
⠀
ExEngine is advertised at $750 per month or $2,500 per year.
⠀
The functionality, effectiveness and compatibility claims have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
🔥1😁1
‼️🇳🇱 Opsporing Verzocht will play the voice of a vishing suspect in the Odido hack case during its broadcast on Monday, September 7, at 9:15 p.m. on NPO 2. Police hope this will lead to tips about the suspect or encourage the suspect to come forward.
Source: https://www.politie.nl/nieuws/2026/september/7/11-stem-van-verdachte-odido-hack-te-horen-in-opsporing-verzocht.html
Source: https://www.politie.nl/nieuws/2026/september/7/11-stem-van-verdachte-odido-hack-te-horen-in-opsporing-verzocht.html
www.politie.nl
Stem van verdachte Odido-hack te horen in Opsporing Verzocht
Opsporing Verzocht laat in de uitzending van maandag 7 september (21:15 uur op NPO2) de stem van een verdachte in de zaak van de Odido-hack horen. Hiermee hoopt de politie tips over de verdachte te krijgen of dat de verdachte zichzelf meldt.