🔪 That Dark Web Guy - Part 2 🔪
🚨‼️ Liquid Network was drained of approximately 4,000 BTC, worth around $320 million, over the past several hours. The hackers left the following on-chain message: “we are whitehats. contact us on chain” Blockstream responded on-chain with: “Please contact…
‼️The Liquid hackers return 3,400 BTC and kept $47M as a bounty.
😭3❤1
🚨🇻🇪 Venezuela’s Ministry of People’s Power for Culture allegedly breached, 26K+ confidential photos claimed
⠀
Ministerio del Poder Popular para la Cultura, Venezuela’s government ministry responsible for cultural policy and programs, is named in a cybercrime forum post where a threat actor claims to have obtained a collection of 26,360 confidential photographs.
⠀
Claimed exposure
⠀
• 26,360 photographs
• Approximately 4.7 GB of data
• Images provided in JPG format
• Large collection of individual portrait photographs
• Records allegedly sourced from ministry systems
⠀
The actor published a preview showing numerous individual portrait images and claims the complete collection contains more than 26,000 files.
⠀
A sample download is also advertised in the forum post.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Ministerio del Poder Popular para la Cultura, Venezuela’s government ministry responsible for cultural policy and programs, is named in a cybercrime forum post where a threat actor claims to have obtained a collection of 26,360 confidential photographs.
⠀
Claimed exposure
⠀
• 26,360 photographs
• Approximately 4.7 GB of data
• Images provided in JPG format
• Large collection of individual portrait photographs
• Records allegedly sourced from ministry systems
⠀
The actor published a preview showing numerous individual portrait images and claims the complete collection contains more than 26,000 files.
⠀
A sample download is also advertised in the forum post.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇺🇸 FitLab allegedly breached, data tied to 700K customers and 1.2M orders claimed
⠀
FitLab, a U.S. fitness and sports lifestyle company that operates a network of health, wellness and athletic brands, is named in a cybercrime forum post where a threat actor claims a third-party business intelligence platform was compromised using a zero-day vulnerability, providing access to FitLab data.
⠀
Claimed exposure
⠀
• 700,000 customer records
• 1.2 million order records
• 75,000 participant records
• Names and email addresses
• Phone numbers
• Billing and shipping addresses
• Order and transaction information
• Payment and fulfillment metadata
• Customer and brand identifiers
• Event, race and booking information
• Participant and team details
⠀
The actor claims the compromise occurred in August 2026 and resulted in access to multiple FitLab datasets containing customer, order and event participation information.
⠀
Samples of the allegedly exposed database structures were published in the forum post, with a download also advertised.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
FitLab, a U.S. fitness and sports lifestyle company that operates a network of health, wellness and athletic brands, is named in a cybercrime forum post where a threat actor claims a third-party business intelligence platform was compromised using a zero-day vulnerability, providing access to FitLab data.
⠀
Claimed exposure
⠀
• 700,000 customer records
• 1.2 million order records
• 75,000 participant records
• Names and email addresses
• Phone numbers
• Billing and shipping addresses
• Order and transaction information
• Payment and fulfillment metadata
• Customer and brand identifiers
• Event, race and booking information
• Participant and team details
⠀
The actor claims the compromise occurred in August 2026 and resulted in access to multiple FitLab datasets containing customer, order and event participation information.
⠀
Samples of the allegedly exposed database structures were published in the forum post, with a download also advertised.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
❤1
‼️ Dark Project is now offering a RaaS affiliate program
Dark Web: http://darkprn3d3udnhpuxknsrhft3376lrz5tenhgkrxge5hxqe46pkbrwid[.]onion
Dark Web: http://darkprn3d3udnhpuxknsrhft3376lrz5tenhgkrxge5hxqe46pkbrwid[.]onion
Media is too big
VIEW IN TELEGRAM
🚨🇳🇱 Do you recognize this voice from the Odido hack?
The police have released the voice of the man suspected of being involved in the hack of telecom provider Odido. A fragment of the conversation between the man and an Odido helpdesk employee was played on the TV program Opsporing Verzocht.
Source: https://www.politie.nl/gezocht/opsporingsbericht/2026/september/11-datadiefstal-odido
The police have released the voice of the man suspected of being involved in the hack of telecom provider Odido. A fragment of the conversation between the man and an Odido helpdesk employee was played on the TV program Opsporing Verzocht.
Source: https://www.politie.nl/gezocht/opsporingsbericht/2026/september/11-datadiefstal-odido
🔪 That Dark Web Guy - Part 2 🔪
🚨🇳🇱 Do you recognize this voice from the Odido hack? The police have released the voice of the man suspected of being involved in the hack of telecom provider Odido. A fragment of the conversation between the man and an Odido helpdesk employee was played…
Media is too big
VIEW IN TELEGRAM
Here is the news piece.
❤1
🔪 That Dark Web Guy - Part 2 🔪
‼️🇺🇸 ShinyHunters claims the State of Florida DMV Sounds like they purchased the DL data from the Nexus market actor.
‼️ The DL sample made publicly on ShinyHunters pay or leak site is Jeffrey Epstein.
🔥8👀2
🚨🇧🇷 Municipality of Arcos dataset allegedly leaked, 484.7 MB of data claimed
⠀
Prefeitura Municipal de Arcos, the municipal government of Arcos in Minas Gerais, Brazil, is named in a cybercrime forum post where a threat actor claims to have obtained and released data associated with the municipality’s official government portal.
⠀
Claimed exposure
⠀
• Municipal employee names
• Government email addresses
• Department and role information
• Internal contact records
• vCard-style contact data
• Approximately 484.7 MB of files
⠀
The actor published a sample containing municipal staff contact information, including names, departments and official arcos.mg.gov.br email addresses.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Prefeitura Municipal de Arcos, the municipal government of Arcos in Minas Gerais, Brazil, is named in a cybercrime forum post where a threat actor claims to have obtained and released data associated with the municipality’s official government portal.
⠀
Claimed exposure
⠀
• Municipal employee names
• Government email addresses
• Department and role information
• Internal contact records
• vCard-style contact data
• Approximately 484.7 MB of files
⠀
The actor published a sample containing municipal staff contact information, including names, departments and official arcos.mg.gov.br email addresses.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🔪 That Dark Web Guy - Part 2 🔪
⚠️ Dark Matter has provided an update to it's downtime. Stay vigilant. Thread: https://dreadytofatroptsdj6io7l3xptbet6onoyno2yv7jicoxknyazubrad[.]onion/post/3a4526d61445e3539680 There is also now a mega thread to keep everything in one place. Thread: h…
I no longer can access my private link as of a couple hours after this post. Trust is certainly lost with a lot of people. So the chances of an exit-scam or LE takeover rise.
🚨🇧🇷 Central dos Benefícios dataset allegedly offered for sale, 2.7M+ people claimed
⠀
Central dos Benefícios, a Brazilian corporate benefits platform providing employee benefit services, is named in a cybercrime forum post where a threat actor claims to be selling a 1 GB dataset containing millions of records.
⠀
Claimed exposure
⠀
• 2,734,282 people records
• 2,086,659 payment card records
• 784,045 application users
• 32,322 security group records
• 11,059 security users
• 1,119 operator records
• Names and email addresses
• CPF/CNPJ identifiers
• Payment card numbers, expiration dates and CVV data
• Account and credential-related information
⠀
The actor claims the dataset contains approximately 3.5 million lines and is provided in JSON format.
⠀
A sample of the allegedly exposed records was published in the forum post. The dataset is advertised for $5,000, with XMR or BTC accepted.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
⠀
Central dos Benefícios, a Brazilian corporate benefits platform providing employee benefit services, is named in a cybercrime forum post where a threat actor claims to be selling a 1 GB dataset containing millions of records.
⠀
Claimed exposure
⠀
• 2,734,282 people records
• 2,086,659 payment card records
• 784,045 application users
• 32,322 security group records
• 11,059 security users
• 1,119 operator records
• Names and email addresses
• CPF/CNPJ identifiers
• Payment card numbers, expiration dates and CVV data
• Account and credential-related information
⠀
The actor claims the dataset contains approximately 3.5 million lines and is provided in JSON format.
⠀
A sample of the allegedly exposed records was published in the forum post. The dataset is advertised for $5,000, with XMR or BTC accepted.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
❤1
🚨🇨🇴 Unidad Central del Valle del Cauca allegedly breached, 4.1K+ individuals affected
⠀
Unidad Central del Valle del Cauca (UCEVA), a public higher education institution in Colombia, is named in a cybercrime forum post where a threat actor claims to have obtained student PII, staff account information, internal documents and data from exposed university systems.
⠀
Claimed exposure
⠀
• 4,090 student records
• Institutional email addresses
• Colombian CC/TI identification numbers
• Dates of birth, including records tied to minors
• 20 WordPress administrative and staff accounts
• 2,910 internal documents
• Contracts, payroll records and academic documents
• 36+ election and voter-related documents
• WordPress, OJS and Koha system information
• Three allegedly exposed vulnerabilities
⠀
The actor claims the exposed records affect more than 4,100 individuals, including students, faculty, administrative staff and contractors.
⠀
The data is advertised in CSV, JSON, HTML and XML formats, with samples and a download link published in the forum post.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
⠀
Unidad Central del Valle del Cauca (UCEVA), a public higher education institution in Colombia, is named in a cybercrime forum post where a threat actor claims to have obtained student PII, staff account information, internal documents and data from exposed university systems.
⠀
Claimed exposure
⠀
• 4,090 student records
• Institutional email addresses
• Colombian CC/TI identification numbers
• Dates of birth, including records tied to minors
• 20 WordPress administrative and staff accounts
• 2,910 internal documents
• Contracts, payroll records and academic documents
• 36+ election and voter-related documents
• WordPress, OJS and Koha system information
• Three allegedly exposed vulnerabilities
⠀
The actor claims the exposed records affect more than 4,100 individuals, including students, faculty, administrative staff and contractors.
⠀
The data is advertised in CSV, JSON, HTML and XML formats, with samples and a download link published in the forum post.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials