🔪 That Dark Web Guy - Part 3 🔪
4.88K subscribers
1.17K photos
66 videos
1.04K links
Download Telegram
‼️🇺🇸 NorthShore Health Centers has been named by INSOMNIA Ransomware

🇺🇸 NorthShore Health Centers - A U.S.-based healthcare provider in Indiana operating hospitals and physician clinics.
1
"whats the best wallet for xmr?"

Feather in my opinion.

Dread Thread: https://dreadytofatroptsdj6io7l3xptbet6onoyno2yv7jicoxknyazubrad[.]onion/post/1eae3d3e885062f0b695
🚨🇧🇷 Municipality of Arcos dataset allegedly leaked, 484.7 MB of data claimed

Prefeitura Municipal de Arcos, the municipal government of Arcos in Minas Gerais, Brazil, is named in a cybercrime forum post where a threat actor claims to have obtained and released data associated with the municipality’s official government portal.

Claimed exposure

• Municipal employee names
• Government email addresses
• Department and role information
• Internal contact records
• vCard-style contact data
• Approximately 484.7 MB of files

The actor published a sample containing municipal staff contact information, including names, departments and official arcos.mg.gov.br email addresses.

The breach claim, exposed data and scope have not been independently verified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇧🇷 Central dos Benefícios dataset allegedly offered for sale, 2.7M+ people claimed

Central dos Benefícios, a Brazilian corporate benefits platform providing employee benefit services, is named in a cybercrime forum post where a threat actor claims to be selling a 1 GB dataset containing millions of records.

Claimed exposure

• 2,734,282 people records
• 2,086,659 payment card records
• 784,045 application users
• 32,322 security group records
• 11,059 security users
• 1,119 operator records
• Names and email addresses
• CPF/CNPJ identifiers
• Payment card numbers, expiration dates and CVV data
• Account and credential-related information

The actor claims the dataset contains approximately 3.5 million lines and is provided in JSON format.

A sample of the allegedly exposed records was published in the forum post. The dataset is advertised for $5,000, with XMR or BTC accepted.

The breach claim, exposed data and scope have not been independently verified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
1
🚨🇨🇴 Unidad Central del Valle del Cauca allegedly breached, 4.1K+ individuals affected

Unidad Central del Valle del Cauca (UCEVA), a public higher education institution in Colombia, is named in a cybercrime forum post where a threat actor claims to have obtained student PII, staff account information, internal documents and data from exposed university systems.

Claimed exposure

• 4,090 student records
• Institutional email addresses
• Colombian CC/TI identification numbers
• Dates of birth, including records tied to minors
• 20 WordPress administrative and staff accounts
• 2,910 internal documents
• Contracts, payroll records and academic documents
• 36+ election and voter-related documents
• WordPress, OJS and Koha system information
• Three allegedly exposed vulnerabilities

The actor claims the exposed records affect more than 4,100 individuals, including students, faculty, administrative staff and contractors.

The data is advertised in CSV, JSON, HTML and XML formats, with samples and a download link published in the forum post.

The breach claim, exposed data and scope have not been independently verified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
🚨🇺🇸 Miami-Dade County government data allegedly breached, 1.9M records offered for sale

Miami-Dade County, Florida’s most populous county, is named in a cybercrime forum post where a threat actor claims to have compromised an official government endpoint and extracted approximately 1.9 million records spanning property, utility, business and permitting systems.

Claimed exposure

• 943,533 property assessor records
• 500,034 water and sewer customer records
• 262,243 building permit records
• 193,852 business tax records
• 670,105 person-to-property ownership records
• 1.18M+ recorded property sale records
• 79,786 properties valued above $1 million
• 165,860 business contact records
• Names, addresses, phone numbers and email addresses
• Property values, ownership and sale history
• Utility account and meter information
• Contractor names and license numbers
• Business ownership and occupation data
• 83 dangerous-dog records containing owner and animal information

The actor claims the data was obtained on September 7, 2026 and consists of five primary datasets plus four additional tables.

The listing is advertised as an exclusive sale for $250 in XMR, with the seller claiming they will delete their copies after the buyer confirms receipt.

The breach claim, exposed data and scope have not been independently verified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
🚨 🇺🇸 Initial Access: US Health Sector

A threat actor is advertising access to an unnamed U.S. healthcare organization reportedly generating $4.8B in revenue.

The advertised access includes Epic Hyperdrive, Epic Hyperspace, MultiPatient View CRM, RDP Domain Admin, and backdoor access to a computer.

This claim is currently unverified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
🚨🇹🇷 Alfred dataset allegedly offered for sale, hundreds of thousands of customer records claimed

Alfred, a Turkish services company, is named in a cybercrime forum post where a threat actor claims to be selling a dataset containing customer, employee and sales information spanning 2012 to 2026.

Claimed exposure

• 292,000 customer records
• 199,000 additional client records
• 71,000 service-user records
• 1,000 employee records
• Full names and email addresses
• Phone numbers
• Gender and registration dates
• Vehicle license plates and car brands
• Driver information
• Promotion codes and pricing data
• Employee names and specialties
• Sales documents from 2012–2026

The actor published multiple samples of the allegedly exposed data and says the sale price is negotiable.

The breach claim, exposed data and scope have not been independently verified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨 🇮🇩 Initial Access: Indonesian Insurance Company

A threat actor is advertising access to an unnamed Indonesian insurance company reportedly generating $100M–$250M in revenue, with a network of approximately 1,000 hosts.

The advertised access includes WireGuard VPN access with SYSTEM privileges. Bitdefender GravityZone is reportedly deployed in the environment.

The listing is priced at 0.00930216 BTC or $732.75 USD.

This claim is currently unverified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
If losing it would devastate you... BACK IT UP.

Photos. Videos. Documents. Work.

If you only have one copy, you don't have a backup.
4
Media is too big
VIEW IN TELEGRAM
Another good banger.

311 - Come Original

Song Released: October 12, 1999
🔥2