🔪 That Dark Web Guy - Part 3 🔪
⚠️ Avoid using DarkMatter Market. The admin has not provided any new information in the past 24 hours. The market may be in the process of conducting an exit scam. Dread: https://dreadytofatroptsdj6io7l3xptbet6onoyno2yv7jicoxknyazubrad[.]onion/post/76b7ab226321fdbcab2e
All DarkMatter onions are being monitored by the FBI Watchdog script. https://t.me/FBI_Watchdog
Telegram
FBI Watchdog Alerts by Dark Web Informer
Website: darkwebinformer.com
Website Pricing (Includes Crypto): darkwebinformer.com/pricing
Socials: darkwebinformer.com/socials
API: https://darkwebinformer.com/api-details
Main: https://t.me/SliceForLifeee
Website Pricing (Includes Crypto): darkwebinformer.com/pricing
Socials: darkwebinformer.com/socials
API: https://darkwebinformer.com/api-details
Main: https://t.me/SliceForLifeee
🚨🇧🇷 Cia de Trade allegedly breached, 965 staff credentials and Philip Morris campaign data claimed
⠀
Cia de Trade, a Brazilian trade marketing agency and web host involved in Philip Morris International brand campaigns, is named in a cybercrime forum post where a threat actor claims to have compromised internal systems and obtained staff, campaign and HR data.
⠀
Claimed exposure
⠀
• 965 staff login accounts with MD5-salted password hashes
• 379 accounts using @pmi.com email addresses
• 27 accounts using @contracted.pmi.com addresses
• 87,762 access-log records containing IPs, page URIs and timestamps
• 12,293 session records
• 8,093 distinct campaign session tokens
• 956 client records and 156 client logins
• Multiple MySQL database dumps
• 215 MB Outlook PST archive
• Brazilian employee paystubs containing HR PII
• 46 keys identifying client brands
⠀
The actor claims the compromised infrastructure supported Philip Morris campaigns and the Dapal loyalty platform, alongside work involving other major brands and organizations.
⠀
The post also claims credentials associated with Dapal and several other corporate domains were present in the exposed account data.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
⠀
Cia de Trade, a Brazilian trade marketing agency and web host involved in Philip Morris International brand campaigns, is named in a cybercrime forum post where a threat actor claims to have compromised internal systems and obtained staff, campaign and HR data.
⠀
Claimed exposure
⠀
• 965 staff login accounts with MD5-salted password hashes
• 379 accounts using @pmi.com email addresses
• 27 accounts using @contracted.pmi.com addresses
• 87,762 access-log records containing IPs, page URIs and timestamps
• 12,293 session records
• 8,093 distinct campaign session tokens
• 956 client records and 156 client logins
• Multiple MySQL database dumps
• 215 MB Outlook PST archive
• Brazilian employee paystubs containing HR PII
• 46 keys identifying client brands
⠀
The actor claims the compromised infrastructure supported Philip Morris campaigns and the Dapal loyalty platform, alongside work involving other major brands and organizations.
⠀
The post also claims credentials associated with Dapal and several other corporate domains were present in the exposed account data.
⠀
The breach claim, exposed data and scope have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
🚨 GirlsChase.TV dataset allegedly offered on a cybercrime forum
⠀
GirlsChase.TV is a platform focused on dating, social skills, and relationship advice.
⠀
A threat actor using the handle zooz claims to possess the platform’s full dataset and published a sample containing customer, subscription, and payment-related records.
⠀
Sample data includes:
⠀
• Customer email addresses
• Stripe and PayPal references
• Customer and subscription IDs
• Payment amounts and currencies
• Transaction timestamps
• Subscription and payment status information
⠀
The claim and full scope of the exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
GirlsChase.TV is a platform focused on dating, social skills, and relationship advice.
⠀
A threat actor using the handle zooz claims to possess the platform’s full dataset and published a sample containing customer, subscription, and payment-related records.
⠀
Sample data includes:
⠀
• Customer email addresses
• Stripe and PayPal references
• Customer and subscription IDs
• Payment amounts and currencies
• Transaction timestamps
• Subscription and payment status information
⠀
The claim and full scope of the exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
‼️ Security researcher Nightmare Eclipse has created a new GitHub repository called ShieldCrash, which is described as a Windows Defender zero-day vulnerability.
Currently, the repository is empty.
GitHub: https://github.com/MSNightmare/ShieldCrash
Currently, the repository is empty.
GitHub: https://github.com/MSNightmare/ShieldCrash
🔥4
OSIRIS: Open Source Intelligence & Reconnaissance Integrated System
Live Demo: https://osirisai.live/
GitHub: https://github.com/simplifaisoul/osiris
Osiris is a production-grade OSINT platform designed to deliver real-time situational awareness across multiple intelligence domains. Built with Next.js 16 and MapLibre GL, it uses WebGL rendering to maintain smooth 60 FPS performance, even when visualizing thousands of entities simultaneously.
Live Demo: https://osirisai.live/
GitHub: https://github.com/simplifaisoul/osiris
Osiris is a production-grade OSINT platform designed to deliver real-time situational awareness across multiple intelligence domains. Built with Next.js 16 and MapLibre GL, it uses WebGL rendering to maintain smooth 60 FPS performance, even when visualizing thousands of entities simultaneously.
🔪 That Dark Web Guy - Part 3 🔪
‼️ Security researcher Nightmare Eclipse has created a new GitHub repository called ShieldCrash, which is described as a Windows Defender zero-day vulnerability. Currently, the repository is empty. GitHub: https://github.com/MSNightmare/ShieldCrash
The repository has been updated.
🔥1
🚨 Cybercrime forum member recruiting an Offensive Windows Developer
⠀
A forum member using the handle Lockdowneds is seeking a low-level Windows developer for offensive security tooling, with emphasis on Windows internals rather than standard application development.
⠀
Requested skills include:
⠀
• C/C++ and .NET
• Windows API and Windows Internals
• Portable Executable (PE) format
• Understanding AV/EDR detections
• Evasion techniques
• Low-level Windows development
• Custom offensive tooling
• Implant and loader development
⠀
Experience with reverse engineering, Red Team operations, and developing custom PoCs is listed as a major advantage.
⠀
The poster states they are not looking for someone who can simply compile existing PoCs, but rather a strong low-level developer capable of building custom Windows tooling from scratch.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
A forum member using the handle Lockdowneds is seeking a low-level Windows developer for offensive security tooling, with emphasis on Windows internals rather than standard application development.
⠀
Requested skills include:
⠀
• C/C++ and .NET
• Windows API and Windows Internals
• Portable Executable (PE) format
• Understanding AV/EDR detections
• Evasion techniques
• Low-level Windows development
• Custom offensive tooling
• Implant and loader development
⠀
Experience with reverse engineering, Red Team operations, and developing custom PoCs is listed as a major advantage.
⠀
The poster states they are not looking for someone who can simply compile existing PoCs, but rather a strong low-level developer capable of building custom Windows tooling from scratch.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
❤2
‼️ SafePay Ransomware claims 9 victims
🇵🇹 HBPro Informática e Serviços - A Portuguese IT and telecommunications company providing infrastructure, networking, cybersecurity, disaster recovery, printing, and technical support services.
🇪🇸 GSN Gestión - A Spanish property-management company specializing in the administration of residential communities, commercial properties, garages, and other real estate.
🇵🇭 Century Maritime Agencies (CENMAR) - A Philippine crewing and manning agency that recruits and supplies Filipino seafarers for international shipping companies.
🇪🇸 Gayafores - A Spanish ceramic manufacturer specializing in porcelain floor and wall tiles for residential and commercial markets.
🇮🇹 Assiprime - An Italian insurance and financial services company providing insurance brokerage, risk management, financing, and financial consulting.
🇦🇷 Fragancias Cannon - An Argentine fragrance company that develops, manufactures, and distributes perfumes, toiletries, and licensed fragrance brands.
🇦🇹 Municipality of Reichenau an der Rax - An Austrian municipal government providing public services and administration for the community of Reichenau an der Rax.
🇺🇸 Palmetto Eye Institute - A South Carolina ophthalmology practice specializing in cataract surgery, comprehensive eye care, and treatment of vision conditions.
🇨🇦 McNish Steel - An Edmonton-based steel company specializing in reinforcing steel fabrication, welded cages, anchor bolts, and other rebar products.
🇵🇹 HBPro Informática e Serviços - A Portuguese IT and telecommunications company providing infrastructure, networking, cybersecurity, disaster recovery, printing, and technical support services.
🇪🇸 GSN Gestión - A Spanish property-management company specializing in the administration of residential communities, commercial properties, garages, and other real estate.
🇵🇭 Century Maritime Agencies (CENMAR) - A Philippine crewing and manning agency that recruits and supplies Filipino seafarers for international shipping companies.
🇪🇸 Gayafores - A Spanish ceramic manufacturer specializing in porcelain floor and wall tiles for residential and commercial markets.
🇮🇹 Assiprime - An Italian insurance and financial services company providing insurance brokerage, risk management, financing, and financial consulting.
🇦🇷 Fragancias Cannon - An Argentine fragrance company that develops, manufactures, and distributes perfumes, toiletries, and licensed fragrance brands.
🇦🇹 Municipality of Reichenau an der Rax - An Austrian municipal government providing public services and administration for the community of Reichenau an der Rax.
🇺🇸 Palmetto Eye Institute - A South Carolina ophthalmology practice specializing in cataract surgery, comprehensive eye care, and treatment of vision conditions.
🇨🇦 McNish Steel - An Edmonton-based steel company specializing in reinforcing steel fabrication, welded cages, anchor bolts, and other rebar products.
‼️ Liquid Network provided an incident report update. The latest update is that 3,400 BTC has been returned, while roughly 598.5 BTC, worth about $47 million, remains with the "self-described" white-hat actors.
Liquid is still paused while Blockstream and federation members complete security work and prepare a coordinated restart. 👇
https://x.com/Liquid_BTC/status/2097404704028545175
Liquid is still paused while Blockstream and federation members complete security work and prepare a coordinated restart. 👇
https://x.com/Liquid_BTC/status/2097404704028545175
X (formerly Twitter)
Liquid Network 🌊 (@Liquid_BTC) on X
LIQUID NETWORK UPDATE: INCIDENT REPORT
Status as of September 8, 2026, 19:10 UTC
What Happened?
On September 6, 2026 at 15:53:10 UTC (Liquid block 4,050,336), a vulnerability in the open-source …
Status as of September 8, 2026, 19:10 UTC
What Happened?
On September 6, 2026 at 15:53:10 UTC (Liquid block 4,050,336), a vulnerability in the open-source …
❤1
Forwarded from Dark Web Informer - Private
Cybersecurity Incident Disclosure
Tue, 8 Sep 2026 16:29:11 EDT
A cybersecurity incident has been disclosed by Veradigm Inc., Inc CIK: 0001124804, Ticker: (https://www.google.com/search?q=%24None+ticker).
View SEC Filing
Tue, 8 Sep 2026 16:29:11 EDT
A cybersecurity incident has been disclosed by Veradigm Inc., Inc CIK: 0001124804, Ticker: (https://www.google.com/search?q=%24None+ticker).
View SEC Filing
Dark Web Informer - Private
Cybersecurity Incident Disclosure Tue, 8 Sep 2026 16:29:11 EDT A cybersecurity incident has been disclosed by Veradigm Inc., Inc CIK: 0001124804, Ticker: (https://www.google.com/search?q=%24None+ticker). View SEC Filing
X (formerly Twitter)
Dark Web Informer (@DarkWebInformer) on X
🚨 VERADIGM INC. has filed form 8-K due to a Cybersecurity incident
Incident: https://t.co/1W9ukJsvyq
"Veradigm Inc. (the “Company”) recently learned that one of its third-party vendors experien…
Incident: https://t.co/1W9ukJsvyq
"Veradigm Inc. (the “Company”) recently learned that one of its third-party vendors experien…
Forwarded from Dark Web Informer - Private
‼️ DOJ Press Release
━━━━━━━━━━━━━━━━━━━━━
Texas Couple Sentenced for Operating Website Selling Smuggled Pesticides and Veterinary Drugs
Full Press Release → justice.gov
━━━━━━━━━━━━━━━━━━━━━
🕵️ Dark Web Informer • DOJ Monitor
Note: DOJ articles that are not Cyber related will be removed manually.
━━━━━━━━━━━━━━━━━━━━━
Texas Couple Sentenced for Operating Website Selling Smuggled Pesticides and Veterinary Drugs
Full Press Release → justice.gov
━━━━━━━━━━━━━━━━━━━━━
🕵️ Dark Web Informer • DOJ Monitor
Note: DOJ articles that are not Cyber related will be removed manually.
Department of Justice
Texas Couple Sentenced for Operating Website Selling Smuggled Pesticides and Veterinary Drugs
Thao Duong and Lam Mai, a wife and husband from Garland, Texas, were sentenced today in federal court to charges stemming from their operation of a website selling veterinary drugs and pesticides smuggled into the United State from Mexico. Duong was sentenced…
🚨🇺🇸 2.7M-user dataset from U.S. social marketplace allegedly offered on a cybercrime forum
⠀
The listing describes the source as a U.S.-based social marketplace/network, though the specific platform is not identified in the post.
⠀
A threat actor using the handle KrebsonFanAccount claims to be selling a private dataset containing approximately 2.7 million users and published a sample of the purported records.
⠀
Claimed data includes:
⠀
• User IDs and usernames
• Password hashes
• Email addresses
• Display names
• Account registration dates
• User URLs
• Account status information
• Activation keys
• Spam/deletion status fields
⠀
The actor states the passwords use portable PHP password hashing and published a 1,000-record sample as proof of the claim.
⠀
The claim, source of the dataset, and total number of affected records have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
The listing describes the source as a U.S.-based social marketplace/network, though the specific platform is not identified in the post.
⠀
A threat actor using the handle KrebsonFanAccount claims to be selling a private dataset containing approximately 2.7 million users and published a sample of the purported records.
⠀
Claimed data includes:
⠀
• User IDs and usernames
• Password hashes
• Email addresses
• Display names
• Account registration dates
• User URLs
• Account status information
• Activation keys
• Spam/deletion status fields
⠀
The actor states the passwords use portable PHP password hashing and published a 1,000-record sample as proof of the claim.
⠀
The claim, source of the dataset, and total number of affected records have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
😁1
🚨🇧🇷 IME Events dataset containing 502K records allegedly offered on a cybercrime forum
⠀
IME Events is a Brazilian online platform used to organize and host online events and scientific congresses.
⠀
A threat actor using the handle Sorb claims to be selling the platform’s full dataset in CSV format, containing approximately 502,000 records of personal information.
⠀
Claimed data includes:
⠀
• 498,000 unique email addresses
• 456,000 unique phone numbers
• 451,000 unique document numbers
• Full names
• bcrypt password hashes
• 16,000 unique CPF/CNPJ numbers
• 10,000 dates of birth
• 17,000 addresses
⠀
The actor is asking $500 for the dataset, states that escrow is accepted, and claims it will be sold exclusively to a single buyer. A sample was also published.
⠀
The claim and full scope of the exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
⠀
IME Events is a Brazilian online platform used to organize and host online events and scientific congresses.
⠀
A threat actor using the handle Sorb claims to be selling the platform’s full dataset in CSV format, containing approximately 502,000 records of personal information.
⠀
Claimed data includes:
⠀
• 498,000 unique email addresses
• 456,000 unique phone numbers
• 451,000 unique document numbers
• Full names
• bcrypt password hashes
• 16,000 unique CPF/CNPJ numbers
• 10,000 dates of birth
• 17,000 addresses
⠀
The actor is asking $500 for the dataset, states that escrow is accepted, and claims it will be sold exclusively to a single buyer. A sample was also published.
⠀
The claim and full scope of the exposed data have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
🚨🇧🇷 Medgrupo and FUSVE patient data allegedly leaked and offered on a cybercrime forum
⠀
Medgrupo is a Brazilian medical education company, while FUSVE operates educational and healthcare institutions in Rio de Janeiro state, including Vassouras University Hospital.
⠀
A threat actor using the handle jacksenseofrejection claims to possess hundreds of thousands of sensitive and financial records associated with Medgrupo clients and students, along with 70,963 PDF medical imaging reports involving patients of Vassouras University Hospital.
⠀
Claimed exposed data includes:
⠀
• Client and student financial records
• Patient names
• Patient ages
• Referring physician information
• Medical imaging reports
• Examination dates
• Clinical indications
• Other sensitive medical information
⠀
The actor published samples and is asking approximately 1.25 BTC for the purported data, with an offer deadline of September 15, 2026.
⠀
The breach claim, origin of the data, and full scope of the exposure have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
⠀
Medgrupo is a Brazilian medical education company, while FUSVE operates educational and healthcare institutions in Rio de Janeiro state, including Vassouras University Hospital.
⠀
A threat actor using the handle jacksenseofrejection claims to possess hundreds of thousands of sensitive and financial records associated with Medgrupo clients and students, along with 70,963 PDF medical imaging reports involving patients of Vassouras University Hospital.
⠀
Claimed exposed data includes:
⠀
• Client and student financial records
• Patient names
• Patient ages
• Referring physician information
• Medical imaging reports
• Examination dates
• Clinical indications
• Other sensitive medical information
⠀
The actor published samples and is asking approximately 1.25 BTC for the purported data, with an offer deadline of September 15, 2026.
⠀
The breach claim, origin of the data, and full scope of the exposure have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
🚨🇮🇩 City of Balikpapan SIMPATDA database allegedly breached
⠀
Balikpapan is a major city in East Kalimantan, Indonesia, whose municipal government manages local public services, taxation, and regional administration.
⠀
A cybercrime forum actor using the handle vicmeow claims to have breached a SIMPATDA database, a system associated with managing local government revenue and taxation data.
⠀
Claimed exposed data includes:
⠀
• Resident and taxpayer information
• Tax identification and payment records
• Names and addresses
• Billing and payment status
• Tax periods and due dates
• Property and land-related records
• Administrative and operator information
• Multiple database backups and internal tables
⠀
The actor claims the leak contains tax information for residents of Balikpapan and published a downloadable archive along with sample database records.
⠀
The breach claim, source of the data, and full scope of the exposure have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
Balikpapan is a major city in East Kalimantan, Indonesia, whose municipal government manages local public services, taxation, and regional administration.
⠀
A cybercrime forum actor using the handle vicmeow claims to have breached a SIMPATDA database, a system associated with managing local government revenue and taxation data.
⠀
Claimed exposed data includes:
⠀
• Resident and taxpayer information
• Tax identification and payment records
• Names and addresses
• Billing and payment status
• Tax periods and due dates
• Property and land-related records
• Administrative and operator information
• Multiple database backups and internal tables
⠀
The actor claims the leak contains tax information for residents of Balikpapan and published a downloadable archive along with sample database records.
⠀
The breach claim, source of the data, and full scope of the exposure have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇨🇴 Santiago de Cali municipal government dataset containing 600K+ records allegedly leaked
⠀
The Alcaldía de Santiago de Cali is the municipal government of Cali, Colombia, responsible for local administration, public services, taxation, and city finances.
⠀
A cybercrime forum actor using the handle arcepah claims to have obtained a dataset associated with the municipality containing more than 600,000 records and over 60 GB of data from 2024 through 2026.
⠀
Claimed data includes:
⠀
• Tax and public-finance records
• Business and taxpayer names
• NIT tax identification numbers
• Addresses
• Phone numbers
• Email addresses
• Tax declaration and filing periods
• Withholding tax information
• ICA municipal tax records
• Taxable amounts and withholding totals
• Penalties and interest information
⠀
The published sample appears to contain records associated with the municipality’s public finance and tax management operations.
⠀
The breach claim, source of the data, and full scope of the exposure have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
⠀
The Alcaldía de Santiago de Cali is the municipal government of Cali, Colombia, responsible for local administration, public services, taxation, and city finances.
⠀
A cybercrime forum actor using the handle arcepah claims to have obtained a dataset associated with the municipality containing more than 600,000 records and over 60 GB of data from 2024 through 2026.
⠀
Claimed data includes:
⠀
• Tax and public-finance records
• Business and taxpayer names
• NIT tax identification numbers
• Addresses
• Phone numbers
• Email addresses
• Tax declaration and filing periods
• Withholding tax information
• ICA municipal tax records
• Taxable amounts and withholding totals
• Penalties and interest information
⠀
The published sample appears to contain records associated with the municipality’s public finance and tax management operations.
⠀
The breach claim, source of the data, and full scope of the exposure have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
Media is too big
VIEW IN TELEGRAM
Cyberattacks, data encryption, extortion - How cybercriminals operate
Video Credit: youtube.com/@DWDocumentary
Video Credit: youtube.com/@DWDocumentary
‼️ New Dark Web Informer Blog Post!
Title: Blossom Health Records on 29,600 Mental Health Patients Offered for Sale
Link: https://darkwebinformer.com/blossom-health-records-on-29-600-mental-health-patients-offered-for-sale/
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Title: Blossom Health Records on 29,600 Mental Health Patients Offered for Sale
Link: https://darkwebinformer.com/blossom-health-records-on-29-600-mental-health-patients-offered-for-sale/
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Dark Web Informer
Blossom Health Records on 29,600 Mental Health Patients Offered for Sale
A forum actor posting as 2019 is selling what they describe as the patient database of Blossom Health, a virtual psychiatric care platform in the United States that provides online therapy and medication management for conditions including anxiety, depression…