🔪 That Dark Web Guy - Part 3 🔪
4.91K subscribers
1.2K photos
68 videos
1.07K links
Download Telegram
Media is too big
VIEW IN TELEGRAM
Cyberattacks, data encryption, extortion - How cybercriminals operate

Video Credit: youtube.com/@DWDocumentary
🚨🇫🇷 Cyberattack disrupts municipal services in Le Tampon, Réunion

The City of Le Tampon says it was hit by a cyberattack Wednesday morning that is causing major disruption across several municipal services.

The municipality says employees are currently unable to carry out some services under normal operating conditions.

Technical teams are working to gradually restore affected systems and services.

The city says it will provide additional information once reliable details become available.

Source: https://www.linfo.re/la-reunion/societe/le-tampon-la-mairie-victime-d-une-cyber-attaque-les-services-municipaux-au-ralenti
🚨🇺🇸 Severe cyberattack shuts down Springfield Public Schools for second day

Springfield Public Schools in Massachusetts says an outside group gained access to its network and blocked access to systems required to operate the district.

One of the affected systems contains vital student medical records. School nurses currently cannot access information needed to dispense medication, check allergies, and address other health issues.

Officials classified the attack as a districtwide Level 4 severe cyber incident.

Schools were closed Tuesday and Wednesday and will not reopen until nurses can safely access the medical information they need.

Other affected systems include transportation and food-related information, while the district is also unable to use its normal email systems. Students and staff have been instructed to stay off SPS networks and district-issued devices.

The FBI, Massachusetts State Police, and local authorities are assisting.

Officials have not yet confirmed whether student or staff data was stolen, whether ransomware was deployed, or who is responsible.

Source: https://www.wwlp.com/news/crime/springfield-schools-closed-as-cyberattack-locks-access-to-student-medical-records/
😁1
🚨🇺🇸 Iran-linked hackers claim responsibility for major Texas AT&T outage. AT&T says it didn't.

APT IRAN, a group closely linked to the IRGC-affiliated CyberAv3ngers, claims it targeted telecommunications infrastructure and an unidentified water utility in Texas.

The claim followed a widespread AT&T outage on September 7 that generated thousands of reports across Houston, Spring, Dallas, Fort Worth, and Austin.

AT&T acknowledged a major fiber outage affecting more than 7,000 families.

However, AT&T disputes the hackers’ claim.

The company says it has found no evidence the outage resulted from a cyberattack and that its assessment indicates attempted cable theft caused the disruption.

APT IRAN previously threatened “critical events” targeting U.S. telecommunications, energy, and water infrastructure and has claimed involvement in recent attacks against U.S. water systems.

AT&T says service has been restored and its network continues to be monitored.

Source: https://www.yahoo.com/news/us/articles/iranian-hackers-claim-credit-massive-181942480.html
👀1
🚨🇮🇩 Wibuku dataset containing 200K registered users allegedly leaked on a cybercrime forum

Wibuku is an Indonesian digital platform and mobile app focused on anime, manga, light novels, and Japanese pop culture content.

A cybercrime forum actor using the handle L3yn claims to have leaked a dataset containing approximately 200,000 registered Wibuku users and published a sample of the purported records.

Claimed data includes:

• User IDs
• Gmail addresses
• Registered account information

The published sample shows user IDs paired with email addresses, while additional information.

The breach claim, record count, and full scope of the exposed data have not been independently verified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
‼️ LAPSUS$ Group has a new PGP signed message. Chapter II first victim is set to release in 3 days.

IOC: lapsus[.]ar[.]io

"When we completed our first operations, we demonstrated the triviality of modern enterprise defense systems. To TeamPCP, we send our sincere gratitude: your sacrifice provided us with the exact coverage we needed. We owe you all our gratitude for falling and taking on the acts of our cooperation. Retirement was only a temporary diversion born of pure boredom. Yet, driven by our enduring passion for the craft, we return not out of necessity, but to reclaim our dominance and for the love of the game. Our primary goal today is explicit: to openly challenge the FBI and the federal apparatus, proving once and for all that we operate completely above the law on this network. Corporate violations, corporate extortion and the generation of countless millions of dollars will continue unhindered, without any risk to ourselves, completely free. Prepare your incident response units and alert your federal managers. The clock is active."
2🔥1
🚨 ALERT: A third-party email provider used by Trezor was breached and used to send a phishing email titled “Critical Security Alert: STM32 Entropy Vulnerability.” The message is not legitimate, and recipients should not click any links.

The affected domain has been taken down, and an investigation is underway to determine how the attackers gained access to the legitimate domain.

https://x.com/DarkWebInformer/status/2097808647354990841?s=20
😭2
🚨🇨🇴 Optic Networks administrative access and customer dataset allegedly compromised

Optic Networks S.A.S. is a Colombian internet service provider operating primarily in Santa Marta, providing connectivity and telecommunications services to residential and business customers.

Actors identifying themselves as ZentinelTeam, including Keishell and noname8173, claim to have obtained administrative access to the provider’s management systems, giving them the ability to view customer and network information and modify service settings.

Claimed exposed data includes:

• Customer names
• National / government ID numbers
• Mobile phone numbers
• Email addresses
• Home and service addresses
• Geographic and location information
• IP addresses
• PPP/Hotspot usernames
• Internet service plans
• Account status
• Payment dates
• Current debt and balances
• Amounts due and next payment dates
• Service types and customer IDs

The actors also claim they intend to disrupt the provider’s internet service and leak its customer dataset. Screenshots were published as purported proof of access to customer records and network-management systems.

The intrusion claim, level of administrative access, and full scope of the exposed data have not been independently verified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇹🇭 Alizune database and source code allegedly leaked on a cybercrime forum

Alizune is a Thailand-based online marketplace selling digital accounts and other products.

Actors identifying themselves as ZentinelTeam, including Keishell and noname8173, claim to have obtained and leaked the platform’s database and website source code.

Claimed exposed data includes:

• Usernames and email addresses
• Phone numbers
• Password hashes
• Authentication and remember tokens
• Account and subscription information
• Customer addresses
• Customer GPS coordinates
• Customer notes
• Outstanding balances and amounts owed
• Supplier names, phone numbers, and addresses
• Transaction amounts
• Income and expense records
• Sales and purchase information
• Invoice numbers and references
• Payment-related information
• Admin account email and password hash
• Google Maps API key
• Payment account and mobile numbers
• System configuration and business settings

The actors published screenshots showing what they claim are database records and access to the website’s source-code files as proof of the intrusion.

The breach claim and full scope of the exposed data have not been independently verified.

💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
________________________________________
Main Channel: https://t.me/SliceForLifeee
Backup Channel: https://t.me/SliceForLifeeee
Telegram CVE Feed: https://t.me/DWI_CVE_Alerts
FBI Watchdog Alerts: https://t.me/FBI_Watchdog
Website: https://darkwebinformer.com
Pricing (Includes Crypto): https://darkwebinformer.com/pricing
API: https://darkwebinformer.com/api-details
Donations: https://darkwebinformer.com/donations
Socials: https://darkwebinformer.com/socials
New PwnForums logo
3🤔2