One guy. Global cybercrime. Tracked so you don't have to. Ransomware, data breaches, dark web activity, darknet markets, IOCs & emerging threats. Stay informed!
🚨 Instagram had an exploit that allowed you to use Meta AI to reset passwords to accounts with no MFA on them. The exploit was patched a short time ago.
🚨🇲🇽 A threat actor going by MagoSpeak is distributing a dataset tied to AT&T customers in Zacatecas, Mexico, claiming 8,451 records.
What the seller claims is inside:
• Full names (first name, paternal and maternal surnames)
• Phone numbers
• RFC (tax ID)
• Street
I am in the process of finalizing the template that will be used for the Threat Surface Sources that paid subscribers have access to. The first category to be updated will be "New Darknet Markets." I have a couple things I need to finish, but this is how it will likely look. This
Bruh wtf?
🚨🇫🇷 A user on Dread is soliciting violence-for-hire, asking what people would charge to burn down someone's house or assault them in mainland France.
I am in the process of finalizing the template that will be used for the Threat Surface Sources that paid subscribers have access to. The first category to be updated will be "New Darknet Markets." I have a couple things I need to finish, but this is how it will likely look. This
Matkap: A Python OSINT tool for hunting exposed malicious Telegram bot tokens and chat IDs via FOFA and URLScan, then analyzing or exporting captured bot activity.
GitHub: github.com/0x6rss/matkap
Credit: @0x6rss
‼️ A threat actor is distributing a collection of free credit card details (card number, expiry date, and CVV) under BIN 434256, advertising 4,053 different cards.
💥 Stop guessing what's redacted. Paid subscribers see everything: darkwebinformer.com/pricing
🚨 A threat actor going by 0xulnar is distributing a dataset tied to FlexBooker (flexbooker.com), an online appointment-scheduling platform, advertising the full database.
What the seller claims is inside:
• Customer IDs and names (first and last)
• Email addresses
🚨🇫🇷 A threat actor going by rimkus11 is leaking a dataset tied to Cultura, a French retail chain, claiming over 2 million lines in JSON format.
What the seller claims is inside:
• Customer IDs and names (first and last)
• Email addresses
• Phone numbers
• Delivery
🚨🇨🇴 A threat actor going by Datavortex_BD is selling a dataset tied to Clínica San Rafael (clinicasanrafael.com) in Colombia, claiming roughly 7.16 million records with phones, emails, and full info.
What the seller claims is inside:
• Full names and document numbers
•
🚨🇯🇵 A threat actor going by Datavortex_BD is selling a dataset tied to Trust Growth (trust-growth.co.jp), a Japanese company, claiming 1,000,000 lines of full records.
What the seller claims is inside:
• First and last names
• Mobile phone and fax numbers
• Dates of
$1,000,000 ransom? 😂
🚨🇦🇫 A threat actor going by shinymontanna, claiming affiliation with the Mystery Hunters Group, is selling a dataset tied to the Ministry of Finance of Afghanistan (mof.gov.af) and related organizations, claiming roughly 1.4 TB of data