#DarkForums
El 24 de agosto de 2026, el grupo Jabaroot publicó en DarkForums una base de datos que supuestamente contiene 70,000 registros pertenecientes a la DGST y la DGSN de Marruecos. Esta filtración está vinculada a la operación OP_CEUTA y a la crisis migratoria en Ceuta.
El usuario Jabaroot ha publicado en el foro DarkForums una base de datos que contiene información sobre 70.000 agentes del Directorio General de Vigilancia Territorial (DGST) de Marruecos.
August 24, 2026 at 7:02 PM
El usuario Jabaroot ha publicado en el foro DarkForums una base de datos que contiene información sobre 70.000 agentes del Directorio General de Vigilancia Territorial (DGST) de Marruecos.
August 24, 2026 at 6:50 PM
📢 ByteToBreach compromet l'Államkincstár hongrois via WebLogic RCE et AD trust

Analyse publiée le 3 août 2026 sur CyberThreat Report par Ferenc Frész, basée sur une annonce de vente de données apparue sur le forum…

🟡 vérification factuelle moyenne
#ByteToBreach #WebLogicRCE #Cyberveille
ByteToBreach compromet l'Államkincstár hongrois via WebLogic RCE et AD trust
Analyse publiée le 3 août 2026 sur CyberThreat Report par Ferenc Frész, basée sur une annonce de vente de données apparue sur le forum DarkForums lors du premier week-end d'août 2026, sous le titre The Magyar Conquest.
cyberveille.ch
August 8, 2026 at 1:30 PM
Onthulling: complexe operatie op dark web rondom militaire informatie

Onderzoekers hebben sporen ontdekt op het dark web die mogelijk wijzen op de verkoop van gevoelige informatie van militaire en overheidsinstanties uit Pakistan, Bangladesh en de Verenigde Staten. De initiële aa...
Onthulling: complexe operatie op dark web rondom militaire informatie
Onderzoekers hebben sporen ontdekt op het dark web die mogelijk wijzen op de verkoop van gevoelige informatie van militaire en overheidsinstanties uit Pakistan, Bangladesh en de Verenigde Staten. De initiële aanwijzing kwam van een bericht op DarkForums, waarin een document over een dronepartnerschap tussen Turkije en Pakistan werd aangeprezen, met vermelding van technologieoverdracht, training, gezamenlijk onderzoek en inkoop door Baykar Teknoloji en Pakistan's National Aerospace Science and Technology Park. Het bericht op DarkForums bood geen duidelijkheid over de herkomst, authenticiteit of een mogelijke hack van het document. Echter, een contactidentificatie uit dit bericht bleek opnieu...
newsfacts.info
August 3, 2026 at 11:31 AM
DarkForums Regains Control of Original Domain as Operators Announce Infrastructure Recovery: Dark Web recent claims + Video

DarkForums Regains Control of Original Domain as Operators Announce Infrastructure Recovery: Dark Web recent claims Introduction The underground cybercrime ecosystem is…
DarkForums Regains Control of Original Domain as Operators Announce Infrastructure Recovery: Dark Web recent claims + Video
DarkForums Regains Control of Original Domain as Operators Announce Infrastructure Recovery: Dark Web recent claims Introduction The underground cybercrime ecosystem is constantly shifting as administrators of illicit forums battle domain seizures, infrastructure disruptions, denial-of-service attacks, and operational security challenges. Every domain migration or recovery may appear insignificant on the surface, but these changes often reveal valuable intelligence about how cybercriminal platforms adapt to survive increasing pressure from law enforcement agencies and cybersecurity researchers.
undercodenews.com
June 27, 2026 at 8:10 AM
Alleged 20,000 Windows Zero-Day Appears on Dark Web Marketplace as Hackers Target Privilege Escalation Flaws: Dark Web recent claims + Video

Introduction: A New Warning Sign From the Underground Cybercrime Economy The underground cybercrime world continues to reveal how valuable advanced software…
Alleged 20,000 Windows Zero-Day Appears on Dark Web Marketplace as Hackers Target Privilege Escalation Flaws: Dark Web recent claims + Video
Introduction: A New Warning Sign From the Underground Cybercrime Economy The underground cybercrime world continues to reveal how valuable advanced software vulnerabilities have become. A newly surfaced post from a dark web intelligence monitoring account claims that a threat actor is attempting to sell a Windows Local Privilege Escalation (LPE) zero-day exploit for $120,000 on the DarkForums marketplace. The alleged vulnerability is described as a powerful Windows flaw capable of allowing attackers to gain SYSTEM-level privileges, the highest level of access available inside the operating system.
undercodenews.com
June 24, 2026 at 2:38 PM
🇵🇪 #Peru #Healthcare #Breach: Actor 'Kazu' allegedly leaked a DB from Centro Médico Especializado OSI. CRITICAL severity, fresh <1h. Source: darkforums-fid81-rss.
#cti #databreach #healthcare
June 24, 2026 at 6:18 AM
🇻🇪 CRITICAL: Actor 'cantpwn' allegedly leaked DB of Banavih (Banco Nacional de Vivienda y Hábitat), a Venezuelan gov't housing bank. Credentials & financial data exposed. Source: darkforums, <1h old.
#cti #databreach #finance #government
June 23, 2026 at 10:17 PM
🇺🇸 Alleged breach of myarticles.io USA website DB by actor Vandal. Reportedly includes healthcare credentials & source code. Posted 7h ago on darkforums. Severity: MEDIUM.
#cti #databreach #healthcare
June 23, 2026 at 2:59 AM
🇨🇴 Alleged breach of Venezuela's Ministry of Penitentiary Services by actor GordonFreeman. Reportedly 22.9K images + data leaked. Medium severity, fresh <1h. Source: darkforums.
#cti #databreach #finance #government
June 22, 2026 at 6:15 PM
🇨🇴 Actor 'mosad' allegedly leaked a DARPA AI/autonomy threat analysis report (2026). Full tech report posted on darkforums 16h ago. MEDIUM severity. #government #finance
#cti #databreach #finance #government
June 22, 2026 at 4:34 PM
DarkForums Jabber Server Exposes Its Real IP Address

Even services built for private conversation sometimes betray themselves. The giveaway is not the content of the messages. Instead, it is the ordinary network infrastructure behind them. Analysts at Covert Security found that the DarkForums…
DarkForums Jabber Server Exposes Its Real IP Address
Even services built for private conversation sometimes betray themselves. The giveaway is not the content of the messages. Instead, it is the ordinary network infrastructure behind them. Analysts at Covert Security found that the DarkForums Jabber server does not run as a hidden Tor service. Rather, it sits on a normal public IP address. As a result, standard internet-infrastructure search tools can find it with ease.
meterpreter.org
June 22, 2026 at 9:11 AM
🇨🇴 #CRITICAL: Colombian healthcare DB allegedly leaked by Kazu. 2.3TB, 4.5M files from SaludTools system. Fresh breach, 7h ago. Source: darkforums-fid81-rss.
#cti #databreach #healthcare
June 22, 2026 at 7:20 AM
🇪🇸 CRITICAL: tellmebye.com DB leaked in Spain — 1.5M lines with IBAN, DOB, DNI, phone numbers. Actor Sophia01 allegedly selling fresh healthcare credentials. Reported 12h ago via darkforums.
#cti #databreach #healthcare
June 21, 2026 at 5:59 PM
🇪🇸 CRITICAL: helity.es Spain 2M lines DB leaked (DNI included). Actor Sophia01 allegedly posted fresh database on darkforums. Government/finance data exposed. Monitor for credential abuse.
#cti #databreach #finance #government
June 21, 2026 at 5:58 PM
🇹🇳 Tunisia gov DB leak allegedly from mfpe.gov.tn, claimed by actor BigBrother. Reposted on darkforums ~19h ago. MEDIUM severity.
#cti #databreach #government
June 21, 2026 at 4:55 AM
🇹🇳 Tunisia: Actor BigBrother allegedly leaked data from Adex.tn (DB). Reposted on darkforums ~19h ago. MEDIUM severity.
#cti #databreach
June 21, 2026 at 4:55 AM
🇶🇦 Alleged DB leak of 1,900X Lekhwiya (Qatar Internal Security Forces) personnel data. Actor BigBrother reportedly posted on darkforums 19h ago. MEDIUM severity. Source: darkforums-fid81-rss.
#cti #databreach #government
June 21, 2026 at 4:55 AM
🇨🇴 Actor BigBrother allegedly leaked a DB from Ut.edu.sa (Saudi education org). Reported 18h ago, MEDIUM severity. Source: darkforums-fid81-rss.
#cti #databreach
June 21, 2026 at 4:55 AM
🇨🇴 Alleged DB leak of DW.com (Germany) posted by BigBrother. Reportedly a repost from 18h ago. MEDIUM severity. Source: darkforums-fid81-rss.
#cti #databreach
June 21, 2026 at 4:55 AM
🇰🇷 Coupang South Korea DB allegedly leaked by actor max987. Fresh dump, critical severity, shared 18h ago on darkforums. Access reportedly available.
#cti #databreach
June 21, 2026 at 4:55 AM
🇳🇱 CRITICAL: Eurail/Interrail DB allegedly leaked by actor max987. Source code and database reportedly exposed 18h ago on darkforums. High impact for rail pass users.
#cti #databreach
June 21, 2026 at 4:55 AM