I have decided to drop out of the AI program at Amazon. I will not be making a Punky Duck series. Actions speak louder than words.
My intent was to showcase artists, both new and seasoned, both inside and outside the studios, driving this new tech.
My sincerest apology to those I upset. I promise to do better moving forward. Thank you for your patience with me. I will try harder.
A new ‘ADVENTURES OF TINTIN’ movie is officially happening.
Peter Jackson is currently writing the script with plans to direct the film himself.
(Source: @Variety)
🇨🇱 [INITIAL ACCESS SALE] ISP Control Panel + API Access (Chile)
A threat actor is advertising access to an ISP environment allegedly based in Chile, including control panel, network API, and WordPress configs.
Claimed access:
• Provider control panel access
• Network management API
• WordPress configuration files
• Payment gateway endpoints
• Admin-related data (email/phone/login references)
Data exposure:
• “Thousands” of customer records
– Names, contacts, addresses
– Billing and payment history
• Additional sensitive elements:
– JWT tokens
– Webhooks
– Database configuration (localhost scope)
💰 Sale details:
• Starting bid: $3,000
• Blitz price: $15,000
• Claimed business turnover: $150K/month
⚠️ Initial assessment:
• This is not just a data leak — this is ACTIVE ACCESS being sold
• Presence of:
– API access
– Control panel
– Payment integrations
→ indicates high-impact compromise potential
• JWT + webhook exposure suggests:
– Possible session/token abuse
– API abuse / service impersonation
🎯 Risk perspective:
• Immediate threats:
• Customer data exfiltration
• Service disruption
• Financial fraud via payment systems
• Full infrastructure takeover
• Long-term risk:
• Persistent access / backdoor retention
• Supply chain impact (if ISP clients affected)
🔐 Recommended actions:
• Treat as critical incident if confirmed
• Immediate:
• Revoke API tokens / JWT secrets
• Rotate all credentials
• Audit control panel access logs
• Investigate:
• Unauthorized API usage
• Webhook abuse patterns
• Segment and isolate affected systems
Current status: Unverified but HIGH RISK due to nature of access being sold
#DDW #Intelligence #CyberThreat #InitialAccess #DarkWeb #OSINT
🚨 UPDATE: INFRASTRUCTURE AND DATA – CHILE 🇨🇱🏛️📱
Persistent and critical activity targeting major telecommunications and public service entities in Chile has been detected. The threat actor "rutify" has published records suggesting the leakage of sensitive data over the past 48 hours.
�� Detected Today (04/30/2026):
https://t.co/aQpz6XhvkR: Initially classified as "Unclassified," suggesting a breach within the operator's portals or databases.
https://t.co/eBxO5M5Thu: Incident categorized under the "Technology" sector, indicating a compromise of the company's infrastructure.
📅 Detected Yesterday (04/29/2026):
REGISTRO CIVIL, CORREO, CLAVEÚNICA: This finding is of the utmost severity, as it alleges the compromise of citizen identity systems (ClaveÚnica), civil registries, and mail servers.
⚠️ Risk Implications (VECERT Intelligence)
Compromise of National Identity: The alleged compromise of the *ClaveÚnica* (Unique Key) system could allow malicious actors to impersonate citizens in order to conduct legal, banking, and healthcare-related procedures on government portals.
Exposure of Telecommunications Data: The breaches at Claro and WOM expose the private information of millions of users, facilitating SIM swapping attacks, extortion, and telephone fraud.
🛡️ Immediate Response Recommendations
🔒 Urgent *ClaveÚnica* Password Change: Citizens are advised to update their passwords on the official *ClaveÚnica* portal and enable additional authentication methods if available.
🔑 Telco System Audit: Claro and WOM are urged to conduct a forensic review of their customer databases and internal system access logs.
👁️ Email Monitoring: Due to the mention of "CORREO" (Mail), users should remain alert for highly sophisticated phishing attempts that leverage actual leaked data.
Monitor: https://t.co/wk9bZJ3laQ
#CyberSecurity #Chile #RegistroCivil #ClaveUnica #ClaroChile #WOM #DataBreach #CSIRT #VECERT #InfoSec #SinVerificador 🇨🇱🛡️⚠️🚨🔐
🚨 CRITICAL CYBERINTELLIGENCE ALERT: GOVERNMENT INFRASTRUCTURE COMPROMISE – GENERAL TREASURY OF THE REPUBLIC (CHILE) 🇨����🏛️🔐
A high-impact technical breach targeting the General Treasury of the Republic (TGR) has been detected. According to activity monitored on specialized Telegram channels, the threat actor "rutify" has compromised and distributed critical administrative access credentials.
🏢 Affected Entity: General Treasury of the Republic (TGR), Chile.
👤 Threat Actor: rutify.
🛠️ Attack Vector: The data was reportedly initially extracted from an Infostealer log (malware designed for credential theft).
🔐 Credential Status: It is reported that the threat actor changed the password following initial access to ensure persistence.
🔑 Compromised Asset: API Design and Management Dashboard.
📅 Date of Detection: April 30, 2026.
📊 Impact Analysis (Public Sector)
Access to the TGR's API management platform poses systemic risks:
Revenue Collection Area: The user account is associated with external revenue collection processes, thereby compromising the integrity of the State's payment processing services.
API Control: As this is a management platform, the attacker could gain visibility into sensitive endpoints, technical documentation, and authentication methods for national financial services.
🛡️ Immediate Response Recommendations
🔒 Recovery and Lockdown: The TGR is urged to perform a forced password reset on the affected account and audit any changes made to the permissions of the managed APIs.
👁️ Mandatory MFA: Implement Multi-Factor Authentication (MFA) for all external access points to render passwords obtained via malware useless.
Monitor: https://t.co/wk9bZJ2Nli
#CyberSecurity #Chile #TGR #Infostealer #TelegramLeak #APICompromise #CSIRT #VECERT #InfoSec #SinVerificador 🇨🇱🛡️⚠️🚨🔐