🇺🇸 Alleged Breach Debt Analysis and Restructuring and Financial Services
A member of a popular dark web forum has claimed that websites such as debtsolutionnetwork[.]com and turbodebt[.]com have put up for sale a database of 3.9 million potential customers derived from their CRM systems and reportedly associated with debt analysis and financial services in the US. The dump, allegedly made about three months ago, contains sensitive customer information and operational data related to financial restructuring and debt solutions.
#Breach #DataLeak #UnitedStates #DarkWeb
Global 🌍 - https://t.co/Ngq3lner9x Data Allegedly Leaked
A data leak has reportedly affected https://t.co/Ngq3lner9x, exposing sensitive user information. This breach raises serious concerns about the security of customer data on one of the world's largest e-commerce platforms.
https://t.co/FdHJuj8adP
#cybersecurity #databreach #Amazon #privacy
🚨Meduza 2.10 Update Announced
Meduza Stealer first appeared for sale on a Russian-speaking dark web forum in June 2023. Written in C++, the malware quickly gained popularity among cybercriminals thanks to its originality, adaptability, and competitive pricing model.
Named after its creator's nickname ‘Meduza’, the malware infects Windows system files and steals sensitive information from browser extensions such as cookies, logins, password managers, 2FA services and cryptocurrency wallets. Today, Meduza announced version 2.10 update. The new updates are as follows:
Build Changes:
- Stub cleanup with stable values.
- Console notification when there is a duplicate log.
Dashboard Changes:
- Ability to customize messages sent to Telegram with log information,
- Ability to add an icon to a file in the panel,
- Optimising the load of the panel on the server,
- Improving the safety mechanism on the panel,
- It is claimed that new features have been added on the ‘Tools’ page, such as increasing the maximum size of transferred files.
#Malware #Stealer #CyberSecurity #ThreatIntelligence #Darkweb
New Ransom Cortex leak site
1 victim posted
“Practical solutions for high-level individuals and companies.”
/gg6owuhu72muoelkt2msjrp2llwr2on5634sk5v2xefzmobvryywbhid[.]onion
⚠️Email Bomber⚠️This is Nuker. It came out on the forum Cracked a couple days ago. The creator describes it as having a Clean UI, Easy to use, Works on Gmail, and is No stacking.
🚨UNVERIFIED 0-DAY🚨A threat actor is allegedly selling a zero-day vulnerability for VirtualBox VME, which works on every Windows version. It has been tested on 21H2, 22H2, 23H2, and 24H2. Price: $50,000
🚨 The Allegedly Most Powerful Stealer: Soul Stealer
An open source stealer tool called "Soul Stealer" was shared on GitHub. Developed in Python, Soul Stealer was written in 2024.
Features:
- Steal Steam Credentials, Riot games, Roblox, Minecraft session, Epic games, uplay, Growtopia
- Bypass Better Discord and Discord Token Protector
- Special icon
- Website Cookie Information (Spotify, Roblox, Tiktok, Guilded, Patreon, Twitch, Instagram, Twitter)
- System Information Player: Play graphics card name (and other data), processor name (and other data)
- Steal Webcam Screenshot
- Steal Wifi Password
- Cookie Thief
- Telegram Session stealer
- Password Thief
- Autofill Player: Play autofill of all browsers
- Credit card thief
- Clipboard Copy: Copies whatever is on the target's clipboard
- Startup Running: Starts every time the target's machine starts
- Crypto Wallet Stealer ( Zcash, Armory, Bytecoin, Jaxx, Exodus,Ethereum, Electrum, AtomicWallet, Guarda, Coinomi, MetaMask )
- Private Information Thief: Takes Discord token, password, phone number, email, username and public username and HQ friends, HQ Guilds, user link and about me user modify
- Discord Injection
- Anti-VM
- Screenshot:Takes a screenshot of the target's screen
- Browser History Player: Plays history searches from multiple browsers (Chrome, Opera/GX, Firefox, Edge, Safari, Internet Explorer, Brave)
IOC Information:
MD5: 1a952d2ee32c3c81a154946c70f66fa8
SHA-1: 175203103856deec4ce8cc20feeb322ec6b41a86
SHA-256: d49d6f48c8f34584d09ea6ece0a9bf2196a40f090aa6a195f95bc720cecde3f5
#META stealer v5.0 is actually released after the previous announcement.
Featuring TLS encryption between build and C2 panel (as seen in other stealers like Lumma or Vidar in recent updates), among other new and fancy features.
Check everything 👇