🚨 THREAD: Crypto users — stay alert. Phishing attacks are on the rise, and people are losing funds daily. Here’s what you need to watch out for 👇
1/ Scammers create fake links that look identical to legit platforms (wallets, exchanges, airdrops). One wrong click = full access to your funds.
2/ NEVER click links sent via DMs, emails, or random comments — even if it looks like it’s from a trusted source.
3/ Always double-check URLs. Look closely for slight misspellings or extra characters. Example: “https://t.co/z7vHVqTTPE” ≠ official site.
4/ Bookmark official crypto websites and only access them through your saved links. Don’t rely on search results alone.
5/ Avoid connecting your wallet to unknown or unverified sites. A single approval can drain your assets instantly.
6/ Turn on 2FA and use hardware wallets for extra protection. Security should never be optional.
7/ If you’ve already clicked a suspicious link:
– Disconnect your wallet immediately
– Revoke permissions
– Move funds to a secure wallet ASAP
8/ If it sounds too good to be true (free airdrops, giveaways, urgent recovery messages), it probably is.
Stay sharp. In crypto, YOU are your own bank — security is your responsibility. 🔐
RT to spread awareness. Someone might need to see this today.
⚠️ Splunk Enterprise Pre-Auth RCE Chain Exposes Database With Zero Authentication
Source: https://t.co/carVCWzy8k
A critical vulnerability chain in Splunk Enterprise has been disclosed, enabling unauthenticated attackers to achieve remote code execution (RCE) through a misconfigured PostgreSQL sidecar service.
Tracked as CVE-2026-20253, the flaw has a CVSS score of 9.8 and affects Splunk Enterprise 10 and later. The issue originates from the PostgreSQL Sidecar Service, an internal component introduced in newer Splunk versions.
While this service is not always enabled in on-premise deployments, it is active by default in Splunk Enterprise on AWS, making cloud deployments particularly exposed out of the box.
#cybersecuritynews
New NGO FAFO report: 16 of their comrades have already been convicted. They thought the arrests were over.
Texas then indicted three more alleged members of the North Texas Antifa terror cell. Read: https://t.co/CCvphhNoT2
🔥#FBI Boston is kicking off Operation Summer Heat 2.0 with the takedown of a Boston Homeland Security Task Force investigation that has resulted in RICO conspiracy charges against 26 Trinitarios gang leaders, members, & associates for their alleged involvement in five murders and 19 attempted murders in Essex County.
Today's operation shows just how serious this team is about crushing violent crime in our communities! More than 30 illegal firearms have been seized and kilos of deadly drugs, including fentanyl, cocaine, & methamphetamine will no longer reach our neighborhoods.
Special Agent in Charge Ted Docks joined our partners at a news conference today to talk about the FBI's relentless efforts to dismantle and decimate the Trinitarios in Massachusetts. Read more about today's takedown➡️:https://t.co/wkBiXk6Sjp
🌊#BREAKING: As part of Operation Riptide, an ongoing #FBI campaign targeting criminals, infrastructure, and the financial networks behind cyber-enabled crime and fraud against the American people, #FBI Boston has supported the international takedown of the First VPN Service used by ransomware actors to compromise businesses here in the U.S. and around the world.
Why? Because the increase in #cybercrime threatens the financial security, personal safety, and national interests of all Americans.
Learn more about FBI Boston's work ➡️https://t.co/q23l8skZbl
🌎 Global: https://t.co/DjttliIHD0 Contact Dataset Advertised on Underground Forum
* A threat actor has uploaded and advertised an alleged https://t.co/DjttliIHD0 dataset on an underground forum.
* The post claims the dataset contains approximately 49.19 million records originating from https://t.co/DjttliIHD0, a B2B sales intelligence and contact enrichment platform.
* According to the seller, the dataset includes:
* Full names
* Email addresses
* Phone numbers
* LinkedIn profile URLs
* Job titles
* Company names
* Company phone numbers
* Company websites
* Company domains
* Facebook URLs
* X/Twitter URLs
* Company LinkedIn pages
* Country and city information
* Claimed dataset details:
* Source: https://t.co/DjttliIHD0
* Total records: 49,189,288
* Region: Global
* Compressed size: 1.92 GB
* Sample records displayed in the forum post appear to contain professional contact and company intelligence data.
* No evidence was provided indicating a recent compromise of https://t.co/DjttliIHD0 infrastructure.
* The advertised dataset closely resembles previously reported https://t.co/DjttliIHD0 data exposures and publicly discussed incidents involving large-scale business contact information.
* At the time of reporting, Daily Dark Web has not identified evidence that this advertisement represents a newly discovered breach. The dataset may consist of historical, recycled, aggregated, or previously exposed business contact information.
Analyst Note:
Business intelligence and sales-enrichment datasets occupy a gray area within the cybercrime ecosystem because much of the information originates from public, commercial, or aggregated sources. When such datasets are advertised underground, organizations should focus on determining whether proprietary customer information, internal records, or non-public enrichment data are involved rather than assuming a new compromise has occurred.
#DDW #Intelligence #DarkWeb #Apollo
U.S. Central Command (CENTCOM) forces began launching self-defense strikes against Iran at 5 p.m. ET today at the Commander in Chief’s direction, in response to yesterday’s downing of a U.S. Army Apache helicopter. The mission is a proportional response to unjustified Iranian aggression.
Dozens of local teenagers recently spent a day with ADIC Patrick Grandy, and a team of FBI employees for the Spring iteration of the FBI Los Angeles Teen Academy. Students learned about the various career opportunities with the FBI, as well as how we investigate crimes and they can avoid being victimized.
ADIC Barnacle recently sat down to discuss the FBI New York Office’s posture for the upcoming summer events to include the FIFA World Cup, Sail250, Macy’s Fourth of July celebration, and the NBA Finals.
Read about the FBI’s commitment to staying ahead of the threat at: https://t.co/kgUwPRqXUa
Yesterday, FBI New York and @EDNYnews announced Hadrian Crichlow was sentenced to 210 months in prison for sex trafficking a minor. "Hadrian Crichlow subjected a vulnerable child to unthinkable sexual abuse and psychological torment, including repeatedly trafficking this minor victim for profit. May today’s lengthy sentence reflect the FBI’s dedication to holding accountable those who commit such vile actions that exploit children," stated FBI Assistant Director in Charge Barnacle.
Read more: https://t.co/aDGdTSVGoW
“The defendants believed they were immune from prosecution. They were wrong.”
BREAKING 🚨 Second wave of federal RICO charges expands a years-long effort to dismantle the Trinitarios in MA. In total, 56 defendants are now charged and in custody.
READ: https://t.co/wNwgN1idLL
From April to present, through the Homeland Security Task Forces and the National Coordination Center, the FBI and interagency partners including HSI, DEA, ATF, IRS-CI, USMS, and CBP surged against Mexican cartels operating along the southern border of the US. #HSTF
⚫ 70+ agencies
⚫ 423 operations
⚫ 1,343 cartel members arrested
⚫ 47,971 border inspections
⚫ 2.5 Metric Tons of narcotics seized
⚫ 421 weapons confiscated
⚫ $700,000+ in US currency seized
Today, Jason Noah Feinman, of Calabasas, California was sentenced to 27 months in prison for evading taxes on MORE THAN $4 MILLION in income and operating an illegal offshore gambling business.
Assistant Attorney General Colin McDonald and @USAttyEssayli made the announcement and @IRS_CI and @HSI investigated this case.
This Department of Justice is committed to stopping fraudsters in California and across the country.
Full story: https://t.co/RkHUlKZjgW
U.S. Marines with the 31st Marine Expeditionary Unit load onto a UH-1Y Venom aboard USS Tripoli (LHA 7) to conduct aerial sniper and close air support training while transiting regional waters.
On the ground in Phoenix with our @FBIPhoenix team – a group doing incredible work to crush violent crime, protect our kids, and support our tribal partners in the region.
Recently this team was involved in securing an indictment against an Indian Country police officer - who allegedly sexually abused three victims while working as an on-duty officer on dates from 2020 through 2023. The subject has now been indicted with Aggravated Sexual Abuse, Kidnapping, and other federal charges.
They’ve also done tremendous work protecting kids online – late last year, they secured a 29-count superseding indictment against an alleged ringleader of the violent 764 network, part of the dangerous Nihilistic Violent Extremism (NVE) network this FBI has been cracking down on online (500% more arrests last year). The subject is now charged with producing child pornography, distributing child pornography, and even conspiring to provide material support to terrorists.
Thanks to the team for hosting and being apart of our field push to make America safer than ever before.
🚨 Hackers Exploiting LiteLLM RCE Vulnerability in the Wild to Run Arbitrary Commands
Source: https://t.co/9kvbWmTeqX
Threat actors are actively exploiting a critical chained vulnerability in LiteLLM, a popular open-source AI gateway proxy, allowing unauthenticated remote code execution (RCE) on vulnerable deployments. At the core of this threat is CVE-2026-42271, a command injection flaw in LiteLLM's Model Context Protocol (MCP) server test endpoints.
By manipulating the HTTP Host header to exploit the Starlette authentication bypass, attackers can sidestep LiteLLM's API key requirement entirely. Affected versions span LiteLLM 1.74.2 through 1.83.6 on deployments whose dependency tree includes Starlette ≤ 1.0.0.
#cybersecuritynews