en
Feedback
Intelligence X

Intelligence X

Open in Telegram

intelx.io - search engine & data archive

Show more
The country is not specifiedTechnologies & Applications15 181
7 004
Subscribers
No data24 hours
+57 days
+8830 days
Posts Archive
+1
image_2021-09-27_22-32-31.png3.31 KB

It is quite bizarre that the United States Postal Service runs an 'Internet Covert Operations Program'. They included our Capitol Hill riot tweet in one of their bulletins. Great reporting by Politico: https://www.politico.com/news/2021/09/27/covert-postal-service-514327 Link to the USPS bulletin include a picture of our tweet: https://propertyofthepeople.org/document-detail/?doc-id=21069042

+1
image_2021-08-05_22-27-56.png1.67 KB

+1
image_2021-08-05_22-26-44.png0.56 KB

Here are the Conti ransomware manuals archived. Use the Tree View tab to navigate between files. https://intelx.io/?s=77252046-5045-4a3d-ba6a-a1d8aee4c4e8 For details see this article: https://therecord.media/disgruntled-ransomware-affiliate-leaks-the-conti-gangs-technical-manuals/

+1
image_2021-08-05_22-01-48.png4.53 KB

One user scraped 88,172 pastes from our API and uploaded it. That's about 0.001% of pastes in our index. The dump only includes pastes <= 2021-05. We were able to find the account (and other related accounts) that were involved in the scraping. During this research we found that this user was targeting the CEO of a datacenter/uplink provider we work with. The actor registered multiple accounts under "http://my.sunywcc.edu" email addresses. He abused our Academia program which provides free access to certain categories including Pastes. Some of the accounts were registered in 2020 and we were able to seize them. After publishing the details and freezing the account, the actor continues to register accounts (with edu emails). In a tweet today he posted his redacted account details. As per our privacy policy (which the user agreed to), we share information about attackers with the public.

+1
image_2021-08-05_21-58-07.png0.70 KB

The US State Departments has a Secure Drop on Tor at he5dybnt7sr6cm32xt77pazmtm65flqy6irivtflruqfc5ep7eiodiad.onion. Looking through mentions on https://intelx.io/?s=he5dybnt7sr6cm32xt77pazmtm65flqy6irivtflruqfc5ep7eiodiad.onion šŸ”’ it shows a mention on the hacking forum XSS, another on DarkMarket (screenshots). This tweet https://twitter.com/SttyK/status/1420648957881978886 mentions that it uses the "Endgame" anti DDoS solution.

+1
image_2021-07-21_22-44-42.png1.60 KB

It looks like NSO Group had this paste removed (titled "NSO Employees 2017"). Here is the copy in our archive: https://intelx.io/?s=5406a1b3-bc40-4eab-bc78-03afe62c5aeb šŸ”’

Simple counter-intel regarding the NSO Group: https://phonebook.cz/?s=nsogroup.com

In other news, the new Usenet category is live and stores 209,469,453 selectors. It is expected grow substantially in the near future.

āš ļø Saturday 03.07.2021 starting at 06:00 UTC we are moving to a new state of the art datacenter. During the move http://intelx.io, http://phonebook.cz, and APIs will be temporarily unavailable. We will post status updates on our Twitter account https://twitter.com/_IntelligenceX. The move is expected to be finished in the late afternoon on the same day.

+1
image_2021-06-10_21-46-07.png2.51 KB

Authorities seize SlilPP, a marketplace for stolen login credentials https://therecord.media/authorities-seize-slilpp-a-marketplace-for-stolen-login-credentials/ Some historical info via various SlilPP domains (earliest mentions are from 2017): https://intelx.io/?s=slilppnyhik6febe.onion https://intelx.io/?s=slilpp.xyz https://intelx.io/?s=slilpp.ws

47,809,537,795 records we store. Almost 1/10 half a trillion.

We are preparing for the new Usenet category and added support for MBOX files.