Dark Web Informer - Cyber Threat Intelligence
Open in Telegram
Discord Channel: discord.gg/gDHTYz5N9D Website: darkwebinformer.com Subscribe by Crypto: darkwebinformer.com/crypto-payments Advertise: darkwebinformer.com/advertising Canary: darkwebinformer.com/canary
Show moreNo data
Subscribers
+1524 hours
+1107 days
+49930 days
Data loading in progress...
Similar Channels
Tags Cloud
Incoming and Outgoing Mentions
---
---
---
---
---
---
Attracting Subscribers
August '25
August '25
+261
in 5 channels
July '25
+721
in 1 channels
Get PRO
June '25
+952
in 10 channels
Get PRO
May '25
+28 958
in 4 channels
Get PRO
April '25
+949
in 5 channels
Get PRO
March '25
+585
in 7 channels
Get PRO
February '25
+710
in 10 channels
Get PRO
January '25
+969
in 7 channels
Get PRO
December '24
+680
in 5 channels
Get PRO
November '24
+1 499
in 8 channels
Get PRO
October '24
+1 088
in 7 channels
Get PRO
September '24
+968
in 1 channels
Get PRO
August '24
+898
in 3 channels
Get PRO
July '24
+4 081
in 1 channels
| Date | Subscriber Growth | Mentions | Channels | |
| 11 August | +22 | |||
| 10 August | +19 | |||
| 09 August | +14 | |||
| 08 August | +20 | |||
| 07 August | +23 | |||
| 06 August | +8 | |||
| 05 August | +35 | |||
| 04 August | +28 | |||
| 03 August | +20 | |||
| 02 August | +24 | |||
| 01 August | +48 |
Channel Posts
💡Ransomware Attack Update for the 11th of August 2025
https://darkwebinformer.com/ransomware-attack-update-for-the-11th-of-august-2025/
| 2 | 🚨Alleged Sale of C2 Framework with Full EDR Bypass
• Industry: N/A
• Threat Actor: bryanross
• Network: Clearnet, Dark Web
• Price: $500
• Details: Threat actor is offering a custom-built C2 framework and obfuscated payload designed to bypass all major EDR and antivirus solutions on Windows 10/11 and Linux. Features include behavioral and signature detection evasion, in-memory execution, process masquerading, encrypted communications, and multi-OS agent deployment. Capabilities extend to post-exploitation actions such as keylogging, credential theft (Mimikatz), remote shell access, file transfer, process injection, SOCKS proxying, persistence mechanisms, and lateral movement. | 241 |
| 3 | 🚨Alleged Sale of Wacapew Crypter Malware Tool
• Industry: N/A
• Threat Actor: Wacapew
• Network: Clearnet, Dark Web
• Price: $60
• Details: Threat actor is promoting the “Wacapew Crypter,” a manual crypting tool designed to bypass Windows Defender and SmartScreen on Windows 7–11 systems. The tool is written in low-level NASM and C, offering 0–3 detections at runtime and scan time, and claims to produce unique builds for each use. | 216 |
| 4 | 🚨Alleged Sale of Wacapew Crypter Malware Tool
• Industry: N/A
• Threat Actor: Wacapew
• Network: Clearnet, Dark Web
• Price: $60
• Details: Threat actor is promoting the “Wacapew Crypter,” a manual crypting tool designed to bypass Windows Defender and SmartScreen on Windows 7–11 systems. The tool is written in low-level NASM and C, offering 0–3 detections at runtime and scan time, and claims to produce unique builds for each use. | 1 |
| 5 | Feds playing games. It's back up. | 227 |
| 6 | 🚨🇫🇷Alleged data sale of French Swimming Federation (FFN) - Angers branch and FFN Bourgogne Franche Comte
Note: Both screenshots were captured by the feed before the site was closed. | 312 |
| 7 | BreachForums has been closed. | 434 |
| 8 | Scattered Lapsus$ Hunters new channel: https://t.me/sp1d3rlapsushunters
The following PGP message has been signed by Shiny of Shinyhunters.
"It has come to my attention that both BreachForums and its official PGP key have been compromised"
Read on... | 387 |
| 9 | 🚨🇬🇧Alleged Sale of UK Pensioners' Data with Bank and Monthly Income Information
• Industry: Financial Services
• Threat Actor: visionmoon
• Network: Clearnet, Dark Web
• Price: Negotiable (bulk rates for 1K / 5K / 10K records)
• Details: Threat actor claims to be selling fresh UK-based pensioners' data sourced in Q2 2025 from a financial CRM breach. Dataset allegedly includes full names, email addresses, active mobile numbers, postcodes/regions, age brackets (60+ subset), pensioner tags, bank account details, and monthly pension income estimates (£700–£20,000). | 351 |
| 10 | 🚨PLAY Ransomware Claims 4 New Victims
🇺🇸Rite Track
🇺🇸Travancore Analytics
🇺🇸Bluewater Yacht Sales
🇺🇸The Scharine Group | 332 |
| 11 | 🚨🇺🇸Ramar & Paradiso, PC has Fallen Victim to PEAR Ransomware | 323 |
| 12 | 🚨🇺🇦Z-ALLIANCE Targeted the Website of Help To Ukraine NGO | 313 |
| 13 | 🚨🇺🇦Z-ALLIANCE Targeted the Website of Help To Ukraine NGO | 1 |
| 14 | 🚨Alleged Akira Ransomware Attacks, Multiple Victims Worldwide
• Woodside KC 🇺🇸 – Wellness & fitness center
• Bondtech 🇸🇪 – Autoclave systems manufacturer
• Wytech Industries 🇺🇸 – Medical device component maker
• Sweetener Supply 🇺🇸 – Food ingredients supplier
• Aurora Air Products 🇺🇸 – Gas & chemical distributor
• Safti First 🇺🇸 – Safety glass manufacturer
• The Law Offices of Hicks & Demps 🇺🇸 – Law firm
• SPEEDLOGISTIK – Logistics services
• TOP Ships 🇬🇷 – Shipping company
• Geotec 🇰🇷 – Engineering & construction
• Sterling Card Solutions 🇺🇸 – Payment solutions
• TRS Industries – Industrial products
• Microcosm 🇬🇧 – Scientific equipment supplier
• GWU-Umwelttechnik GmbH 🇩🇪 – Environmental engineering
• ESD Inc. 🇺🇸 – Mechanical & electronic systems
• Architectural DesignWest 🇺🇸 – Architecture firm
• Spring Footwear 🇺🇸 – Shoe manufacturer
• The Law Company – Construction services
• Anderson Packaging – Packaging solutions
• Atlas Transfer & Storage 🇺🇸 – Moving & storage
• Insero & Co. CPAs, LLP – Accounting firm | 348 |
| 15 | 🚨🇰🇿Alleged Data Breach of Overclockers Online Store
• Industry: E-commerce
• Threat Actor: Dr0xKrueger
• Network: Clearnet, Dark Web
• Details: The threat actor claims to have leaked a CSV file allegedly containing 179,263 lines of data from the Overclockers online store in Kazakhstan. | 356 |
| 16 | 🚨Sale of EVILATOR NetSupport Bundle Dropper and Loader
• Industry: Malware Development
• Threat Actor: Evilator
• Network: Clearnet, Dark Web
• Details: A threat actor is allegedly offering EVILATOR, a compiler that produces a dropper or loader for covert NetSupport RAT client installation. The tool includes options to disguise the process as another executable, glue any file type (e.g., PDF, DOCX, XLSX) into the build, customize icons, and enable self-deletion of the loader after a set delay. The seller claims it builds fully FUD (Fully Undetectable) on both runtime and scan-time tests. The service supports Russian and English interfaces.
💰Price: 3,000$/month
💰Test Price: 500$/week (first 5 customers, in exchange for a review) | 413 |
| 17 | 🚨🇳🇱AgroFair Benelux Falls Victim to Qilin Ransomware
https://darkwebinformer.com/agrofair-benelux-falls-victim-to-qilin-ransomware/
Samples:
🖼 Image 1: Shipping and customs documentation
🖼 Image 2: Pesticide test results spreadsheet
🖼 Image 3: Lab analysis images
🖼 Image 4: Internal scheduling spreadsheet
🖼 Image 5: Supplier contact list
🖼 Image 6: Supplier identification and data records | 392 |
| 18 | 🚨🇱🇰Ministry of Health Sri Lanka Data Sale, 398,769 Records Allegedly for Sale
https://darkwebinformer.com/ministry-of-health-sri-lanka-data-sale-398-769-records-allegedly-for-sale/ | 392 |
| 19 | h8mail: Email OSINT & Password breach hunting tool, locally or using premium services. Supports chasing down related email
GitHub: https://github.com/khast3x/h8mail | 417 |
| 20 | h8mail: Email OSINT & Password breach hunting tool, locally or using premium services. Supports chasing down related email
GitHub: https://github.com/khast3x/h8mail | 1 |
