#StolenData

Bryley Systemsbryley
2025-05-01

A quick glimpse of operations on the dark web. “'Fullz' is a slang term used by cybercriminals trading in stolen data," Barracuda’s Tony Burgess writes. "It refers to data packages that contain full sets of data needed to steal someone’s identity ..." [3 min. read] bryl.link/13h

Christoffer S.nopatience@swecyb.com
2025-04-02

(trustwave.com) Babuk2 Bjorka: The Evolution of Ransomware for 'Data Commoditization'

trustwave.com/en-us/resources/

I have long awaited the moment when RaaS-operators and the ecosystem surrounding it would start to really dig through the data and find the juicy bits.

I know that Ransomhub have been quite good at making the data browsable but perhaps this "new" group is spearheading a new modus or trend.

Short Summary:
Trustwave SpiderLabs has uncovered a significant evolution in ransomware operations through their investigation of the apparent revival of the Babuk ransomware group. Rather than finding a traditional ransomware operation, they discovered a sophisticated threat actor named Bjorka who has transformed the ransomware model into an industrial-scale data commoditization enterprise. Bjorka is recycling previously leaked data from other ransomware groups and selling it through multiple platforms while impersonating the Babuk brand (as Babuk2).

#Ransomware #RaaS #Babuk #StolenData

𝕂𝚞𝚋𝚒𝚔ℙ𝚒𝚡𝚎𝚕kubikpixel@chaos.social
2024-11-28

🧵 …AI needs slavery to classify stolen data:

«Labelers training AI say they're overworked, underpaid and exploited by big American tech companies:
[…] Like modern day slavery, says Nerima Wako-Ojiwa, a Kenyan civil rights activist, because big American tech companies come here and advertise the jobs as a ticket to the future. But really, she says, it's exploitation. […]»

👉 cbsnews.com/news/labelers-trai

#ai #america #kenya #africa #slavery #us #usa #overwork #stolendata #expoitation

🛡 H3lium@infosec.exchange/:~# :blinking_cursor:​H3liumb0y@infosec.exchange
2024-05-28

BreachForums Reappears After Law Enforcement Seizure

Date: May 28, 2024

CVE: N/A

Vulnerability Type: Data Breach

CWE: N.A.
Sources: cybersecuritynews.com Dark Web Informer

Issue Summary

BreachForums, a notorious platform for trading stolen data, has resurfaced after being seized by the FBI and international law enforcement on May 15, 2024. The site, which had previously facilitated the sale of stolen personal and corporate data, was taken down as part of a coordinated effort to combat cybercrime. Despite the seizure and arrest of key operators, the forum quickly re-emerged, causing significant concern among cybersecurity professionals.

Technical Key Findings

BreachForums operated by allowing cybercriminals to buy, sell, and trade stolen data, including personal details, financial records, and login credentials. The FBI's seizure involved taking control of the site's servers and backend data, potentially exposing the identities of forum users through collected IP addresses, email addresses, and private messages. The forum primarily targeted data from various sectors, including personal user information, corporate data, and government-related data breaches. Specific recent breaches involved data from Europol and Dell.

Impact Assessment

The re-emergence of BreachForums indicates a persistent threat to data security, with potential increases in data breaches and the dissemination of stolen information.

Patches or Workaround

N.A.

Tags

#DataBreach #Cybercrime #BreachForums #StolenData #FBI #CyberSecurity #DataProtection #Europol

2023-05-27

AI is stolen public data, AI is not ownable as a product, its use must be regulated as a public good, a public utility, owned both cooperatively and as a regulated utility.

AI is theft only if AI is owned privately. End the pretence of AI ownership.

Like "owning" the wallet of Batman's father, or "discovering" America.

#AI #stolen #aistolen #stolendata #AHumanGood

Teddy / Domingo (🇨🇵/🇬🇧)TeddyTheBest@framapiaf.org
2022-01-29

#LockBit gang claims it stole data from French Ministry of Justice. #LockBit is threatening to leak stolen documents, but the ransomware gang has a reputation for crying wolf.
zdnet.com/article/french-offic
#France #security #stolendata

2020-12-29

Japanese Aerospace Firm Kawasaki Warns of Data Breach - The Japanese aerospace manufacturer said that starting in June, overseas unauthorized access to it... threatpost.com/japanese-aerosp #kawasakiheavyindustries #compromiseddata #customerdata #databreach #stolendata #kawasaki #breach #hacks

2020-12-10

PLEASE_READ_ME Ransomware Attacks 85K MySQL Servers - Ransomware actors behind the attack have breached at least 85,000 MySQL servers, and are currently... threatpost.com/please_read_me- #ransomwareextortion #vulnerabilities #compromiseddata #please_read_me #cyberattack #ransomware #stolendata #ransom #server #hacks #mysql

2020-11-24

Post-Breach, Peatix Data Reportedly Found on Instagram, Telegram - Events application Peatix this week disclosed a data breach, after user account information report... threatpost.com/breach-peatix-d #credentialstuffing #passwordspraying #useraccountdata #phishingattack #websecurity #databreach #stolendata #instagram #telegram #breach #peatix #hacks

2020-11-12

Animal Jam Hacked, 46M Records Roam the Dark Web - Animal Jam, just the latest in a string of attacks on gaming apps, has adopted a transparent commu... threatpost.com/animal-jam-hack #gamingattacks #parentemails #websecurity #cyberattack #hackerforum #userrecords #databreach #ransomware #stolendata #animaljam #minecraft #wildworks #kidsgame #password #phishing #darkweb #breach #gaming #hacks #hack

2020-11-11

Ragnar Locker Ransomware Gang Takes Out Facebook Ads in Key New Tactic - Following a Nov. 3 ransomware attack against Campari, Ragnar Locker group took out public Facebook... threatpost.com/ragnar-locker-r #ransomwareattack #doubleextortion #ragnarlocker #facebookads #ransomware #stolendata #facebook #malware #campari #breach #hacks

2020-11-02
2020-10-28

‘Copyright Violation’ Notices Lead to Facebook 2FA Bypass - Fraudulent Facebook messages allege copyright infringement and threaten to take down pages, unless... threatpost.com/copyright-viola #copyrightviolationemail #twofactorauthentication #copyrightviolation #phishingemail #websecurity #credentials #stolendata #2fabreach #2fabypass #facebook #phishing #2facode #scam #2fa

2020-03-23

Stolen data of company that refused REvil ransom payment now on sale - A comment from one buyer of data purportedly from Brooks International: "It even has credit card n... more: nakedsecurity.sophos.com/2020/ #brooksinternational #securitythreats #hackingforums #ransomware #sodinokibi #stolendata #gandcrab #malware #revil #sodin #raas

2020-01-20

FBI seizes credentials-for-sale site WeLeakInfo.com - The FBI has seized the domain for WeLeakInfo.com, a site that sold breached data records, after a ... more: nakedsecurity.sophos.com/2020/ #credentials-for-sale #stolencredentials #securitythreats #northernireland #weleakinfo.com #netherlands #databreach #stolendata #law&order #dataloss #dataleak #fbi #uk #us

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst