[August-21-2025] Daily Cybersecurity Threat Report

This report details a series of recent cyber incidents, providing key information for each event, including published URLs and associated screenshots, strictly based on the provided data.


  1. Alleged sale of access to Inalan systems

  1. Alleged sale of access to NETGEAR, Inc

  1. TEAM BD CYBER NINJA targets the website of Directorate of Defence Audit (DDA)

  1. Alleged sale of Australian and International IDs

  1. Alleged data leak of Kharazmi International Institute
  • Category: Data Breach
  • Content: The threat actor claims to have leaked a database of Kharazmi International Institute, allegedly exposing a dataset containing detailed personal and institutional information. It includes user IDs, usernames, emails, full names, national ID numbers, institutional affiliations, departments, multiple contact numbers, city and country information, URLs, and legacy communication handles such as ICQ, Skype, AIM, Yahoo, and MSN.
  • Date: 2025-08-21T12:44:35Z
  • Network: openweb
  • Published URL: https://darkforums.st/Thread-DATABASE-kla-ir-data-Breached-Leaked-Download
  • Screenshots:
  • Threat Actors: N1KA
  • Victim Country: Iran
  • Victim Industry: Education
  • Victim Organization: kharazmi international institute
  • Victim Site: kla.ir

  1. Alleged dale of an unidentified e-Commerce Shop

  1. Alleged sale of virtual numbers via SMS-Activate

  1. Alleged data sale of Facebook users Italy

  1. Alleged data leak of Raniganj Girls’ College

  1. Alleged data leak of Samaritan Münsingen

  1. Alleged data sale of Royal Mail Group

  1. Alleged data sale of Spectos

  1. Alleged Sale of Credit Card Data
  • Category: Data Leak
  • Content: The threat actor claims to be selling a batch of credit card data, allegedly from the United States, with 95% authenticity and guaranteed unused. The data is reportedly formatted as follows: Card Number | Expiry Date | CVV | Name | Address | City | State/Province | Country/Region | Zip Code Mobile Number | Email | User Agent | IP.
  • Date: 2025-08-21T10:11:22Z
  • Network: openweb
  • Published URL: https://forum.exploit.in/topic/264681/
  • Screenshots:
  • Threat Actors: kele51881
  • Victim Country: USA
  • Victim Industry: Financial Services
  • Victim Organization: Unknown
  • Victim Site: Unknown

  1. Alleged data sale of Jiangsu Province, China

  1. Alleged data sale of KazanExpress

  1. Alleged data sale of restore:

  1. Alleged Sale of Databases from Casa.io, Theya.us, and Nunchuk.io
  • Category: Data Breach
  • Content: The threat actor claims to be selling hacked databases from cryptocurrency platforms casa.io, theya.us, and nunchuk.io, containing hundreds of thousands of user records, including emails, passwords, wallet addresses, and other sensitive account information.
  • Date: 2025-08-21T09:56:24Z
  • Network: openweb
  • Published URL: https://forum.exploit.in/topic/264676/
  • Screenshots:
  • Threat Actors: MrDark
  • Victim Country: USA
  • Victim Industry: Financial Services
  • Victim Organization: casa.io
  • Victim Site: casa.io

  1. Alleged data sale of Likitoriya

  1. Alleged data sale of MyHeritage Ltd.

  1. Alleged data leak of Indonesian Nuclear Agency

  1. Alleged access sale to the FORTI system of Submersible Motor Engineering Pty Ltd
  • Category: Initial Access
  • Content: The threat actor claims to be selling access to the FORTI system of Submersible Motor Engineering Pty Ltd (Australia). The sale reportedly includes access to 11 PCs on the domain, with AB-blue Sophos protection enabled.
  • Date: 2025-08-21T08:59:11Z
  • Network: openweb
  • Published URL: https://forum.duty-free.cc/threads/982/
  • Screenshots:
  • Threat Actors: Try
  • Victim Country: Australia
  • Victim Industry: Machinery Manufacturing
  • Victim Organization: submersible motor engineering pty ltd
  • Victim Site: smeng.com.au

  1. Alleged leak of Philippines army manuals

  1. Hider_Nex claims to target Saudi arabia

  1. Alleged data leak of Government of Aceh Singkil Regency

  1. TEAM BD CYBER NINJA targets the website of Jyoti Eye Hospital

  1. Alleged data leak of Laser Direct

  1. Alleged data breach of Tokopedia
  • Category: Data Breach
  • Content: The group claims to have 33M leaked data from Tokopedia. The compromised data includes name of customers, sales orders, purchases order, expenses, period, and employee details.
  • Date: 2025-08-21T07:42:51Z
  • Network: telegram
  • Published URL: https://t.me/c/2675579639/736
  • Screenshots:
  • Threat Actors: scattered lapsu$ hunters
  • Victim Country: Indonesia
  • Victim Industry: E-commerce & Online Stores
  • Victim Organization: tokopedia
  • Victim Site: tokopedia.com

  1. Alleged sale of access to an unidentified international company in USA

  1. Alleged sale of crypto databases

  1. Alleged data sale of JAPAY (Junta de Agua Potable y Alcantarillado de Yucatan)

  1. Alleged data breach of jassume.com

  1. Alleged data breach of multiple cryptocurrency platforms

  1. Alleged sale of RDWeb access to an unidentified software company in USA

  1. Alleged data breach of Viesgo Distribución
  • Category: Data Breach
  • Content: The threat actor claims to be selling customer data allegedly stolen from Viesgo, an electricity distribution company based in Spain. The leaked database reportedly includes sensitive personal and financial details such as full names, dates of birth, national ID numbers, phone numbers, physical addresses, cities, provinces, postal codes, IBANs, and associated bank entities.
  • Date: 2025-08-21T03:39:15Z
  • Network: openweb
  • Published URL: https://darkforums.st/Thread-Selling-SPAIN-viesgo-Customers
  • Screenshots:
  • Threat Actors: scripts
  • Victim Country: Spain
  • Victim Industry: Energy & Utilities
  • Victim Organization: viesgo distribuciòn
  • Victim Site: viesgo.com

  1. Alleged data breach of Casa Inc.

  1. Z-ALLIANCE targets the website of Fabio Sweet Creations

  1. Alleged data leak of 500M Instagram Database

  1. Alleged data breach of Deloros-MSK

  1. Alleged data breach of Zonatelecom

  1. Alleged data leak of Brazilian credit card database
  • Category: Data Leak
  • Content: A threat actor claims to be auctioning a Brazilian credit card (CC) database containing 142 full card records, described as new and obtained via sniffer. The data is in .txt format and includes sensitive fields such as card number, expiration, CVV, holder name, email, CPF (Brazilian SSN), phone, and full address details.
  • Date: 2025-08-21T00:26:28Z
  • Network: openweb
  • Published URL: https://forum.exploit.in/topic/264656/
  • Screenshots:
  • Threat Actors: ikki
  • Victim Country: Brazil
  • Victim Industry: Unknown
  • Victim Organization: Unknown
  • Victim Site: Unknown

  1. Alleged data leak of Global Email Database

  1. Alleged data leak of an unidentified investment platform in Japan

  1. Alleged data breach of

Conclusion The incidents detailed in this report highlight a diverse and active landscape of cyber threats. Data breaches and leaks are prominent, affecting various sectors from education and healthcare to e-commerce and social media, and impacting countries including Greece, USA, Bangladesh, Australia, Iran, Italy, India, Switzerland, UK, Germany, China, Russia, Mexico, France, New Zealand, Philippines, Saudi Arabia, Spain, and Japan. The compromised data ranges from personal user information and credit card details to internal business documents, financial records, and large customer and user databases.

Beyond data compromise, the report also reveals significant activity in initial access sales, with threat actors offering unauthorized access to systems in sectors like telecommunications, computer networking, and machinery manufacturing. The nature of these incidents emphasizes the critical importance of robust cybersecurity measures, including strong access controls, data protection strategies, continuous vulnerability management, and proactive threat intelligence to defend against a wide array of sophisticated and opportunistic attacks.