[September-10-2025] Daily Cybersecurity Threat Report

This report details a series of recent cyber incidents, providing key information for each event, including published URLs and associated screenshots, strictly based on the provided data.


  1. Alleged leak of RED LINE VIP premium logs

  1. Alleged sale of salesforce account in USA

  1. Alleged unauthorised access to CloudLex

  1. Alleged sale of 200 Credit cards from USA

  1. Alleged sale of admin access to an Unidentified PrestaShop Store in France

  1. Alleged leak of contacts from various Scottish Law Firms and Councils
  • Category: Data Breach
  • Content: The threat actor claims to have leaked a dataset containing a comprehensive list of legal firms and councils primarily based in Scotland, along with associated contact details. The data includes names of law firms such as Aberdein Considine, Addleshaw Goddard, Anderson Strathern, BTO, Burness Paull, Brodies, and many others, along with individual solicitor names and email addresses used for court motions, legal correspondence, and general communication. Several governmental bodies, including Dundee City Council, East Ayrshire Council, and Fife Council, are also listed with official litigation or motions email addresses.
  • Date: 2025-09-10T12:47:07Z
  • Network: openweb
  • Published URL: https://darkforums.st/Thread-DATABASE-DATA-ANGGOTA-WORLD
  • Screenshots:
  • Threat Actors: FokafSquad
  • Victim Country: UK
  • Victim Industry: Law Practice & Law Firms
  • Victim Organization: Unknown
  • Victim Site: Unknown

  1. Alleged data leak of National Security Agency

  1. Alleged Unauthorized Access to Industrial Control System, Australia

  1. Alleged data breach of Traffy Bangkok

  1. GenZRisingNepal targets the website of Kathmandu Metropolitan City

  1. Alleged data leak of Wegow

  1. Alleged Unauthorized Access to Energy Storage System, Taiwan

  1. Alleged sale of admin access to an unidentified shops in multiple countries

  1. Alleged data sale of Municipality of Canegrate

  1. Alleged leak of Joko Widddo’s KTP
  • Category: Data Breach
  • Content: The threat actor claims to have leaked KTP of Joko Widddo. It contains personal information such as the National Identity Number (NIK), name, place and date of birth, gender, address, religion, marital status, occupation, nationality, and validity period. The card also includes a photograph of the holder and their signature.
  • Date: 2025-09-10T10:19:37Z
  • Network: openweb
  • Published URL: https://darkforums.st/Thread-DATA-JOKOWI
  • Screenshots:
  • Threat Actors: FokafSquad
  • Victim Country: Indonesia
  • Victim Industry: Unknown
  • Victim Organization: Unknown
  • Victim Site: Unknown

  1. Alleged leak of Chinese and Taiwanese passports

  1. Alleged data leak of LYSI Mexico

  1. Alleged data leak of personal details of Indian users

  1. Alleged data leak of My Crediary

  1. Alleged data leak of DIAN Directorate of National Taxes and Customs

  1. Dark Storm Team claims to target Turkey

  1. Alleged data breach of Urbaner

  1. Alleged data breach of Banco Falabella Colombia

  1. Alleged Data leak of TLB

  1. Alleged data breach of Maslamani

  1. Alleged data leak of Georgia investors

  1. Alleged Data Leak of U.S. Military Base in Lebanon

  1. Alleged data breach of Lifebear

  1. Alleged data leak of USA SSN school records

  1. Alleged data leak of student records from china

  1. Alleged data leak of e-commerce records from China

  1. Alleged sale of USA Linkedin
  • Category: Data Breach
  • Content: The threat actor claims to be selling a database of 4.2 million U.S. LinkedIn users; the breached data contains website, company, first name, last name, job title, email, industry, LinkedIn profile URL, and company country information.
  • Date: 2025-09-10T02:07:49Z
  • Network: telegram
  • Published URL: https://t.me/digitalsghost/956
  • Screenshots:
  • Threat Actors: DigitalGhost
  • Victim Country: USA
  • Victim Industry: Social Media & Online Social Networking
  • Victim Organization: linkedin
  • Victim Site: linkedin.com

  1. Alleged data breach of Lahat Regency Government

  1. Alleged Sale SSH/Root Server Access

  1. Alleged Data Leak of Italian Police Intel

  1. Alleged Data Leak of USA Army Database

  1. Alleged data leak of an Unidentified Medicare Organization in the USA

Conclusion

The incidents detailed in this report highlight a diverse and active landscape of cyber threats. Data breaches and leaks are prominent, affecting various sectors from government and IT to financial services and e-commerce, and impacting countries including the USA, Italy, China, and Colombia. The compromised data ranges from sensitive personal information like national IDs and credit card details to military intelligence and internal company reports. Beyond data compromise, the report also reveals significant activity in initial access sales, with threat actors offering unauthorized access to industrial control systems, administrative panels, and server access. The nature of these incidents emphasizes the critical importance of robust cybersecurity measures, including strong access controls, data protection strategies, continuous vulnerability management, and proactive threat intelligence to defend against a wide array of sophisticated and opportunistic attacks.