home.social

#apt73 โ€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #apt73, aggregated by home.social.

  1. I may have to add Moldova to my list of countries I may not be able to visit. I just posted a two-fer involving two of their government portals:

    databreaches.net/2026/02/19/da is about a long-time IDOR incident that exposed the personal info of everyone who ever used the govt portal to apply for a job. The vulnerability was brought to my attention by a student who was frustrated with his government's lack of response to his attempts to get them to address it.

    and

    databreaches.net/2026/02/19/le discusses an alleged hack by Bashe Team of another portal used by Moldovan residents to apply for energy compensation.

    In May 2025, the government had denied claims that access to the compensation portal had been sold. "No evidence.... smoke and mirrors... " they claimed.

    Fast forward to January 2026, and data from that portal and timeframe was leaked after Bashe Team claimed to have hacked it. But while the data appear to be real, Bashe Team's claims about how and when they acquired it didn't check out.

    Bashe Team seems to be allergic to telling the truth about their listings. @cloudsek noted their less-than-honest claims in 2025; DataBreaches.net notes it now, and @amvinfe has also noted it in his new reporting on #SuspectFile.

    #databreach #leak #vulnerability #cariere #compensatii #govsec #cybersecurity #Bashe #APT73 #Eraleign

    @campuscodi @euroinfosec @lawrenceabrams

  2. ๐ƒ๐จ๐ฎ๐›๐ญ๐ฌ ๐Ž๐ฏ๐ž๐ซ ๐๐š๐ฌ๐ก๐žโ€™๐ฌ ๐‚๐ฅ๐š๐ข๐ฆ๐ฌ: ๐“๐ž๐œ๐ก๐ง๐ข๐œ๐š๐ฅ ๐€๐ง๐š๐ฅ๐ฒ๐ฌ๐ข๐ฌ ๐š๐ง๐ ๐Ž๐ฉ๐ž๐ง ๐๐ฎ๐ž๐ฌ๐ญ๐ข๐จ๐ง๐ฌ

    What emerged from this follow-up inquiry highlights significant discrepancies between the statements published on the groupโ€™s blog and the technical characteristics of the data examined. Despite our additional questions, no verifiable evidence was provided to substantiate the claims. Instead, we were told that authenticity could be confirmed through the purchase of the stolen database โ€” a proposal we firmly rejected.

    suspectfile.com/doubts-over-ba

    #APT73 #Bashe #CloudSEK #IndianBank #IndonesianBank #LineBank #Ransomware

  3. ๐ƒ๐จ๐ฎ๐›๐ญ๐ฌ ๐Ž๐ฏ๐ž๐ซ ๐๐š๐ฌ๐ก๐žโ€™๐ฌ ๐‚๐ฅ๐š๐ข๐ฆ๐ฌ: ๐“๐ž๐œ๐ก๐ง๐ข๐œ๐š๐ฅ ๐€๐ง๐š๐ฅ๐ฒ๐ฌ๐ข๐ฌ ๐š๐ง๐ ๐Ž๐ฉ๐ž๐ง ๐๐ฎ๐ž๐ฌ๐ญ๐ข๐จ๐ง๐ฌ

    What emerged from this follow-up inquiry highlights significant discrepancies between the statements published on the groupโ€™s blog and the technical characteristics of the data examined. Despite our additional questions, no verifiable evidence was provided to substantiate the claims. Instead, we were told that authenticity could be confirmed through the purchase of the stolen database โ€” a proposal we firmly rejected.

    suspectfile.com/doubts-over-ba

    #APT73 #Bashe #CloudSEK #IndianBank #IndonesianBank #LineBank #Ransomware

  4. ๐ƒ๐จ๐ฎ๐›๐ญ๐ฌ ๐Ž๐ฏ๐ž๐ซ ๐๐š๐ฌ๐ก๐žโ€™๐ฌ ๐‚๐ฅ๐š๐ข๐ฆ๐ฌ: ๐“๐ž๐œ๐ก๐ง๐ข๐œ๐š๐ฅ ๐€๐ง๐š๐ฅ๐ฒ๐ฌ๐ข๐ฌ ๐š๐ง๐ ๐Ž๐ฉ๐ž๐ง ๐๐ฎ๐ž๐ฌ๐ญ๐ข๐จ๐ง๐ฌ

    What emerged from this follow-up inquiry highlights significant discrepancies between the statements published on the groupโ€™s blog and the technical characteristics of the data examined. Despite our additional questions, no verifiable evidence was provided to substantiate the claims. Instead, we were told that authenticity could be confirmed through the purchase of the stolen database โ€” a proposal we firmly rejected.

    suspectfile.com/doubts-over-ba

    #APT73 #Bashe #CloudSEK #IndianBank #IndonesianBank #LineBank #Ransomware