03-23-2026, 12:43 AM
some of you may have seen our BMW idor / docs posts, we have partnered with other groups, and due to this our access has greatly expanded, much more data, much more leads
soon a new post will be put up once we believe we have everything we can get, the lucky buyer will be getting much more in money, and much much more information to ingest[/quote]just to hint a little
- [NEW] k8s leads
- [NEW] pii leaks for employees AND customers all around the world (tens of thousands with standard PII, ie full names, addresses, cars, vins, etc)
- IDOR exploit still for sale
- a bunch of configuration data
- [NEW] a bunch of api data
- [NEW] almost every subsidiary owned by bmw has been mapped
- [NEW] new car companies include Mazda, Toyota, Audi, Ford, plus 32 more
- [NEW] hundreds of other brands PIIs (Brand, connections, email, links, phone preferred brand, provider, data provider, telefax, website, city country, address, title, etc)
- [NEW] gas station data
- [NEW] order data
- [NEW] vin lookups
- [NEW] order pii
- the group we are collaborating with is DarkRomance
on top of this, we still have much more information still yet to be went through, along with we are still actively collecting more data.
it's expected people will say "no samples?" in the comments, the reasoning for this is that we aren't even done exfiltrating yet, as we find more stuff, we have to spend even more time exfiltrating the new data, and we'd prefer to just put the best of the samples in the post
while they caught on to our data exfiltration and took their database offline, not before we managed to exfiltrate 20 thousand categories. pii includes Brand, Connections, Email, Links, Phone prefered brand, Prodiver, Data provider, Telefax, Website, City, Country, Address, Title
among the large quantity of data, this will be of interest to those looking for initial access too. we have a file upload, as well as other portals and idor, among other things. the customer would be able to get initial access
while we cant go into further detail about a lot of specific team workspaces and chats, we have data for every countrys BMW group, along with 26 other car company's chats.
we are also collaborating with teampcp and another group which won't be named yet, but is already quite big. we also gained access to PetScreening, but we do not believe they deserved to be breached, as such we have emailed them from a compromised protonmail to notify them of the breach, so it won't happen again
⠀the worms are out
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/Tx0Kv6N1/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/1G1sTH5X/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/FqVGQW7g/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/n8bSSpq6/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/232RsBN0/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/9knSXTS6/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/nsD932jZ/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/bj4ypxS2/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/8gJxymMh/image.png)
![[Image: image.png]](https://external-content.duckduckgo.com/iu/?u=https://i.ibb.co/0jBCqyk5/image.png)
QTOX: 300B2D5FD09996D9DCFD714A3E7C0059EF70825AF78ED544880DC9990EBF9859B798CC8F2B03
Session: 05c8ae06e40a63cfd94d3307a3461ca668aa88bb18686083d6927e969249501075
Session: 05c8ae06e40a63cfd94d3307a3461ca668aa88bb18686083d6927e969249501075