This page documents a data breach listing tracked by Breach House. It summarizes the
publicly advertised leak attributed to The Underground _ Uwu 😻,
including the affected entity, origin and the date the listing was first indexed.
Breach Overview
Netim.com data for sale! - Live and historic Production ElasticSearch cluster data encompassing 16.5 million documents: payments, sales, domains, support tickets, hosting, affiliates, SSL details, coupons, and staff user information. Although direct customer PII such as names and emails are not in this dataset, it contains sensitive operational data and privileged user access. - The main internal database dump containing full customer master records with names, addresses, phone numbers, emails (partially anonymized), password hashes, account balances, VAT details, and reseller hierarchy. This data includes both historical and very recent records up to March 2024. - Multiple additional SQL dumps from billing, hosting panels, and production systems revealing critical infrastructure and financial information. - Complete source code repositories with full Git history, PHP configuration files, credentials, and internal infrastructure layouts. SAMPLE of main internal database dump attached! PRICE: 1000 USD CRYPTOCURRENCY, DM @scatteredgroup Middleman accepted.
Dark Web Exposure
Findings for netim.com
— indexed by HaveIBeenRansom.
2,033
found in Infostealer logs
35
found in Traditional breaches
30
found in Ransomware leaks
CSCGLOBAL.COM
clop · ransomware
••• emails
Televerde
play · ransomware
••• emails
linkedIN_2.7z.001
Database World ROC · breach
••• emails
Cit0day [cit0day.in] breaches.csv
LKnet reserve chat · breach
••• emails
VerificationsIO_BF.7z.011
Kedr | Forum · breach
••• emails
Database World ROC · breach
••• emails
Database World ROC · breach
••• emails
B F R e p o V 3 F i l e s · breach
••• emails
+ 9 more leak sources locked
Leak volumes are locked
Sign in to reveal how many records each source exposed and the remaining 12 sources.
Legal Disclaimer:
This breach record is compiled from publicly advertised leak listings.
Breach.house only records what the operators themselves publish in the
open. We take screenshots of their public pages and keep the proof
material they post there, so that a listing can be verified and its status
tracked over time. We do not purchase data, we do not solicit or encourage
its publication, we do not access any private system, and we do not alter
anything we record. Nothing is offered for download here, and detailed
content is not published on this page or anywhere else on the public site:
access to it is restricted to vetted customers under contract, for
incident response, due diligence and cyber-resilience work.
Breach.house is not affiliated with, and does not act on behalf of, the
operators who publish this material. If you represent an organisation or
individual named here and want a record reviewed or removed, contact us
and we will act on it.