> ## Content Index
> Fetch the complete content index at: https://darkwebinformer.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Daily Dose of Dark Web Informer - February 18th, 2026
- URL: https://darkwebinformer.com/daily-dose-of-dark-web-informer-february-18th-2026/
- Published: 2026-02-18T23:18:01.000Z
- Updated: 2026-02-18T23:18:01.000Z
- Author: Dark Web Informer
- Tags: Articles

<!DOCTYPE html> 

Dark Web Informer

# Daily Threat Intelligence Digest

⚡ Real-Time Monitoring

🔑

API Access Available

High-volume threat intelligence, ransomware data, IOC exports, and comprehensive feed access for security teams and researchers.

[Explore API →](https://darkwebinformer.com/api-details/) 

🔁 Follow across all official platforms — [darkwebinformer.com/socials](https://darkwebinformer.com/socials) 

🔥

Advertising Opportunities

Reach a highly engaged audience of **42,400+** unique users monthly and growing. [View details](https://darkwebinformer.com/advertising)

44.2k

Unique Visitors

128.6k

Pageviews

Last 30 days as of Feb 3, 2026\. Next update Feb 28th.

🔒

## Unlock Premium Intelligence

Real-time breach tracking, expert analysis, high-resolution evidence, unredacted feeds, and 5,100+ blog posts. View all plans and features on the pricing page.

[View Plans & Subscribe →](https://darkwebinformer.com/pricing) 

💚

## Support Dark Web Informer

Contributions help continue monitoring threats and keeping the community informed.

🟠

MoneroXMR

89Z68A33B9sNRf941f5GczU4ZzarTQsWn6dyMVUbo6mk2zYEamh9hALH1odMiVZfynKhjKPS58ASAfDyFdTW9o29Mwf4ArZ Copied 

🟡

BitcoinBTC

bc1qvs4pfwascp2uln90g3e3l4agnhnjrdn2t578we Copied 

🔷

EthereumETH / ERC-20 / USDT

0xbA6bCf2BF50F9789504401AFbf19E8c2CCaa773D Copied 

Click address to copy · ETH address accepts USDT, USDC, and other ERC-20 tokens

## 📌 Legend

📰Law Enforcement — LEA updates, investigations

⚠️Dark Web Notices — forums, markets, announcements

❗️Urgent Threats — breaches, ransomware, vulnerabilities

💡Insights & Tools — guides, OSINT, learning resources

🔒Subscribers Only — [X/Twitter subscribe](https://x.com/DarkWebInformer/creator-subscriptions/subscribe)

## 🧾 Today's Intelligence

Website Posts

❗️ 

[Critical RCE Vulnerability in Grandstream GXP1600 VoIP Phones Allows Root Access Without Authentication](https://darkwebinformer.com/critical-rce-vulnerability-in-grandstream-gxp1600-voip-phones-allows-root-access-without-authentication/) FREE 

💡 

[Heretic: Fully Automatic Censorship Removal for Language Models via Optimized Abliteration](https://darkwebinformer.com/heretic-fully-automatic-censorship-removal-for-language-models-via-optimized-abliteration/) FREE 

❗️ 

[Alleged Auction of Domain Admin Access to Peruvian Logistics Company Worth $10 Million](https://darkwebinformer.com/alleged-auction-of-domain-admin-access-to-peruvian-logistics-company-worth-10-million/) FREE 

X/Twitter Updates

❗️ 

[A threat actor is selling an alleged Argentine database containing 51,120 PII records and 3,399 DNI records with photos, updated January 2026.](https://x.com/DarkWebInformer/status/2024145142635024860?s=20)

❗️ 

[A threat actor claims to be selling data from Apartamentos Hawkins, a Spanish vacation rental provider.](https://x.com/DarkWebInformer/status/2024148294574764394?s=20)

❗️ 

[A threat actor claims to be selling 500,000 credit card records allegedly sourced from a January 2026 breach of Capital One and Synchrony systems.](https://x.com/DarkWebInformer/status/2024153836181450908?s=20)

💡 

[Ghost Security's Skills Marketplace supercharges Claude Code to be an application security expert in code security analysis, dependency/secrets scanning, and dynamic vulnerability testing](https://x.com/DarkWebInformer/status/2024155770938433541?s=20)

❗️ 

[A threat actor claims to be selling the database of Saraf App, an Iranian crypto and trading application.](https://x.com/DarkWebInformer/status/2024159696303571132?s=20)

❗️ 

[A threat actor claims to have compromised QatarEnergy LNG, a subsidiary of QatarEnergy responsible for approximately 20% of global LNG supply, based at Ras Laffan Industrial City.](https://x.com/DarkWebInformer/status/2024164249858097221?s=20)

💡 

[Pro/Elite subscribers, I refreshed the Ransomware Visuals page.](https://x.com/DarkWebInformer/status/2024171289938677933?s=20)

❗️ 

[A threat actor claims to be selling data from a full takeover of Réglo Mobile, a French MVNO operated by E.Leclerc on the SFR network.](https://x.com/DarkWebInformer/status/2024173510931701918?s=20)

❗️ 

[Diversified Supply Inc. has fallen victim to Qilin Ransomware](https://x.com/DarkWebInformer/status/2024179512334815698?s=20)

❗️ 

[A threat actor claims to be selling data from On Air Fitness, a French gym chain, obtained via a misconfigured API proxy and missing authorization controls.](https://x.com/DarkWebInformer/status/2024182963387154818?s=20)

💡 

[$3,000 Bug Bounty Delete highlight cover IDOR bug in Instagram](https://x.com/DarkWebInformer/status/2024187660223341045?s=20)

❗️ 

[A threat actor claims to be selling data from CFDT (Confédération Française Démocratique du Travail), one of France's main trade union confederations.](https://x.com/DarkWebInformer/status/2024205527614706073?s=20)

❗️ 

[Femar Group has fallen victim to Tengu Ransomware](https://x.com/DarkWebInformer/status/2024210308399768058?s=20)

💡 

[Spanish Hacker Arrested for Booking Luxury Hotels at 1 Cent Per Night](https://x.com/DarkWebInformer/status/2024217296143610178?s=20)

❗️ 

[A threat actor claims to have exported and then deleted the MySQL databases of All Flying Services.](https://x.com/DarkWebInformer/status/2024223646416240811?s=20)

❗️ 

[Progress Group has fallen victim to The Gentlemen Ransomware](https://x.com/DarkWebInformer/status/2024227924967383495?s=20)

❗️ 

[AdMark Asia Group has fallen victim to INSOMNIA Ransomware](https://x.com/DarkWebInformer/status/2024235726204723303?s=20)

💡 

[X is down again. Guess who isn't down?](https://x.com/DarkWebInformer/status/2024241653234491860?s=20)

❗️ 

[Application Solution Providers, Inc. has fallen victim to INSOMNIA Ransomware](https://x.com/DarkWebInformer/status/2024244282643902477?s=20)

❗️ 

[A threat actor claims to have leaked a partial database from the Kuwait Ministry of Finance (mof.gov.kw), originating from a 2025 Rhysida ransomware attack where the ransom was not paid.](https://x.com/DarkWebInformer/status/2024252219478909330?s=20)

💡 

[Reddit has shut down r/Pragmata\_ for violating its Rule 4, which prohibits sexual or suggestive content involving minors.](https://x.com/DarkWebInformer/status/2024259128412053627?s=20)

[darkwebinformer.com](https://darkwebinformer.com/)· [socials](https://darkwebinformer.com/socials)· [subscribe](https://darkwebinformer.com/pricing) 

© Dark Web Informer. All rights reserved.