A threat actor claims to have breached DW.com (DW), a major German public international broadcaster. The actor is offering a database dump for sale for $2,500 in cryptocurrency, allegedly exfiltrated from 15 subdomains of the news company.
The threat actor posted several screenshots from SQL database dumps as proof of the breach.
According to the actor, the compromised data includes information from WordPress databases, such as:
- User email addresses
- User full names
- Internal credentials (e.g., mail server and FTP passwords)
- Website configuration data and options












