Cybersecuritynews Emergence of ALP-001: New Cyber Extortion Site on Dark Web
Article Content
- •ALP-001 is a new Tor-based leak site that has shifted to cyber extortion.
- •The site openly markets itself as a 'Data Leaks / Access Market'.
- •This development reflects a trend among initial access brokers to name victims publicly.
On March 22, 2026, a new Tor-based leak site named ALP-001 surfaced on underground forums, transitioning from selling network access to publicly naming victims. This site markets itself as a 'Data Leaks / Access Market,' indicating a shift towards cyber extortion tactics. The emergence of ALP-001 highlights a growing trend among initial access brokers who are now engaging in direct threats against organizations. Victims of this site could potentially include any corporate entity that has had its data compromised or access sold. The full scope of impact remains unclear as the site is still in its early stages of operation. Cybersecurity professionals are urged to monitor this development closely. The site combines elements of ransomware leak portals with initial access brokerage, suggesting a more aggressive approach to extortion. Current status indicates that the site is operational and actively advertising its services.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…