<p class="isSelectedEnd">TraceX Labs, an Indian cybersecurity and threat intelligence company, has identified a dark web portal where a threat actor group calling itself “ANONYMOUS HOTZ /// APT” is claiming responsibility for the recent global outage affecting Instagram and Facebook services.</p><p class="isSelectedEnd">The dark web page surfaced shortly after millions of users worldwide reported issues accessing Meta-owned platforms on June 12, 2026. During the outage, users experienced login failures, mobile app crashes, feed refresh issues, and website errors across multiple countries.</p><p class="isSelectedEnd">According to investigators at TraceX Labs, the hidden service primarily loads in Chinese language by default while also providing an English translation option.</p><p class="isSelectedEnd">Dark web onion link identified during the investigation:</p><p class="isSelectedEnd"><a href="http://snicftgczh2ykx63skfevccrjrnmzbsqtje3zfdmgoruggm6psqnkpid.onion/">http://snicftgczh2ykx63skfevccrjrnmzbsqtje3zfdmgoruggm6psqnkpid.onion/</a></p><h2>Threat Actor Claims DDoS Attack on Meta Infrastructure</h2><p class="isSelectedEnd">The translated content reviewed by TraceX Labs researchers claims that the actor carried out a Distributed Denial-of-Service (DDoS) attack targeting Meta Platforms infrastructure.</p><p class="isSelectedEnd">One message displayed on the portal states:</p><p class="isSelectedEnd">“On 12 June 2026, we executed a Distributed Denial of Service (DDoS) attack against Meta Platforms global infrastructure.”</p><p class="isSelectedEnd">The page further claims that Instagram and Facebook services were “taken offline globally,” causing widespread disruption lasting more than six hours.</p><p class="isSelectedEnd">The portal also warns of another larger attack allegedly planned within the next 30 days.</p><h2>$100,000 USDT Ransom Demand</h2><p class="isSelectedEnd">The dark web page includes a ransom demand of $100,000 USD payable in USDT (TRC20) cryptocurrency.</p><p class="isSelectedEnd">Wallet address displayed on the portal:</p><p class="isSelectedEnd">TKjqghf5aYdnpE4ZXFexZd1HYRrYC1EVXa</p><p class="isSelectedEnd">The threat actor claims that failure to pay could result in another wave of attacks targeting Meta infrastructure.</p><p class="isSelectedEnd">The portal contains several threatening messages, including:</p><p class="isSelectedEnd">“Failure to pay equals permanent Meta takedown.”</p><p class="isSelectedEnd">Another section warns of:</p><p class="isSelectedEnd">“Full infrastructure collapse | 14+ days offline | Complete service destruction.”</p><h2>Key Findings from TraceX Labs Investigation</h2><table><tbody><tr><th>Item</th><th>Detail</th></tr><tr><td>Investigating organization</td><td>TraceX Labs</td></tr><tr><td>Country</td><td>India</td></tr><tr><td>Threat actor alias</td><td>ANONYMOUS HOTZ /// APT</td></tr><tr><td>Portal language</td><td>Chinese by default with English translation</td></tr><tr><td>Claimed attack</td><td>DDoS on Meta infrastructure</td></tr><tr><td>Claimed affected services</td><td>Instagram and Facebook</td></tr><tr><td>Claimed outage duration</td><td>6+ hours</td></tr><tr><td>Ransom amount</td><td>$100,000 USDT (TRC20)</td></tr><tr><td>Wallet address</td><td>TKjqghf5aYdnpE4ZXFexZd1HYRrYC1EVXa</td></tr><tr><td>Onion link</td><td><a href="http://snicftgczh2ykx63skfevccrjrnmzbsqtje3zfdmgoruggm6psqnkpid.onion/">http://snicftgczh2ykx63skfevccrjrnmzbsqtje3zfdmgoruggm6psqnkpid.onion/</a></td></tr><tr><td>Technical proof provided</td><td>None identified</td></tr></tbody></table><h2>No Verified Technical Evidence Yet</h2><p class="isSelectedEnd">Although the Instagram and Facebook outage itself was real and widely reported globally, TraceX Labs states that there is currently no verified technical evidence proving that the disruption was caused by the threat actor behind the dark web portal.</p><p class="isSelectedEnd">At the time of publication:</p><ul data-spread="false"><li>Meta has not confirmed any cyberattack.</li><li>No forensic indicators linking the outage to a DDoS attack have been publicly released.</li><li>No technical logs or infrastructure evidence have been shared by the actor.</li></ul><p class="isSelectedEnd">Cybersecurity researchers believe the outage may also have resulted from infrastructure failures, routing issues, or internal configuration-related technical problems rather than malicious external activity.</p><h2>Meta Yet to Release Official Root Cause</h2><p class="isSelectedEnd">Meta acknowledged the outage publicly and confirmed that restoration efforts were underway. However, the company has not commented on the dark web claims identified by TraceX Labs.</p><p class="isSelectedEnd">No official root cause analysis has yet been released.</p><h2>TraceX Labs Advisory</h2><p class="isSelectedEnd">TraceX Labs advises the public and media organizations to avoid spreading unverified cyberattack claims without technical confirmation.</p><p class="isSelectedEnd">The company recommends:</p><ul data-spread="false"><li>Do not engage with extortion demands or cryptocurrency wallets.</li><li>Wait for official investigations before attributing outages to cyberattacks.</li><li>Exercise caution while accessing dark web infrastructure and onion services.</li><li>Monitor verified cybersecurity intelligence sources for updates.</li></ul><h2>Conclusion</h2><p class="isSelectedEnd">At present, the claims made by “ANONYMOUS HOTZ /// APT” remain unverified. While the timing of the dark web post coincides with the global Instagram and Facebook outage, there is currently no confirmed evidence proving the actor was responsible for the disruption.</p><p class="isSelectedEnd">TraceX Labs continues to monitor the dark web portal, associated cryptocurrency activity, and emerging threat intelligence related to the incident.</p><p class="isSelectedEnd">About TraceX Labs:</p><p>TraceX Labs is an Indian cybersecurity and threat intelligence company specializing in malware analysis, dark web intelligence, cyber investigations, AI-powered security research, and digital threat monitoring.</p>
from
www.sikkimexpress.com
https://ift.tt/2Aif7Fj
via IFTTT
The Menu of this blog is loading..........
0 Comments