Funksec

Parsing : Enabled

Description

Funksec, a double extortion ransomware group, emerged in late 2024 and quickly gained notoriety by breaching databases and selling access to 15 government websites within just a month. Claiming to be entirely self-taught and operating without collaboration from other groups, Funksec is a four-member team driven primarily by financial motives.

The group leverages AI for specific tasks, such as creating tools and phishing templates, though they emphasize that AI contributes to only about 20% of their operations. Notably, they have developed their own proprietary AI tool, WormGPT, a desktop application built entirely in-house.

To enhance their phishing campaigns, Funksec uses premium services like PhishingBox to create customized phishing templates, adding another layer of precision and sophistication to their methods.

After the interview, during some casual chit-chat, it came to light that the owner of Funksec was also behind an underground forum called DarkZone, which had been built in collaboration with GhostSec in the past.

https://osint10x.com/threat-actor-interview-spotlighting-on-funksec-ransomware-group/

Session
0538d726ae3cc264c1bd8e66c6c6fa366a3dfc589567944170001e6fdbea9efb3d
Other
https://miniapps.ai/funksec
Urls
Screen
http://7ixfdvqb4eaju5lzj4gg76kwlrxg4ugqpuog5oqkkmgfyn33h527oyyd.onion/
Screen
http://pke2vht5jdeninupk7i2thcfvxegsue6oraswpka35breuj7xxz2erid.onion/
Screen
http://ykqjcrptcai76ru5u7jhvspkeizfsvpgovton4jmreawj4zdwe4qnlid.onion/
Screen
http://funknqn44slwmgwgnewne6bintbooauwkaupik4yrlgtycew3ergraid.onion/
Screen
http://funkxxkovrk7ctnggbjnthdajav4ggex53k6m2x3esjwlxrkb3qiztid.onion/
Screen
http://funkiydk7c6j3vvck5zk2giml2u746fa5irwalw2kjem6tvofji7rwid.onion/
Screen
http://funk4ph7igelwpgadmus4n4moyhh22cib723hllneen7g2qkklml4sqd.onion/
Screen
http://funkyiazgfsrxrib6rnxbhkgfqi7isisfbqnwk2ycf7tpgfhtevlamad.onion/
Screen
http://funksec.top/
Screen
http://funksec53xh7j5t6ysgwnaidj5vkh3aqajanplix533kwxdz3qrwugid.onion/
Screen
http://funksecsekgasgjqlzzkmcnutrrrafavpszijoilbd6z3dkbzvqu43id.onion/
Screen
http://funksec7vgdojepkipvhfpul3bvsxzyxn66ogp7q4pptvujxtpyjttad.onion/
Screen
File servers
Screen
Chat servers
Screen
http://funk45xqgrkrtej4743evcgv65oi3w4shwvjx3cvrdtqwul7gzkxuxqd.onion/
Screen
Admin servers
Screen

Posts

Date Title Description Screen
2025-02-21
Hexagon extortion
Screen
2025-02-19
rossmanmedia.ae
Screen
2025-02-19
rossmanmedia.ae seized by usa
Screen
2025-02-18
footballticketnet.com
Screen
2025-02-17
hiway.com.br
Screen
2025-02-16
fasttrackcargo.com
Screen
2025-02-16
dms-ksa.com
Screen
2025-02-14
fasttrackcargo.com About fasttrackcargo.com Fast Track Cargo is a logistics and transportation company offering a range of services, including air cargo, ocean freight, customs clearance, warehousing, and land freight. Established in 2012, the company is headquartered in Guangzhou, China, with additional offices in Dubai, UAE; Jeddah, Saudi Arabia; and Kerala, India< What we exfiltrated Full website data
Screen
2025-02-14
forum-rainbow-rp.forumotion.eu forum-rainbow-rp.forumotion.eu first one this forum controlled by funksec , we make ad here : https://forum-rainbow-rp.forumotion.eu/d10865279-classifieds
Screen
2025-02-14
Script kiddies & newbe researchers Script kiddies with researchers after target script kiddies and researchers and effect in 500 users in one day , this is data stolen from they devices , we will put half files , this is test for funksec 2.0
Screen
2025-02-14
tsmx.net.br About tsmx.net.br is system managment help users to manage thier websites and organizations. full website backup by enc formate , some xls and pdfs extract from website , 600MB
Screen
2025-02-14
treehotel.co.uk About treehotel.co.uk Treehotel.co.uk refers to the website for a unique hotel concept based in the UK, where guests stay in individual treehouses rather than traditional hotel rooms. These treehouses are typically designed with a strong emphasis on nature, comfort, and an immersive experience that allows guests to feel connected to the environment What we exfiltrated we controlled the hotel and add all guests VIP , full data of guests and website
Screen
2025-02-14
dms-ksa.com About dms-ksa.com Digital Myth Solutions (DMS) is a leading technology Value-Added distributor with a wide network of partners across the Kingdom of Saudi Arabia, the company distributes a wide range of solutions and products covering IP Telephony, Unified Communications, Call Center, VOIP Security, Video Conferencing, Smart Intercom, Audio-Visual, infrastructure, GPS Tracking, and IoT. - Assets, Driver, service & renewals, geofence, admin and Financial summary reports
Screen
2025-02-14
myisp.live About myisp.live Internet Service Provider Company . - 100k users informations , sellers users have " username,password,userfname,userlname,email,phonenumber,mobilenumber,blockuser,address,address2,notes,staticip,building,cardBalance,dateentered,expirydate,sellingprice,planname" , reports with more then 700 files etc , full raduis backup
Screen
2025-02-14
inmobiliariamaspormenos.com About inmobiliariamaspormenos.com Management and sale of bank-owned properties and developments (REO). They offer clients numerous advantages and services in purchasing or selling properties without extra costs, aiming for full satisfaction of all parties involved. Understanding that clients seek the best deals and significant discounts, they negotiate directly with banks and development companies for maximum benefits. Their multilingual specialist teams provide unbiased information and support to ensure satisfaction with every transaction. - Future plans and products plans , reports and other
Screen
2025-02-14
fiberskynet.net About FiberSkynet FiberSkynet is an internet service provider (ISP) based in Broummana, Lebanon. They offer high-speed, reliable, and affordable internet connectivity for both households and businesses. Their services include unlimited data plans, streaming services, and IPTV with over 500 channels. They also provide a media pack that comes prepackaged with their internet services - 500MB database , full transactions with 100k number , users data , phones gmails hash IDs , full Raduis data etc auctions start in 2/10/2025 : http://funkhnsbaxojjjju65bhc7xuidjwvmwhdmgarvhbhs3szqkpzkmvnvid.onion/product/details/fiberskynetnet/5
Screen
2025-02-14
tirtaraharja.co.id About tirtaraharja.co.id Perumda Air Minum Tirta Raharja is a regional drinking water company in Indonesia, dedicated to providing clean and safe drinking water to its customers. The company has received multiple accolades for its commitment to innovation and service excellence. Notably, in August 2024, it secured four awards at the PERPAMSI Award event, including First Place in Best Innovation Technology and Best Digital Innovation we are selling the access of SCADA system who controll the piplines with 1k dollars in auction FunkBID auction start in 2/5/2025 : http://funkhnsbaxojjjju65bhc7xuidjwvmwhdmgarvhbhs3szqkpzkmvnvid.onion/product/details/tirtaraharjacoid/6
Screen
2025-02-14
hreu.eu About hreu.eu HrEU is a human resources agency specializing in connecting talented individuals with job opportunities across various sectors, including IT & Technical Support, Production & Logistics, Sales & Marketing, and Outsourcing & Call Centers. They offer services such as vocational training, professional development, and language courses to support both job seekers and employers. Additionally, HrEU provides logistical and psychological support for job seekers, assistance with employment contracts, work permits, visas, accommodation, and ensures compliance with employment agreements. What we exfiltrated - first-last name, passport number, cellphone number, Email, Social links, Address, Citizen, BOD, ID cards, Masters, Phd, Certificates, recognize job, lets say whole biography of the person | Size 3.48 GB Auctions start 2/05/2025: Click FunkBID
Screen
2025-02-14
punjab.gov.in punjab.gov.in What we exfiltrated PDfs , 1GB data reports , phones , banks accounts , Full Addrss , Scheme , PLA Number , Age , Gender , Aadhaar , Number , Bank Name etc , data will be put in FunkBID
Screen
2025-02-14
Breached brainsystem.eu No pay, will be leaked. brainsystem.eu 400GB for free to download Cloud system https://cloud.brainsystem.eu/login user: admin pass: BigBang890: https://cloud.brainsystem.eu/s/fFMTOWfnoKmYX0Z pass : BigBang890: https://cloud.brainsystem.eu/s/nBgVIkmfXtokdUr pass : BigBang890:
Screen
2025-02-14
cara.com.my
Screen
2025-02-14
rattelacademy.com
Screen
2025-02-14
autogedal.ro
Screen
2025-02-14
iaaglobal.org
Screen
2025-02-14
herbalcanadaonline.com
Screen
2025-02-14
phidac.be
Screen
2025-02-14
avtovelomoto.by
Screen
2025-01-28
FunkBID
Screen
2025-01-28
tsmx.net.br
Screen
2025-01-27
treehotel.co.uk
Screen
2025-01-27
qed.co.ug
Screen
2025-01-26
achieverssciencejournal.org
Screen
2025-01-26
FunkYkosmos
Screen
2025-01-26
punjab.gov.in
Screen
2025-01-26
ransom price is 10k for all
Screen
2025-01-24
genrepurchase.bankatm.in
Screen
2025-01-23
punjab.gov.pk
Screen
2025-01-23
Funkforum is up now
Screen
2025-01-22
iptime.com
Screen
2025-01-21
navy-mil-bd
Screen
2025-01-21
ayswrewards.cow
Screen
2025-01-21
kfar-yona.muni.il
Screen
2025-01-21
insta.com.pk
Screen
2025-01-21
cu-barika.dz
Screen
2025-01-21
thecitybank.com
Screen
2025-01-17
funkforum update
Screen
2025-01-17
aquamanaesp.gov.co
Screen
2025-01-15
mts.gov.eg
Screen
2025-01-15
barilga.gov.mn
Screen
2025-01-14
Funksec x FSOCIETY
Screen
2025-01-14
announcement
Screen
2025-01-14
bluai.ai
Screen
2025-01-13
Funksec 2.0
Screen
2025-01-13
kuzstu-nf.ru
Screen
2025-01-13
equitiesnagain.com
Screen
2025-01-13
scps.mp.gov.in
Screen
2025-01-13
deportesapalategui.com
Screen
2025-01-13
technotouch.co
Screen
2025-01-13
gsw.co.in
Screen
2025-01-13
ribernuez.com
Screen
2025-01-13
bayan-ulgii.cfga.gov.mn
Screen
2025-01-13
senergy.net
Screen
2025-01-13
ndceg.com
Screen
2025-01-13
seocommarrakech.com
Screen
2025-01-13
mindev.gov.gr
Screen
2025-01-13
carc.gov.jo
Screen
2025-01-13
wissenhive.com
Screen
2025-01-13
linxe.com
Screen
2025-01-13
zapopan.gob.mx
Screen
2025-01-13
portal.checkpoint.com
Screen
2025-01-13
mymobileforms app
Screen
2025-01-13
cms.therecord.media
Screen
2025-01-13
Behind funksec
Screen
2025-01-13
Check Updates
Screen
2025-01-07
bayan-ulgii.cfga.gov.mn deface
Screen
2025-01-07
ribernuez.com ransom
Screen
2025-01-07
Avast Premium Security free
Screen
2025-01-07
Funksec V1.5
Screen
2025-01-04
Funksec V1.2
Screen
2025-01-04
Welcome to BlackZone
Screen
2025-01-04
technotouch.co ransom
Screen
2024-12-29
deportesapalategui.com Ransom
Screen
2024-12-28
Update onion address
Screen
2024-12-27
shoppingcentropioneer.com
Screen
2024-12-27
Sell Access to 60 Websites Worldwide importnat
Screen
2024-12-27
asjp.cerist.dz
Screen
2024-12-27
nppvlxdthanhlong.com.vn
Screen
2024-12-27
JQRAXY HVNC
Screen
2024-12-25
devoutdigital.com
Screen
2024-12-25
2 million Iranian records for sell
Screen
2024-12-25
netox.net
Screen
2024-12-24
2sign.co.il
Screen
2024-12-24
asjp.cerist.dz access sell
Screen
2024-12-24
itc.gov.ae access with 1K !
Screen
2024-12-24
egyptair.com 5 access sell
Screen
2024-12-23
egyptair.com 5 access with 10K !
Screen
2024-12-23
kfar-yona.muni.il Full Data
Screen
2024-12-23
10M israeli data for sell
Screen
2024-12-23
asiapacfish.org
Screen
2024-12-22
visualsystemas.com.ar access
Screen
2024-12-22
casarom.com.ar
Screen
2024-12-22
gtsportcarrental.com has been hacked
Screen
2024-12-22
Hello twitter
Screen
2024-12-21
First and Last warn
Screen
2024-12-21
news.gdi.gov.kh
Screen
2024-12-21
fusioncharts.com
Screen
2024-12-21
carsbeat.com
Screen
2024-12-20
ndc.energy.mn
Screen
2024-12-19
sklepbaterie.pl
Screen
2024-12-19
web.vaips.cl V1
Screen
2024-12-19
USA Sectors databases
Screen
2024-12-19
agti.eng.br
Screen
2024-12-18
FunkLocker ChatGpt react
Screen
2024-12-18
seaislerealty.com
Screen
2024-12-18
chixking.ca
Screen
2024-12-18
flybase.org
Screen
2024-12-18
Nathan American Academy
Screen
2024-12-18
robertfinaleeditions
Screen
2024-12-18
abd-ong.org
Screen
2024-12-17
dinamalar.com
Screen
2024-12-17
ibram.org.br
Screen
2024-12-17
pbos.gov.pk
Screen
2024-12-17
rtdc.gov.mn
Screen
2024-12-15
akobdc.com
Screen
2024-12-15
indianaerospaceand
Screen
2024-12-15
arkajainuniver
Screen
2024-12-15
gstpam.org
Screen
2024-12-15
rangiamb.org.in
Screen
2024-12-15
pathsalatc.org.in
Screen
2024-12-15
ekitistate.gov.ng
Screen
2024-12-14
maxprofit.mcode.me access
Screen
2024-12-14
skopje.gov.mk access
Screen
2024-12-14
zetech.ac.ke access
Screen
2024-12-13
lamundialdeseguros
Screen
2024-12-13
bee-insurance.com
Screen
2024-12-13
lamundialdeseguros.com
Screen
2024-12-13
fuse.io
Screen
2024-12-13
lakhipurmb.org.in
Screen
2024-12-11
mandiricoal.net Breach
Screen
2024-12-11
dealplexus.com Breach
Screen
2024-12-11
quiztarget.com
Screen
2024-12-10
www.appicgarage.com Breach
Screen
2024-12-10
wacer.com.au Breach
Screen
2024-12-10
thebetareview.com Breach
Screen
2024-12-10
senseis.xmp.net Breach
Screen
2024-12-10
fpsc-anz.com Breach
Screen
2024-12-10
kurosu.com.py
Screen
2024-12-10
workers.com.zm
Screen
2024-12-10
workers.com.zm Breach
Screen
2024-12-10
kurosu.com.py Breach
Screen
2024-12-09
singularanalysts.com Breach
Screen
2024-12-09
gervetusa.com Breach
Screen
2024-12-09
precisediagnosticspacs warn
Screen
2024-12-09
pti.agency breach
Screen
2024-12-09
sincorpe.org.br breach
Screen
2024-12-08
singularanalysts.com Ransom
Screen
2024-12-08
spdyn.de technology breach
Screen
2024-12-08
Funksec group
2024-12-08
Zero 5 Breached soon
2024-12-08
uniaomarmores Breached soon
2024-12-08
HostingExpress.com.mx
Screen
2024-12-08
FunkLocker announcement
Screen
2024-12-08
USA Network database
Screen
2024-12-08
Smart-it-partner Database
Screen
2024-12-08
x-cart automotive breach
Screen
2024-12-08
albazaar V1 breach
Screen
2024-12-08
uniamarmores company
Screen
2024-12-08
zero5 company
Screen
2024-12-08
ncfe.org.in breach
Screen
2024-12-08
FunkLocker
Screen
2024-12-07
ayswrewards breach
Screen
2024-12-07
funklocker announcement
Screen
2024-12-06
edizionidottrinari breach
Screen
2024-12-06
altuslab breach
Screen
2024-12-06
ctsjo.com breach
Screen
2024-12-06
mtgazeta.uz breach
Screen
2024-12-04
uniaomarmores
Screen
2024-12-04
zero5 breach
Screen
2024-12-04
kingdom breach
Screen
2024-12-04
albazaar.shop V1 breach
Screen
2024-12-04
rscn.org.jo breach
Screen
2024-12-04
verificativa breach
Screen
2024-12-04
intbizth breach
Screen
2024-12-04
xui.one breach
Screen
2024-12-04
x-cart breach
Screen
2024-12-04
IFA Paris breach
Screen
2024-12-04
styched breach
Screen
2024-12-04
Smart it partner breach
Screen
2024-12-04
USA Network breach
Screen