Fulcrumsec

Active
FulcrumSec is a data extortion group active since approximately September 2025, specializing in high-speed exfiltration of cloud-hosted databases by exploiting unrotated API keys and misconfigured cloud permissions rather than deploying encryption, with known victims including Australian fintech youX and LexisNexis.
27 Victims
Apr 30, 2026 First Discovered
Sep 11, 2026 Last Discovered
5 Days Inactive
0% Infostealer
2/4 Sites Online
Known Locations (4)
FulcrumSec
4e3p3in2bl67hxchuwza7qvnpe7pyeloyztr5fnh257fxkovfhappjyd.onion
Index of /Shame
4e3p3in2bl67hxchuwza7qvnpe7pyeloyztr5fnh257fxkovfhappjyd.onion/shame
FulcrumSec
fulcrumsec.net
Index of /Shame
fulcrumsec.net/shame
Victims (27)

Detailed victim list temporarily unavailable

This group has 27 victims. The victim list API is currently responding slowly for this dataset. Country, sector, and infostealer breakdowns are not available at this time. Basic stats (victim count, first/last seen) are shown above from a faster data source.