Observed arrival · 2026-09-17
The PABAU Leak Page
Credibility concern recorded. The source reference remains available for verification and correction.
A DragonForce-branded extortion page alleging a PABAU intrusion, complete with breach inventory, countdowns, and staged publication threats.
Field notes
The page packages an alleged intrusion as a live incident console, combining attack-path narration with inventory figures, countdowns, mirror status, and a proposed three-stage disclosure sequence. Its account attributes the initial access to an unauthenticated GraphQL introspection endpoint followed by a compromised support workstation, and claims 480,177 password-reset records alongside 479,555 verified email addresses. These figures and the breach itself remain operator assertions rather than independently verified facts.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
One card from the complete issue