🛡️ WINTERGATE INTELLIGENCE COLLECTIVE - TRUSTPILOT UPDATE

Current status: Trustpilot has been silent for over 48 hours.

Timeline update:
- May 29, 12:00 PM: Cloudzy flags legitimate review as "defamatory"
- May 29, 4:13 PM: Trustpilot asks for proof of genuine experience
- May 29, 5:19 PM & 5:22 PM: Evidence provided (receipt, transcripts, 6 security sources, GitHub disclosure)
- May 29, evening: BBB complaint filed. Capterra/SiteJabber reviews posted. infosec.exchange account approved.
- May 30, 8:47 AM: Follow-up email documenting 15+ hours of silence
- May 30, 9:06 AM: Legal notice sent (criminal liability, OFAC sanctions)
- May 30, 9:XX AM: Policy violation notice sent (6 documented violations)
- May 31, 10:05 AM: Final notice sent with 4-day deadline. Identity established as AnonCatalyst, verified security researcher.

Actions taken during Trustpilot's silence:
✅ BBB complaint filed
✅ Capterra review submitted
✅ SiteJabber review live
✅ GitHub disclosure: 118 clones, 68 cloners, 3 documents
✅ Legal notice delivered to [email protected]
✅ Policy notice delivered to [email protected]
✅ Final notice with 4-day deadline delivered to [email protected]

Trustpilot has now violated at least six of their own policies:
1. Removing a genuine review (receipt provided)
2. Removing based on business disagreement (no evidence from Cloudzy)
3. Tolerating flagging tool misuse (Cloudzy's false "defamation" claim)
4. Failing to investigate in a timely manner (48+ hours)
5. No action against Cloudzy for false flagging
6. No transparency, no communication, no decision

Cloudzy remains documented as:
- A front for abrNOC based in Tehran, Iran
- Host of 17+ APT groups (Iran, North Korea, China, Russia)
- Provider to ransomware gangs and US-sanctioned spyware vendors
- Recommended for blocking by Security Risk Advisors

4-day deadline started May 31. If review not restored by June 4, I go fully public:

- Major tech publications (TechCrunch, Ars Technica, The Register, BleepingComputer)
- Formal complaints (FTC, OFAC, NY State Attorney General)
- Public warning: "Trustpilot cannot be trusted"

The security community is watching. The evidence is public. Trustpilot's silence is a choice.

Full documentation:
github.com/WinterGate-IC/cloudzy-upstream-filter-vulnerability

@WinterGateIC
#Trustpilot #Cloudzy #Infosec #ThreatIntel #APT #OFAC #Bugcrowd #VulnerabilityDisclosure

🛡️ WINTERGATE INTELLIGENCE COLLECTIVE - MILESTONE

Not just a review dispute. Not just a disclosure. A full infrastructure takedown.

Cloudzy flagged our Trustpilot review as "defamatory." Trustpilot asked for a receipt.

We gave them:
- Receipt (proof of customer)
- Support transcripts (Cloudzy admitted the issue)
- Conditional refund offer in writing
- Six independent security sources
- Complete GitHub disclosure (118 clones, 68 cloners)

Trustpilot went silent for over 18 hours. So we:
- Filed BBB complaint
- Posted on Capterra and SiteJabber
- Joined infosec.exchange (security community notified)
- Sent legal notice (criminal liability, OFAC sanctions)
- Sent policy violation notice (6 documented violations)

Now submitting the upstream SSH filtering vulnerability to Bugcrowd today or tomorrow.

Professional validation. Potential reward. Permanent record.

Cloudzy thought flagging a review would silence us.

They were wrong.

Full documentation: github.com/WinterGate-IC/cloudzy-upstream-filter-vulnerability

@WinterGateIC
#Bugcrowd #Cloudzy #Trustpilot #Infosec #ThreatIntel #APT #VulnerabilityDisclosure

US internet hosting company appears to facilitate global cybercrime

hosting company Cloudzy either knowingly or unwittingly provides a platform for illicit digital activity linked to #China, #Iran, #NorthKorea, #Russia, #India, #Pakistan and #Vietnam

#Cloudzy #hosting #internet #cybercrime #cyberattack #security #cybersecurity #hackers #hacking

https://cyberscoop.com/internet-hosting-company-global-cybercrime-cloudzy/

US internet hosting company appears to facilitate global cybercrime, researchers say

Cloudzy, an internet hosting company with a New York phone number, may aiding hackers from Iran, Russia and North Korea.

CyberScoop

کلادزی: شرکت ظاهرا آمریکایی وابسته به جمهوری اسلامی و در خدمت کلاهبرداران اینترنتی

یک گزارش پژوهشی می‌گوید شرکت کلادزی #Cloudzy در حقیقت یک شرکت سایه برای شرکت #ابرناک در تهران است و به کلاهبرداران و هکرهای وابسته به حکومت‌های مختلف خدمات ارائه می‌دهد.

https://t.co/cQ1RDrxCvB https://www.radiozamaneh.com/774889?utm_source=dlvr.it&utm_medium=mastodon

Radio Zamaneh on Twitter

“کلادزی: شرکت ظاهرا آمریکایی وابسته به جمهوری اسلامی و در خدمت کلاهبرداران اینترنتی یک گزارش پژوهشی می‌گوید شرکت کلادزی #Cloudzy در حقیقت یک شرکت سایه برای شرکت #ابرناک در تهران است و به کلاهبرداران و هکرهای وابسته به حکومت‌های مختلف خدمات ارائه می‌دهد. https://t.co/fP7Hmu6AQC”

Twitter
"Ransomware Command-and-Control Providers Unmasked by Halcyon Researchers" published by Halcyon. #Cloudzy, #CTI, #OSINT, #LAZARUS https://www.halcyon.ai/blog/report-ransomware-command-and-control-providers-unmasked-by-halcyon-researchers
Report: Ransomware Command-and-Control Providers Unmasked by Halcyon Researchers

Halcyon Blog Post: New research details novel techniques used to unmask a major Ransomware Economy player that is facilitating ransomware attacks and state-sponsored APT operations...

When social media #FaceBook and professional profiles at #LinkedIn of #Cloudzy's workers were investigated, it was discovered that it is actually a company based in #Tehran called #abrNOC
#Cloudzy formerly known as #RouterHosting is a Malta-based company operating in #Wyoming, USA and founded in 2008
Cloud provider #Cloudzy has reportedly been leasing server space and reselling it to some seventeen different state-sponsored #Hacking groups from #China,#Russia,#Iran,#NorthKorea,#India,#Pakistan and #Vietnam.
They have also provided coverage for the operations of two groups dedicated to #Ransomware
But this is only the beginning of the story
Cloud company assisted 17 different government hacking groups -US researchers

An obscure cloud service company has been providing state-sponsored hackers with internet services to spy on and extort their victims, a cybersecurity firm said in <a href="http://www.halcyon.ai/blog/report-ransomware-command-and-control-providers-unmasked-by-halcyon-researchers" target="_blank">a report to be published</a> on Tuesday.

Reuters