WinterGate Intelligence Collective👤

1 Followers
2 Following
9 Posts
 WinterGate Intelligence Collective (WIC) is a cybersecurity research initiative focused on infrastructure abuse documentation, threat actor tracking, open vulnerability disclosure, threat intelligence, infrastructure defense, and community empowerment. All research is public. All data is free. No consulting. No private sales. No paywalls. Just evidence and defensive tools for the security community. WIC does not accept payment for disclosures. Infrastructure abusers are documented. The mission is to reveal malicious infrastructure, provide defensive resources, and let the security community decide what to do with the evidence. The account is operated and governed by AnonCatalyst, founder of WIC.
https://wintergate.org🛡️https://opentenebris.org🌐

🛡️ WINTERGATE INTELLIGENCE COLLECTIVE

COMMUNITY ADVISORY: Verified Fraud Pattern

Discord ID: 1487561981706764360
Primary alias: XRT-ARCH / xrarch / Architect

Observed behavior: offers technical services, accepts payment, ceases communication, blocks victim, deletes message history.

Documented losses exceed $200 across multiple victims. PayPal receipts and interaction logs preserved.

Location cluster: Salt Lake City, Utah, USA (University of Utah vicinity)||
||Time activity consistent with Mountain Time zone

Status: GateKeeper blacklist (Threat Score 100/100). Investigation ongoing.

If you have relevant information or have interacted with this individual, please reach out via DM.

@WinterGateIC
#FraudAlert #OSINT #CommunitySafety

🛡️ WINTERGATE INTELLIGENCE COLLECTIVE - TRUSTPILOT UPDATE

Current status: Trustpilot has been silent for over 48 hours.

Timeline update:
- May 29, 12:00 PM: Cloudzy flags legitimate review as "defamatory"
- May 29, 4:13 PM: Trustpilot asks for proof of genuine experience
- May 29, 5:19 PM & 5:22 PM: Evidence provided (receipt, transcripts, 6 security sources, GitHub disclosure)
- May 29, evening: BBB complaint filed. Capterra/SiteJabber reviews posted. infosec.exchange account approved.
- May 30, 8:47 AM: Follow-up email documenting 15+ hours of silence
- May 30, 9:06 AM: Legal notice sent (criminal liability, OFAC sanctions)
- May 30, 9:XX AM: Policy violation notice sent (6 documented violations)
- May 31, 10:05 AM: Final notice sent with 4-day deadline. Identity established as AnonCatalyst, verified security researcher.

Actions taken during Trustpilot's silence:
✅ BBB complaint filed
✅ Capterra review submitted
✅ SiteJabber review live
✅ GitHub disclosure: 118 clones, 68 cloners, 3 documents
✅ Legal notice delivered to [email protected]
✅ Policy notice delivered to [email protected]
✅ Final notice with 4-day deadline delivered to [email protected]

Trustpilot has now violated at least six of their own policies:
1. Removing a genuine review (receipt provided)
2. Removing based on business disagreement (no evidence from Cloudzy)
3. Tolerating flagging tool misuse (Cloudzy's false "defamation" claim)
4. Failing to investigate in a timely manner (48+ hours)
5. No action against Cloudzy for false flagging
6. No transparency, no communication, no decision

Cloudzy remains documented as:
- A front for abrNOC based in Tehran, Iran
- Host of 17+ APT groups (Iran, North Korea, China, Russia)
- Provider to ransomware gangs and US-sanctioned spyware vendors
- Recommended for blocking by Security Risk Advisors

4-day deadline started May 31. If review not restored by June 4, I go fully public:

- Major tech publications (TechCrunch, Ars Technica, The Register, BleepingComputer)
- Formal complaints (FTC, OFAC, NY State Attorney General)
- Public warning: "Trustpilot cannot be trusted"

The security community is watching. The evidence is public. Trustpilot's silence is a choice.

Full documentation:
github.com/WinterGate-IC/cloudzy-upstream-filter-vulnerability

@WinterGateIC
#Trustpilot #Cloudzy #Infosec #ThreatIntel #APT #OFAC #Bugcrowd #VulnerabilityDisclosure

🛡️ WINTERGATE INTELLIGENCE COLLECTIVE - MILESTONE

Not just a review dispute. Not just a disclosure. A full infrastructure takedown.

Cloudzy flagged our Trustpilot review as "defamatory." Trustpilot asked for a receipt.

We gave them:
- Receipt (proof of customer)
- Support transcripts (Cloudzy admitted the issue)
- Conditional refund offer in writing
- Six independent security sources
- Complete GitHub disclosure (118 clones, 68 cloners)

Trustpilot went silent for over 18 hours. So we:
- Filed BBB complaint
- Posted on Capterra and SiteJabber
- Joined infosec.exchange (security community notified)
- Sent legal notice (criminal liability, OFAC sanctions)
- Sent policy violation notice (6 documented violations)

Now submitting the upstream SSH filtering vulnerability to Bugcrowd today or tomorrow.

Professional validation. Potential reward. Permanent record.

Cloudzy thought flagging a review would silence us.

They were wrong.

Full documentation: github.com/WinterGate-IC/cloudzy-upstream-filter-vulnerability

@WinterGateIC
#Bugcrowd #Cloudzy #Trustpilot #Infosec #ThreatIntel #APT #VulnerabilityDisclosure