{
  "version": "https://jsonfeed.org/version/1.1",
  "title": "DarkWeb LLC — Insights & Research",
  "home_page_url": "https://darkweb.llc/insights",
  "feed_url": "https://darkweb.llc/feed.json",
  "description": "Original dark web and Telegram threat research, SOC playbooks, and stealer-log intelligence notes from the DarkWeb LLC research team.",
  "icon": "https://darkweb.llc/01.png",
  "favicon": "https://darkweb.llc/favicon.svg",
  "language": "en-US",
  "authors": [
    { "name": "DarkWeb LLC Research", "url": "https://darkweb.llc/", "email": "security@darkweb.llc" }
  ],
  "items": [
    {
      "id": "https://darkweb.llc/insights/telegram-cybercrime-2026",
      "url": "https://darkweb.llc/insights/telegram-cybercrime-2026",
      "title": "State of Telegram cybercrime 2026",
      "summary": "How brokers, infostealer crews, and ransomware affiliates moved into Telegram between 2023 and 2026 — sourced from 61,000+ monitored channels and groups.",
      "date_published": "2026-04-06T09:00:00Z",
      "tags": ["threat-report", "telegram", "cybercrime"]
    },
    {
      "id": "https://darkweb.llc/insights/stealer-log-economy",
      "url": "https://darkweb.llc/insights/stealer-log-economy",
      "title": "Inside the stealer-log economy",
      "summary": "A technical deep-dive into how stealer logs are produced, packaged, resold, and ultimately weaponized for account takeover, ransomware, and BEC.",
      "date_published": "2026-03-18T09:00:00Z",
      "tags": ["article", "stealer-logs", "infostealer"]
    },
    {
      "id": "https://darkweb.llc/insights/identity-exposure-playbook",
      "url": "https://darkweb.llc/insights/identity-exposure-playbook",
      "title": "Identity exposure playbook for SOC teams",
      "summary": "A six-step playbook for SOC analysts to validate, scope, contain, and remediate identity exposure events from underground sources.",
      "date_published": "2026-02-25T09:00:00Z",
      "tags": ["playbook", "soc", "identity"]
    }
  ]
}
