Flare Academy Discord

Where analysts trade stealer logs and memes.

4,000+ security people swapping IOCs, arguing about attribution, and posting the cursed screenshot they found at 2am. Run by practitioners, open to anyone curious.
#threat-intel 618 online
Message #threat-intel
What's inside

It's not just threat intel sharing. It's a hangout.

Thirty channels. Real research, live sessions, and a trivia night nobody's manager approved.
V D S
#threat-intel 321 online

Bring your worst IOC. Someone will pick it apart, then someone else will meme it.

Voice · 12 listening
#training-chat after each session

Trainers stick around to answer the questions that didn't fit the slides.

Name that group Leak or LARP Whose C2?
#dark-web-jeopardy community favorite

Categories like "Name that ransomware group." No prizes. Just the answer and everyone's judgment.

All my creds are leaked 💀 42 🔥 17
#watercooler always on

That’s where the meme dump is and where SOC burnout goes to die laughing.

Threat_Hunting_101
40H+
#academy-library 40+ hours

Catch all previous training sessions on replay with over 40 hours of security content at your fingertips.

TLP:AMBER Ransomware feed
#verified verified only

Deeper ransomware feeds and TLP:AMBER research before it goes public.

Darkroom
Mission: Signal Lab 04
Flare Academy Darkroom

Four hours inside a simulated underground.

Darkroom is a free, hands-on lab built from real criminal infrastructure — and it only opens from inside the Discord.
Date
Accessible at Anytime
Runtime
+4 Hours
Price
Free
Credits
CPE
01 / LAB
Work real artifacts.
Self-paced exercises against stealer logs, forum threads and leak-site dumps pulled from the wild.
02 / CERTIFY
Leave with proof.
Finish "Operation: Signal" and earn the Flare Cybersecurity Fundamentals certification, plus CPE credits.
#watercooler

Serious research. Questionable humor.

The stickers are ours. The takes are theirs.
#watercooler Yesterday
K
@kessler_ops Verified 11:26 PM

Watched a new ransomware crew get fully doxed inside a week. Poor opsec is one thing, blaming the researchers who found you is another.

Yeah, I read stealer logs. And?
💀 18 🔥 10 + 7 replies
#darkwebcybercrime 2 days ago
N
@null_bytes Verified 09:02 AM

Someone's vibe-coded chat app shipped the same encryption key to every user. Building software should require a license.

GUI before coffee
😭 31 💀 20 + 14 replies
#threat-intel Last week
R
@ratking_intel Mod 04:47 PM

Every dead marketplace name comes back eventually, just spelled differently. BreachForums, BreachStars, whatever's next.

See the breach before it breaks
👀 12 🔥 7 + 5 replies
Go beyond lurking

Lurkers welcome. Verified analysts get more.

Anyone can join and read along — no badge required. Verify your pro status with a quick video call and the rest of the server opens up.
Get verified
TLP:Amber

Early access to TLP:AMBER research, before it's public.

Alerts

The #verified channel and its deeper ransomware alert feed.

F Research team

A direct line to the research team for AMAs and gut-checks.

R @ratking_intel Verified analyst

A verified-practitioner role that sets you apart in the server.

Get in

Two minutes, and you're in the server.

We keep it tight so the signal stays high.
* Required. Miss one and we'll flag it: "Please complete this required field."
1

We check you're a real human.

Usually instant, sometimes a quick email back.

2

Your invite link appears.

Head straight into the Discord Server and get started.

3

Say hi in #introductions.

Get to know your community members.

No newsletter you didn't ask for, no sales sequence. Leave whenever you want.