PULSE
FEED
ransomeclipse reclama a simplexengg.in · IN · Manufacturingransomeclipse reclama a sanjoseattorneys.com · US · Professional Servicesransomsilentransomgroup reclama a Andersen Group Inc. · Professional Servicesransomeclipse reclama a DIPECARR · BR · Otherransomeclipse reclama a Global AirFreight International · SG · Transportationransomrunsomewares reclama a Morton LTC Pharmacy · US · Healthcareransombyod reclama a Some semi-samples Of Liberty X TMO cause we got yappatrons on twitter · Not Foundransomstorm reclama a Cooperative Des Techniciens Ambulanciers De La Monte · CA · Healthcareransomstorm reclama a TheraCare · US · Healthcareransomscarlettgroup reclama a yalebooks.yale.edu · US · Educationransomlockbit5 reclama a capitalbankhaiti.biz · HT · Financial Servicesransomlockbit5 reclama a grunenwald.com · DE · Otherransomlockbit5 reclama a avsa.com.ar · AR · Otherransomnightspire reclama a Nantou Shiuhkuang Senior High School. · TW · Educationransomeclipse reclama a simplexengg.in · IN · Manufacturingransomeclipse reclama a sanjoseattorneys.com · US · Professional Servicesransomsilentransomgroup reclama a Andersen Group Inc. · Professional Servicesransomeclipse reclama a DIPECARR · BR · Otherransomeclipse reclama a Global AirFreight International · SG · Transportationransomrunsomewares reclama a Morton LTC Pharmacy · US · Healthcareransombyod reclama a Some semi-samples Of Liberty X TMO cause we got yappatrons on twitter · Not Foundransomstorm reclama a Cooperative Des Techniciens Ambulanciers De La Monte · CA · Healthcareransomstorm reclama a TheraCare · US · Healthcareransomscarlettgroup reclama a yalebooks.yale.edu · US · Educationransomlockbit5 reclama a capitalbankhaiti.biz · HT · Financial Servicesransomlockbit5 reclama a grunenwald.com · DE · Otherransomlockbit5 reclama a avsa.com.ar · AR · Otherransomnightspire reclama a Nantou Shiuhkuang Senior High School. · TW · Education
Kalir Brief · Item8 October 2026 · 22:21 UTC
BRIEFLeakhighP58

Database of 39,000 Moroccan journalists exposed

Detected8 October 2026 · 22:21 UTC
Why it matters

An actor is dumping a database covering roughly 39,000 Moroccan journalists alongside 30 PDFs, framed as the 'Pegasus state' leaving data open. Such exposure endangers journalists, sources and press-freedom networks, and can enable reprisals and targeted surveillance. It is relevant for cross-border surveillance and media-threat monitoring even outside AR-LATAM.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score58
Detected8 October 2026 · 22:21 UTC
Related items6
Leak● 28
Base de datos filtrada de Phone House EspañaThe Phone House España customer database is circulating for download on a RaidForums clone. Spanish retailer data (names, contact and potentially payment details) can fuel fraud and phishing against Spanish-speaking victims. However the sample appears to be an older leak, so it is not a fresh alert for LATAM defenders.
52m
Leak● 68
Venta de datos CSV de la Facultad de Ciencias de la UNAMThe same actor (LulzSkid) is advertising a CSV of UNAM's Facultad de Ciencias for sale on BreachForums, indicating a monetized leak of a Mexican public university's data. These datasets typically carry student/staff PII and institutional credentials that can fuel phishing and account takeover. It warrants alerting Latin American education and public-sector defenders to monitor for misuse of UNAM-linked identities.
3h
Leak● 72
Filtración de datos CSV de la Facultad de Ciencias de la UNAMA BreachForums actor (LulzSkid) published a CSV dataset belonging to the Facultad de Ciencias of the National Autonomous University of Mexico (UNAM), a flagship Latin American public institution. While the exact record count is not stated, university CSVs usually hold student, academic and staff PII such as names, institutional emails, IDs and possibly password hashes. Defenders in Mexican public-sector and education organizations should treat this as a fresh breach and hunt for exposed credentials and PII reuse.
3h
Leak● 76
Filtración de 7,5 millones de registros de clientes de Momentum TelecomA 7.5M-record customer PII database attributed to Momentum Telecom was freshly posted for download. The data reportedly includes names, home addresses and city details, enabling large-scale phishing, SIM-swap and account-takeover campaigns against subscribers. Telecoms are critical infrastructure, so defenders should correlate the claims with internal breach indicators and notify affected customers.
4h
Leak● 93
Filtración de datos del Gobierno de Mendoza con más de 1M de registros PIIA threat actor posted a database allegedly containing over 1 million PII records belonging to the Government of Mendoza, Argentina, freshly advertised on a leak forum. If authentic, it exposes citizen and employee personal data of a provincial government body, enabling phishing, identity fraud and targeted intrusion against public administration. Argentine government entities should urgently validate the exposure and watch for credential abuse and follow-on attacks.
4h
Leak● 52
Filtración masiva de 110M de credenciales URL:usuario:contraseñaA freshly dated dump claims 110 million URL:login:password stealer-log records, marked private and UHQ. Credential re-use makes this useful for account takeover, credential stuffing and initial access across many organizations. Despite being generic, its scale and recency warrant surfacing for defensive monitoring.
5h