PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSS
Kalir Brief · Item12 September 2026 · 02:12 UTC
BRIEFLeakhighP48

Database of citizens' details and banking information for sale

Detected12 September 2026 · 02:12 UTC
Why it matters

A fresh DarkForums listing posted minutes before discovery offers a database described as 'citizens details plus banking information'. If genuine, it enables identity theft, account takeover and financial fraud against the affected population. The originating organization and country are not yet confirmed, so attribution and validation are needed before escalation.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score48
Detected12 September 2026 · 02:12 UTC
Related items6
Leak30
Base de datos de Kerry T. Howe Surveying (Canadá) filtradaA database attributed to the Canadian surveying firm Kerry T. Howe Surveying Ltd has been offered for download on DarkForums. The victim is a small company, so scale is likely limited to client contact and project records. Low regional relevance, but it remains an org-specific leak usable for targeted follow-on attacks.
5m
Leak45
Filtración de base de datos de deudores de Kazajistán, 6,6MA database with roughly 6.6 million debtor records from Kazakhstan has been posted for download on DarkForums. It likely contains personal and financial identifiers of Kazakh citizens and may originate from a financial or state-linked source. Although outside Argentina/LATAM, large national debtors datasets fuel identity theft, fraud and targeted phishing against the affected population.
5m
Leak72
Venta de 1TB de datos filtrados de HIZE Aero, proveedor de BoeingA seller on DarkForums is offering a 1TB archive allegedly exfiltrated from HIZE Aero, a Spanish aerostructures manufacturer that supplies Boeing. Such data can expose design, customer and employee information across the aviation supply chain, enabling further targeted intrusions. Aerospace and defense defenders should treat this as a live supply-chain risk and hunt for related access.
1h
Leak40
Filtración de 49.999 registros de la plataforma BTCONNECT (Reino Unido)The UK crypto platform BTCONNECT had 49,999 user records leaked on a dark-web forum. The capture exposes user contact and account data useful for phishing and account takeover of crypto customers. Dated March 2026, it is not fresh but remains relevant for exposure monitoring.
2h
Leak45
Filtración de 46.000 registros de la plataforma cripto Remote3.coA 46,000-record database from Remote3.co, a crypto/Web3 freelancer platform, is circulating, including developer email addresses. This enables targeted phishing and recruitment scams against Web3 developers and founders. Posted around March 2026, it is aged but still usable for credential stuffing and spear-phishing.
2h
Leak48
Datos de clientes de Binance UK (email, nombre, teléfono) a la ventaA dataset of Binance UK customers' email addresses, names and phone numbers was posted for sale on a dark-web forum. Although limited to contact identifiers rather than passwords or funds, it directly fuels phishing and SIM-swap attacks against crypto users. The listing dates to January 2026, so it is not a new incident.
2h