BRIEFLeaklowP42
US criminal database leak of 70 million records
US criminal records
Detected6 October 2026 · 06:07 UTC
A forum posting offers a US criminal-records database containing roughly 70 million records, dated July 2026. Such datasets combine sensitive PII and legal records that can fuel identity theft, doxxing, and social engineering against individuals. While not a fresh alert, its size makes it worth tracking for downstream abuse.
CategoryLeak
Severitylow
Priority score42
Detected6 October 2026 · 06:07 UTC
Leak● 42
Filtración masiva de datos chinos (50.000 millones de registros)A forum user claims to have published a massive collection of Chinese-origin data totaling over 50 billion records in 2026. The scale is implausible and likely exaggerated or reassembled from prior leaks, so confidence is low. Even so, aggregated credential datasets can fuel stuffing and identity fraud, and should be triaged and verified before any action.Leak● 58
Filtración de documento interno de SpaceX (Starshield)An internal SpaceX document describing the Starshield constellation's technical baseline and architecture has been leaked on a dark-web forum. Starshield is the military-focused satellite line, so the document could reveal sensitive capabilities of U.S. defense space infrastructure. Even if partial, it warrants defense and space-sector attention.Leak● 85
Filtración de 7 millones de registros de Santander MéxicoA threat actor claims to have leaked a Santander Bank Mexico database of roughly 7 million records on RaidForums. Santander is one of Mexico's largest banks, so customer PII and financial data at this scale carry serious fraud and phishing risk. Mexican and regional financial-sector defenders should verify the claim and prepare customer-protection measures.Leak● 40
Filtración masiva de datos chinos con 50.000 millones de registrosA forum user claims to have published a collection of leaked Chinese data exceeding 50 billion records. If genuine, this scale of aggregated personal and corporate data poses risks for credential stuffing, fraud, and identity theft on a global scale. Treat the claim with caution given its size, but monitor for downstream credential abuse.Leak● 90
Base de datos del INTT de Venezuela a la ventaA database attributed to Venezuela's INTT transport authority is being offered on a dark-web forum, indicating a possible breach of a government body. If real, it could expose citizen records, credentials and internal systems tied to vehicle and driver registration. Latin American public-sector defenders should treat it as a fresh, high-priority government exposure.Leak● 46
Filtración de base de datos del comercio electrónico surcoreano metree.co.krA threat actor is offering a 2026 database allegedly belonging to South Korean e-commerce site metree.co.kr, posted on DarkForums within the last minutes. It sits outside Latin America, but it is a fresh breach of a named commercial entity likely containing customer PII and order data. Analysts in the region should still track it for credential-reuse risk and the actor's broader targeting pattern.