BRIEFLeakhighP48
Chinese on-demand massage app database for sale: 1.8 million users
Detected26 September 2026 · 06:16 UTC
A database with 7.5 million orders and 1.8 million user records from a Chinese on-demand massage platform is offered for sale. It includes therapist and merchant data, enabling targeted fraud and spam. It reflects the ongoing risk that consumer app data is quickly monetized.
CategoryLeak
Severityhigh
Priority score48
Detected26 September 2026 · 06:16 UTC
Leak● 50
Base de datos de la plataforma española etestify.com a la ventaA 7GB SQL dump containing roughly 84,000 members of the Spanish platform etestify.com is being sold. Names, emails and possibly hashed credentials enable credential-stuffing and phishing against Spanish users. Organizations in Spain should monitor for reuse of these accounts.Leak● 74
Base de datos del buró nacional de INTERPOL en Indonesia a la ventaA threat actor is offering a database belonging to INTERPOL's National Central Bureau in Indonesia, posted today. Law-enforcement contact lists, case references and officer PII would enable targeted phishing and impersonation against police. Any agency coordinating with INTERPOL should treat it as a fresh exposure and review credential hygiene.Leak● 68
Filtración de base de datos del courier dominicano AB CourierA database of roughly 263,828 records belonging to the Dominican courier AB Courier (abxcourier.com.do) has been posted on DarkForums. The dataset likely holds customer names, contact details and shipping data, exposing personal information of Dominican residents. This is a fresh Latin American company leak that raises phishing, fraud and identity-theft risk for affected customers.Leak● 47
Filtración de 1 millón de registros URL:LOG:PASS de stealer logsA fresh release on Spear Leaks claims roughly one million URL:LOG:PASS records from malware stealer logs, marked private and high quality. These credentials cover countless consumer and corporate sites, fueling account takeover and credential-stuffing campaigns. It is current (posted within the hour) so credential rotation and monitoring efforts should be prioritized.Leak● 78
Filtración de base de datos vehicular de Santiago de ChileA fresh posting on DarkForums offers a vehicle database tied to Santiago, Chile, likely containing owner PII, plates and registration details. Vehicular registry data is government-adjacent and highly sensitive in LATAM, enabling fraud, tracking and identity theft. It matters now because the post is minutes old and could be mirrored or sold further.Leak● 68
Base de datos de la firma de ciberseguridad SocRadar filtrada y publicadaA BreachForums post publishes and offers for download a leaked SocRadar database. As a widely used threat-intelligence provider, a breach of SocRadar can expose customer lists, monitored findings and internal data, creating follow-on risk for every client it tracks. Organizations relying on or tracked by SocRadar should review this exposure for credential and vendor risk.