BRIEFLeakhighP56
AT&T database (176M records) posted on forum
AT&T Inc.
Detected3 October 2026 · 05:03 UTC
A 176-million-record AT&T (att.com) dataset has been posted on a breach forum. AT&T is critical telecommunications infrastructure, so customer data at this scale carries severe fraud and SIM-swap risk. However the dataset may be a re-post of previously disclosed AT&T breaches, so it should be validated for novelty before alerting.
CategoryLeak
Severityhigh
Priority score56
Detected3 October 2026 · 05:03 UTC
Leak● 52
Filtración de datos del Ministerio de Educación de Indonesia (14,5 millones)A large dataset attributed to Indonesia's Ministry of Education and Culture (KEMDIKBUD), covering 2020-2025 and roughly 14.5 million records, is being circulated on a leak forum. It exposes government-collected personal and administrative data, which can fuel identity fraud and targeted social engineering against citizens and officials. It matters as a sizeable public-sector breach even though the victim is outside Latin America.Leak● 78
Filtración de base de datos de todos los estudiantes de BoliviaA forum post published minutes ago claims a database covering every student in Bolivia. If genuine, it exposes large-scale PII (names, IDs, contact and academic data) of minors and citizens nationwide. It matters for AR-LATAM defenders because student records enable identity theft, phishing and fraud against a national population.Leak● 52
Base de datos de clientes de MUFG Brasil a la venta (1,3M)A seller is offering a database of 1.3 million Mitsubishi UFJ Financial Group clients in Brazil linked to oil, gas and metal-mining trading. Financial PII at this scale enables targeted fraud, vishing and social engineering against high-value clients. Brazilian financial-sector defenders should hunt for credential reuse and pretexting attempts.Leak● 66
Filtración de datos de la operadora brasileña VivoA data dump attributed to Brazilian telecom operator Vivo was posted in early August 2026. Telecom operators are critical infrastructure, and subscriber data leaks fuel SIM-swap, account takeover and targeted phishing. Brazilian telco defenders should verify the scope, check for credential reuse and notify affected subscribers.Leak● 72
Filtración de base de datos de la Clínica OultonA database allegedly belonging to Clínica Oulton, an Argentine private health provider, was posted for download very recently. Health records are highly sensitive, and such leaks enable medical identity theft, extortion and targeted scams against patients and staff. Argentine healthcare entities should assess the exposure and warn affected individuals.Leak● 76
Filtración de base de datos del TECNM México (9,9M)A threat actor published a database tied to Mexico's TECNM, the national technological institute, containing about 9.97 million rows of likely student and staff records. As a public government-linked education body, the exposure enables phishing, credential stuffing and identity fraud at scale. Mexican public-education defenders should treat this as a fresh incident and start credential rotation and monitoring.