PULSE
FEED
ransomincransom reclama a AHEAD · US · Not Foundransomincransom reclama a nsbsd.org · US · Government & Defenseransompanzer reclama a Asesoría FAR · Professional Servicesransompanzer reclama a Ressources Si · FR · Professional Servicesransomstorm reclama a First Secure Bank Group · US · Financial Servicesransomqilin reclama a XICO · MX · Not Foundransomqilin reclama a Island · CA · Technologyransomqilin reclama a Revenga Smart Solutions · ES · Technologyransomqilin reclama a Willatt & Flickinger · US · Not Foundransomarcusmedia reclama a Pantaneiro Capas · BR · Manufacturingransomemperador reclama a Car Service Abschlepp · DE · TransportationvulnKEV agrega CVE-2026-88772 — Citrix / NetScalervulnKEV agrega CVE-2026-88771 — Citrix / NetScalerransomm3rx reclama a cipher.systems · US · Technologyransomincransom reclama a AHEAD · US · Not Foundransomincransom reclama a nsbsd.org · US · Government & Defenseransompanzer reclama a Asesoría FAR · Professional Servicesransompanzer reclama a Ressources Si · FR · Professional Servicesransomstorm reclama a First Secure Bank Group · US · Financial Servicesransomqilin reclama a XICO · MX · Not Foundransomqilin reclama a Island · CA · Technologyransomqilin reclama a Revenga Smart Solutions · ES · Technologyransomqilin reclama a Willatt & Flickinger · US · Not Foundransomarcusmedia reclama a Pantaneiro Capas · BR · Manufacturingransomemperador reclama a Car Service Abschlepp · DE · TransportationvulnKEV agrega CVE-2026-88772 — Citrix / NetScalervulnKEV agrega CVE-2026-88771 — Citrix / NetScalerransomm3rx reclama a cipher.systems · US · Technology
Kalir Brief · Item28 September 2026 · 04:48 UTC
BRIEFLeakhighP45

TON private key database posted on DarkForums

TON blockchain

Detected28 September 2026 · 04:48 UTC
Why it matters

A collection claiming to hold TON blockchain private keys was posted on DarkForums, dated 26 Sep 2026. If authentic, exposed private keys let attackers drain associated crypto wallets and impersonate key owners, causing direct financial loss. Defenders in crypto/finance should monitor TON addresses tied to their organizations and enforce key rotation.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score45
Detected28 September 2026 · 04:48 UTC
Related items6
Leak● 45
Filtración de datos antiguos del registro RENAP de GuatemalaA duplicate repost of the same Guatemala RENAP (national persons registry) leak appears on Spear Leaks, again flagged as old data. As with the earlier copy, this is a re-share of previously exposed citizen PII, not a new compromise. Track it for context on Guatemala government exposure, not as a fresh incident.
1h
Leak● 45
Filtración de datos antiguos del registro RENAP de GuatemalaA leak attributed to Guatemala's RENAP (national persons registry) was reposted on Spear Leaks. The data is explicitly flagged as old, so it is most likely a re-share of previously exposed citizen PII rather than a fresh breach. It remains relevant only for tracking cumulative government exposure, not as a live alert.
1h
Leak● 62
Dump de 845.000 registros de universidades tecnológicas estatales de MéxicoA TurkHackTeam post advertises an 845K-record dump of Mexico's state technology universities system, a Latin American public-education/government target. Such data likely includes student and staff PII usable for fraud and phishing against the institution. The post carries no clear date, so recency cannot be confirmed, but the scale and regional government link justify attention.
2h
Leak● 72
Filtración de base de datos del Tecnológico de MonterreyA threat actor freshly posted a database allegedly belonging to Tecnológico de Monterrey, one of Mexico's largest and most prestigious universities, on a dark web forum. The dump likely exposes student, faculty and staff records in bulk. Defenders at the institution and across the regional education sector should treat it as a potential credential and PII exposure.
2h
Leak● 55
Filtración de la base de datos del Hospital Mackay Memorial (Taiwán)A database attributed to Taiwan's Mackay Memorial Hospital (data labeled 2025) has been posted for free on DarkForums, indicating exposure of patient or operational records. Hospital data leaks enable identity theft, extortion and downstream targeting of staff and patients. Defenders in healthcare should treat this as a baseline reminder of third-party/health-sector exposure risk.
3h
Leak● 45
Filtración de documentos técnicos internos del gobierno ruso 2026A leak marketed as Russian government internal engineering technical documents from 2026 is being shared across multiple forums. Such material can reveal infrastructure designs, suppliers and operational details useful for espionage and targeting. It is government-related but outside the LATAM region, so treat it as context rather than a regional alert.
4h