PULSE
FEED
vulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScaler
Kalir Brief · Item19 September 2026 · 17:13 UTC
BRIEFLeakhighP78

Customer database of Spanish energy firm Apolo Energía for sale

ApoloEnergia

Detected19 September 2026 · 17:13 UTC
Why it matters

A threat actor is selling a fresh database of roughly 40,000 Apolo Energía customers, an energy utility in Spain. Energy providers are critical infrastructure, so exposed customer PII enables targeted phishing, fraud and account takeover against ratepayers. Defenders should reset credentials and monitor for downstream identity abuse.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score78
Detected19 September 2026 · 17:13 UTC
Related items6
Leak38
Filtración de base de datos de la universidad ucraniana LNPUA database from LNPU, a leading Ukrainian university, was posted on DarkForums. University records typically include staff and student PII that is useful for phishing and fraud. Confirm authenticity and warn the institution.
1h
Leak52
Base de datos de los bancos iraníes Mellat y Melli supuestamente filtradaA database attributed to Iran's Bank Mellat and Bank Melli is circulating, exposing banking customer data. Financial records directly enable fraud and account takeover. Though outside the region, large bank leaks remain relevant to financial-sector defenders watching credential reuse.
1h
Leak58
Filtración privada de 64M de credenciales URL:login:contraseñaA private 64-million-line credential dump in URL:login:password (ULP) format was posted on 19 September 2026. Such stealer logs enable credential stuffing, account takeover and initial access across many organisations. Defenders should correlate it against authentication logs and enforce MFA.
1h
Leak44
Filtracion de base de datos de Noon (Egipto)A database belonging to Noon, a major Middle East e-commerce firm in Egypt, has been posted as leaked. Customer and order records from an e-commerce platform enable phishing, fraud and account takeover. Although outside LATAM, it is a fresh named-organization leak worth tracking.
2h
Leak59
Base de datos de 109.392 usuarios de Coinbase con saldo a la ventaA seller is offering a Coinbase dataset of 109,392 users with balances, indicating account-level financial data. Coinbase credentials and balance data fuel account takeover and targeted crypto theft. Exchange security teams should treat it as a live fraud and credential-stuffing risk.
2h
Leak60
Filtracion de base de datos de BitmainA database attributed to Bitmain, the dominant crypto-mining hardware vendor, has been posted as leaked on BreachForums. Such a leak could expose customer, partner and internal operational data. Bitmain's centrality to global mining makes any confirmed breach notable for supply-chain and financial defenders.
2h