BRIEFLeakhighP78
Customer database of Spanish energy firm Apolo Energía for sale
ApoloEnergia
Detected19 September 2026 · 17:13 UTC
A threat actor is selling a fresh database of roughly 40,000 Apolo Energía customers, an energy utility in Spain. Energy providers are critical infrastructure, so exposed customer PII enables targeted phishing, fraud and account takeover against ratepayers. Defenders should reset credentials and monitor for downstream identity abuse.
CategoryLeak
Severityhigh
Priority score78
Detected19 September 2026 · 17:13 UTC
Leak● 38
Filtración de base de datos de la universidad ucraniana LNPUA database from LNPU, a leading Ukrainian university, was posted on DarkForums. University records typically include staff and student PII that is useful for phishing and fraud. Confirm authenticity and warn the institution.Leak● 52
Base de datos de los bancos iraníes Mellat y Melli supuestamente filtradaA database attributed to Iran's Bank Mellat and Bank Melli is circulating, exposing banking customer data. Financial records directly enable fraud and account takeover. Though outside the region, large bank leaks remain relevant to financial-sector defenders watching credential reuse.Leak● 58
Filtración privada de 64M de credenciales URL:login:contraseñaA private 64-million-line credential dump in URL:login:password (ULP) format was posted on 19 September 2026. Such stealer logs enable credential stuffing, account takeover and initial access across many organisations. Defenders should correlate it against authentication logs and enforce MFA.Leak● 44
Filtracion de base de datos de Noon (Egipto)A database belonging to Noon, a major Middle East e-commerce firm in Egypt, has been posted as leaked. Customer and order records from an e-commerce platform enable phishing, fraud and account takeover. Although outside LATAM, it is a fresh named-organization leak worth tracking.Leak● 59
Base de datos de 109.392 usuarios de Coinbase con saldo a la ventaA seller is offering a Coinbase dataset of 109,392 users with balances, indicating account-level financial data. Coinbase credentials and balance data fuel account takeover and targeted crypto theft. Exchange security teams should treat it as a live fraud and credential-stuffing risk.Leak● 60
Filtracion de base de datos de BitmainA database attributed to Bitmain, the dominant crypto-mining hardware vendor, has been posted as leaked on BreachForums. Such a leak could expose customer, partner and internal operational data. Bitmain's centrality to global mining makes any confirmed breach notable for supply-chain and financial defenders.