BRIEFLeaklowP47
South Korean e-commerce metree.co.kr database leaked
metree.co.kr
Detected27 September 2026 · 21:48 UTC
A database belonging to South Korean e-commerce site metree.co.kr has been posted for download, tagged 2026. Customer PII such as emails, addresses and possibly payment details is exposed. The company and its partners should assume customer records are public and notify affected users.
CategoryLeak
Severitylow
Priority score47
Detected27 September 2026 · 21:48 UTC
Leak● 30
Reaparece la filtración de 19 millones de datos de Free.frA repost of the 19-million-record Free.fr (French ISP) database leak is circulating again. Although the breach is not new, the data stays valid for credential stuffing and phishing. French telco customers and firms using Free mail should remain alert to reused passwords.Leak● 33
Filtración de 194.000 credenciales de correo de ItaliaA combolist of about 194,000 Italian email:password credentials is being shared on a leak forum. Such lists feed credential-stuffing and phishing campaigns against Italian services. Organizations with Italian user bases should monitor for reuse and prompt resets.Leak● 38
Filtración de 421.000 credenciales de correo de JapónA list of roughly 421,000 Japanese email:password pairs has been posted and labeled fresh. These credentials enable account takeover and credential stuffing against Japanese services. Defenders should check exposure and force resets for affected corporate mail accounts.Leak● 42
Filtración de 500.000 fullz residenciales de CanadáAbout 500,000 Canadian residential fullz are being shared for free, exposing names, addresses and identity data. This volume of PII fuels identity theft and account takeover. Canadian financial, telecom and retail fraud teams should treat these identities as compromised for KYC screening.Leak● 55
Venta de 500.000 fullz de residentes canadiensesA seller is advertising 500,000 Canadian residential fullz containing full names, dates of birth and additional identity data. The dataset supports account takeover, identity fraud and targeted phishing against the affected residents and the organisations serving them. Defenders should treat it as a large, fresh PII leak even though it is outside the LATAM region.Leak● 62
Filtración de 845K registros de universidades tecnológicas de MéxicoA threat actor on TurkHackTeam is distributing a database dump of roughly 845,000 records from Mexico's public state technology university system. The leak exposes student, staff and institutional data linked to public education in LATAM, enabling phishing, credential stuffing and identity fraud. Defenders in Mexico's public sector should verify the breach and force credential resets.