PULSE
FEED
vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / Artifactory
Kalir Brief · Item22 September 2026 · 20:43 UTC
BRIEFLeakhighP45

Meituan China database offered for sale

Meituan

Detected22 September 2026 · 20:43 UTC
Why it matters

A seller is offering a database belonging to Meituan, one of China's largest consumer and local-services platforms, claiming consumer and merchant records. If authentic, this is a large-scale PII leak relevant to fraud and account-takeover risk. Scope should be verified; the region focus is outside AR-LATAM but the potential scale is significant.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score45
Detected22 September 2026 · 20:43 UTC
Related items6
Leak44
Combolist de 400.000 credenciales de Coinbase filtradoA mirrored post duplicates the 400,000 email-and-password Coinbase combo list with a 10k free sample. The re-posting across forums increases exposure and odds of rapid abuse against crypto accounts. Analysts should treat the credentials as compromised and track for use in credential-stuffing and theft of funds.
1h
Leak46
Combolist de 400.000 credenciales de Coinbase filtradoA freshly posted combo list of roughly 400,000 email-to-password pairs for Coinbase accounts is being shared, with a 10k freebie sample. Such crypto-exchange credential dumps feed credential-stuffing and account-drain attempts and often correlate with stealer-log infections. Defenders should enforce MFA and monitor for reuse of these credentials across corporate and personal crypto access.
1h
Leak50
Filtración de base de datos de 200 millones de usuarios de TelegramA large database described as 200M+ Telegram records pairing usernames with phone numbers is being distributed on a leak forum. The scale and phone-number linkage make it highly useful for SIM-swap, phishing and account-takeover campaigns targeting users and organizations. Although the original posting date is unclear, the asset class is materially relevant and should be tracked for downstream abuse.
1h
Leak30
Base de datos de pasaportes rusos (540M) del MVD a la ventaA seller lists a 540-million-row Russian passport table attributed to the MVD, the interior ministry. It is a mass government identity dataset with major fraud potential, but the underlying data is from 2023 and the listing is old, so it is not a new breach. Useful only as background on state-ID exposure.
2h
Leak42
Filtración de la base de datos de la firma cripto Swan BitcoinA Spear forum leak dated 14 February 2026 claims a database dump of Swan Bitcoin, a US crypto platform. If real it exposes client KYC and account data usable for targeting crypto holders and account takeover. It is several months old, so it is context for trend tracking rather than a fresh alert.
2h
Leak50
Base de datos de ciudadanos del Reino Unido con fullz a la ventaA post dated 26 July 2026 offers a 'UK citizens database' with fullz, names, addresses and identity data. The fullz nature makes it valuable for identity theft and account takeover, though it is about two months old and outside the fresh-alert window. Treat it as high-impact PII for fraud monitoring.
2h