BRIEFLeaklowP42
SplitVPN (NotVPN) database: 23.4M users exposed
SplitVPN (NotVPN)
Detected11 September 2026 · 18:12 UTC
A dataset advertised as SplitVPN (NotVPN) with 23.4M users, 58M logs and 13.6M devices is circulating in underground forums. Large VPN user datasets enable credential stuffing and account takeover at scale. It is not tied to the region, but the volume warrants monitoring.
CategoryLeak
Severitylow
Priority score42
Detected11 September 2026 · 18:12 UTC
Leak● 72
Filtración de 27,25 GB de datos de la empresa brasileña EngefitasRoughly 27.25 GB of documents belonging to the Brazilian firm Engefitas (engefitas.com.br) has been published as leaked data. The dump indicates a significant exfiltration affecting corporate and possibly customer records of a Latin American company. Defenders should verify scope and watch for downstream fraud or extortion.Leak● 20
Filtración de base de datos de Texas-Blooms.comA customer database for the flower retailer Texas-Blooms.com was posted for free download, apparently including customer contact and order data. The target is a small US e-commerce site and the post is dated early 2026, so it is stale and low priority. The leaked PII still presents a phishing and account-takeover risk for affected customers.Leak● 20
Filtración de base de datos de TheCottageFlowersAndGifts.comA full customer database for TheCottageFlowersAndGifts.com was posted for free download, likely exposing names, emails and order details. The affected business is small and the post is dated early 2026, several months old, so impact is limited. Still, the exposed PII can fuel phishing and credential stuffing against those customers.Leak● 48
Filtración de 1,9 GB del Ministerio de Obras Públicas de IndonesiaA 1.9 GB archive of detailed engineering-design documents from Indonesia's Ministry of Public Works was posted for download. Public-works designs can expose sensitive structural, layout and security details of government infrastructure, making them valuable for follow-on targeting. Although outside the AR-LATAM region and undated here, it is a genuine government data leak that defenders in critical infrastructure should track.Leak● 57
Venta de base de datos del Ministerio de Educación de Egipto (22,6 GB)A seller is offering a 22.6 GB database attributed to Egypt's Ministry of Education (moe.gov-eg), a national government body. A multi-gigabyte government dataset of this size typically contains employee, student or citizen PII and is highly valuable for fraud and targeted attacks. Although the target is not in LATAM, it is a genuine large gov breach sale worth tracking for regional copycat or shared-infrastructure risk.Leak● 63
Base de datos de inversiones de Australia con 23,6 millones de registros a la ventaA freshly posted dataset claims 23.6 million records linked to the Australian investment sector, offered for download on a leak forum. With 23.6M records and an explicit '2026' tag, it is a large, current dump likely containing PII and financial details. Defenders in finance and identity-monitoring should treat it as a live exposure even though the victim is outside LATAM.