BRIEFGov / MilitarycriticalP85
Jalisco state government (jalisco.gob.mx) database for sale
Gobierno del Estado de Jalisco (jalisco.gob.mx), México
Detected7 October 2026 · 06:07 UTC
An actor just posted a purported database of the official Jalisco state government domain (Mexico) on DarkForums. Compromise of a state government portal can expose citizen records and internal credentials and act as a pivot into other public systems. High priority for Latin American critical-infrastructure defenders to verify and contain.
CategoryGov / Military
Severitycritical
Priority score85
Detected7 October 2026 · 06:07 UTC
Gov / Military● 58
Cancillería del Gobierno de Ecuador a la venta en BreachForumsA BreachForums marketplace listing names the Chancellery of the Government of Ecuador, indicating a possible leak or sale of data/access tied to a Latin American state body. If genuine, exposed records or credentials could enable intrusion into official channels and impersonation of government officials. Defenders should verify the claim and hunt for credential reuse against Ecuadorian government systems.Gov / Military● 48
Filtración de 100GB de la base de datos gubernamental rss.gov.iqAn actor is circulating a 100GB dump attributed to the Iraqi government site rss.gov.iq. A leak of this scale from a state portal means mass exposure of citizen records and internal data useful for identity fraud and state-targeted intelligence. It is outside AR-LatAm, but a large fresh government-data leak is worth tracking for TTP and victim-notification context.Gov / Military● 62
Volcado de base de datos del Gobierno de Nepal con acceso de administradorAn actor claims a full database dump, admin access, and compromise of a Nepal government entity plus a tech company. Government databases typically hold citizen PII, credentials, and internal systems, making this a serious breach even outside Latin America. The post signals an actor with live post-exploitation access whose TTPs are worth tracking.Gov / Military● 28
Oferta de datos/acceso a departamentos gubernamentales y militares de PakistánA seller ('ModernStealer') is advertising material tied to Pakistani government and military departments. Access to state or defence entities is inherently high value, but the listing dates to May 2026, is outside the AR-LATAM remit and gives no verified target list or scale. It is therefore not a fresh alert, though it hints at the seller's state-sector reach.Gov / Military● 52
Venta de cuentas de correo de gobiernos y policías de varios paísesA seller is advertising access to government and law-enforcement email accounts across multiple countries. Compromised official mailboxes enable impersonation of state bodies, phishing of public servants and lateral movement into institutional networks. Country attribution is missing, so AR-LATAM exposure is possible but unconfirmed; worth watchlisting until the target list surfaces.Gov / Military● 45
Filtración de base de datos del Instituto de Diplomacia y Relaciones Exteriores de MalasiaA threat actor is offering a 2,527-record breach of Malaysia's Institute of Diplomacy and Foreign Relations (IDFR), a government-linked diplomatic training institution, on BreachForums. Although the volume is small, the data belongs to a sensitive foreign-affairs body and could feed targeted phishing or social engineering against officials. The victim is outside the LATAM region, so the relevance for Argentine and regional defenders is indirect rather than a fresh domestic alert.