BRIEFLeaklowP28
Phone House Spain customer database leaked
Phone House España
Detected8 October 2026 · 22:21 UTC
The Phone House España customer database is circulating for download on a RaidForums clone. Spanish retailer data (names, contact and potentially payment details) can fuel fraud and phishing against Spanish-speaking victims. However the sample appears to be an older leak, so it is not a fresh alert for LATAM defenders.
CategoryLeak
Severitylow
Priority score28
Detected8 October 2026 · 22:21 UTC
Leak● 58
Base de datos con 39.000 periodistas marroquíes expuestaAn actor is dumping a database covering roughly 39,000 Moroccan journalists alongside 30 PDFs, framed as the 'Pegasus state' leaving data open. Such exposure endangers journalists, sources and press-freedom networks, and can enable reprisals and targeted surveillance. It is relevant for cross-border surveillance and media-threat monitoring even outside AR-LATAM.Leak● 68
Venta de datos CSV de la Facultad de Ciencias de la UNAMThe same actor (LulzSkid) is advertising a CSV of UNAM's Facultad de Ciencias for sale on BreachForums, indicating a monetized leak of a Mexican public university's data. These datasets typically carry student/staff PII and institutional credentials that can fuel phishing and account takeover. It warrants alerting Latin American education and public-sector defenders to monitor for misuse of UNAM-linked identities.Leak● 72
Filtración de datos CSV de la Facultad de Ciencias de la UNAMA BreachForums actor (LulzSkid) published a CSV dataset belonging to the Facultad de Ciencias of the National Autonomous University of Mexico (UNAM), a flagship Latin American public institution. While the exact record count is not stated, university CSVs usually hold student, academic and staff PII such as names, institutional emails, IDs and possibly password hashes. Defenders in Mexican public-sector and education organizations should treat this as a fresh breach and hunt for exposed credentials and PII reuse.Leak● 76
Filtración de 7,5 millones de registros de clientes de Momentum TelecomA 7.5M-record customer PII database attributed to Momentum Telecom was freshly posted for download. The data reportedly includes names, home addresses and city details, enabling large-scale phishing, SIM-swap and account-takeover campaigns against subscribers. Telecoms are critical infrastructure, so defenders should correlate the claims with internal breach indicators and notify affected customers.Leak● 93
Filtración de datos del Gobierno de Mendoza con más de 1M de registros PIIA threat actor posted a database allegedly containing over 1 million PII records belonging to the Government of Mendoza, Argentina, freshly advertised on a leak forum. If authentic, it exposes citizen and employee personal data of a provincial government body, enabling phishing, identity fraud and targeted intrusion against public administration. Argentine government entities should urgently validate the exposure and watch for credential abuse and follow-on attacks.
Leak● 52
Filtración masiva de 110M de credenciales URL:usuario:contraseñaA freshly dated dump claims 110 million URL:login:password stealer-log records, marked private and UHQ. Credential re-use makes this useful for account takeover, credential stuffing and initial access across many organizations. Despite being generic, its scale and recency warrant surfacing for defensive monitoring.