BRIEFLeakhighP74
Assurance America PII database leak: 7.2M records
Assurance America
Detected1 September 2026 · 12:03 UTC
A complete database containing 7.2 million PII records from Assurance America is being sold or distributed. The volume and nature of the personal data create a high risk of fraud and phishing. The listing appears current and should be monitored.
CategoryLeak
Severityhigh
Priority score74
Detected1 September 2026 · 12:03 UTC
Leak● 78
Filtración de datos KYC de usuarios de TransakKYC data belonging to Transak users, a crypto on/off-ramp used globally, has been leaked. Identity verification records are highly sensitive and can enable identity theft and financial fraud. The post is recent (August 2026), so it warrants immediate alerting.Leak● 40
Filtración de base de datos de haijiao.com con 15,7 millones de usuariosA database with 15.7 million users from haijiao.com is being circulated. The post dates to February 2026, so it is not a fresh alert, but the large volume still poses an ongoing risk of credential stuffing and phishing for the affected users.Leak● 72
Filtración de base de datos de Panera Bread con 9,8 millones de registrosA database containing 9.8 million customer records from Panera Bread is being offered in 2026. It likely includes personal information that could fuel fraud and phishing. The volume and recognizable brand make it a significant leak.Leak● 65
Filtración de la base de datos completa de usuarios del CNOPS de MarruecosA full users database of CNOPS, Morocco's national social welfare fund, has been leaked on a dark web forum. The data likely includes personal information of millions of beneficiaries and employees. While the victim is outside Latin America, this is a significant government data breach with high fraud potential, though its publication date is unclear.Leak● 60
Filtración de datos del código de salud de Shaanxi (14,8 millones de registros)14.8 million records from Shaanxi's health code system were posted on a dark web forum. The data likely includes personal IDs and COVID-19 health status, creating a major privacy and credential-stuffing risk. Though outside Latin America, the scale shows how state health-tracking systems can be targeted.Leak● 45
Combolist de más de 120.000 correos corporativos de empresas a la ventaThis is a 120,000-line combolist of corporate business email addresses and passwords, likely harvested from breaches. It could be used for business email compromise (BEC), phishing, or credential stuffing against companies. The geographic scope is not specified, but corporate credentials are valuable regardless of location; no clear posting date limits the immediate alert value.