PULSE
FEED
vulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
Kalir Brief · Item17 September 2026 · 18:12 UTC
BRIEFLeakhighP65

Stolen Ledger database (309,000 records) for sale

Ledger

Detected17 September 2026 · 18:12 UTC
Why it matters

A listing claims to offer a stolen Ledger database containing 309,000 records dated 2026. Ledger is a major crypto-hardware wallet vendor, and customer-data leaks erode trust and feed targeted phishing and extortion against high-value crypto holders. It is unverified, but given the brand's breach history it merits monitoring.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score65
Detected17 September 2026 · 18:12 UTC
Related items6
Leak45
Filtración de 56.000 clientes de Energynet SerbiaA database of 56,000+ customers of Serbia's Energynet (HVAC services) was shared on DarkForums, exposing names, contact and address details. Though outside Latin America, it is a concrete company leak useful for phishing and fraud campaigns. Lower regional priority, but it confirms an active seller of real corporate data.
1h
Leak55
Volcado masivo de 1.200 millones de credenciales (44 GB)A 44 GB dump containing roughly 1.2 billion URL:login:password lines was posted on 15 September 2026. This is a very large stealer-log aggregation, implying massive credential-reuse risk across corporate and consumer accounts. Defenders should enable credential-leak detection and force resets for exposed users.
6h
Leak62
Filtración de la base de datos central de VodafoneA threat actor claims to have compromised Vodafone's core database and posted an encrypted drop on a cloned forum. Vodafone is a major global telecom, so a core database leak could expose subscriber and infrastructure data at scale. Defenders in telecom should treat this as a possible exposure pending verification.
6h
Leak42
Filtración de datos de John Lewis, Currys y American AirlinesA leak thread offers data linked to UK retailers John Lewis, Currys and PC World plus US airlines American Airlines and Southwest. Collections like this usually contain customer accounts and credentials that feed fraud and account takeover. It is outside LatAm, but the airlines' reach makes it worth tracking.
8h
Leak55
Base de datos de Samsung a la venta en foro clandestinoA freshly posted thread on a darkweb forum claims a Samsung database is up for grabs, potentially exposing customer or corporate records of the global electronics giant. If genuine, such data would support fraud, account takeover and targeted attacks. Authenticity and scale are unverified, so treat it as an unconfirmed lead.
8h
Leak60
Volcado de datos de Sudamérica con datos de Argentina y BrasilA criminal forum post advertises a verified South America data dump covering Argentina, Brazil, Chile and more, likely credentials or personal data. Such region-specific collections enable account takeover and targeted phishing against Latin American organizations. Local defenders should hunt for reuse of these leaked credentials.
8h