PULSE
FEED
vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / Artifactory
Kalir Brief · Item24 September 2026 · 03:51 UTC
BRIEFLeakhighP52

Horizane employee access database breach

Horizane

Detected24 September 2026 · 03:51 UTC
Why it matters

A fresh Spear/BreachForums post claims a database breach of an entity named Horizane containing employee access data. Employee access records can expose internal credentials and enable lateral movement if the organization is a genuine target. The entity is unconfirmed, so treat it as a moderate-priority lead pending verification.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score52
Detected24 September 2026 · 03:51 UTC
Related items6
Leak68
Base de datos de 22 millones de usuarios de PaidWork a la ventaA 22 million-user database from the freelance platform PaidWork.com is being offered for sale on BreachForums, reportedly including names and full user details. The scale is significant, 22M accounts, enabling credential stuffing, phishing and identity theft against a global user base. No confirmed regional focus, but the size makes it a high-value leak to watch.
54m
Leak58
Filtración de base de datos de la francesa Horizane SantéA database breach granting admin access to Horizane Santé, a French health, wellness and parapharmacy company, is being reposted across multiple underground forums. Health-sector records are exposed, enabling credential abuse and targeted phishing against the firm and its customers; this is a real-organization leak rather than a generic combolist, though it is outside the AR-LATAM region.
2h
Leak40
Base de datos de Resist.Mobi filtrada y publicada en foroA RaidForums thread offers a downloadable database allegedly taken from Resist.Mobi, an online mobile-related service. If genuine, it exposes user account data that can drive credential stuffing and financial fraud. Recency and authenticity are unverified, so treat it as a lower-priority leak pending confirmation.
3h
Leak70
Filtración de base de datos de la empresa francesa de salud HorizaneSpear Leaks is hosting a database allegedly belonging to Horizane Santé, a French health, wellness and parapharmacy company; the thread also advertises admin access. Health-sector records are highly sensitive and can fuel phishing, fraud and extortion. Any defender with exposure to this brand should verify the leak and rotate credentials.
3h
Leak38
Base de datos indonesia de 50 millones de registros filtradaA 50-million-record Indonesian database attributed to 'JakartaGhostDigital' is circulating on xReactor as a bulk data leak. The scale suggests a large collection of personal and account data tied to Indonesian users. Although outside Latin America, its volume keeps it relevant for cross-border fraud and credential-abuse monitoring.
4h
Leak56
Filtración de la base de datos de clientes del bróker LQDFXA threat actor posted an alleged customer database of the LQDFX forex broker on DarkForums minutes before it was discovered. Financial-services records typically contain names, emails and account details, enabling account takeover, phishing and fraud. Though not a Latin America entity, it is a fresh, verifiable data leak worth validating and monitoring for downstream abuse.
4h