PULSE
FEED
vulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
Kalir Brief · Item18 September 2026 · 08:12 UTC
BRIEFLeaklowP33

Telefonica.net email combolist leaked on underground forum

Telefonica.net

Detected18 September 2026 · 08:12 UTC
Why it matters

A credential combolist of Telefonica.net email accounts was posted to a cracking forum as mail:pass pairs. Although stale (August 2025) and credential-stuffing style, Telefonica is critical telecom infrastructure across Spain and Latin America. Defenders should check for password reuse against corporate accounts and enforce MFA.

MetadataRECORD
CategoryLeak
Severitylow
Priority score33
Detected18 September 2026 · 08:12 UTC
Related items6
Leak38
Base de datos de 199K pólizas de FUSE.CO.ID a la ventaA seller is offering a database of about 199K Indonesian insurance records from FUSE.CO.ID, including full policy data and KTP national IDs, emails and phone numbers. This PII is well suited for identity fraud and targeted phishing against policyholders. Regional defenders should watch for credential and data reuse, though the volume is moderate and the post is months old.
51m
Leak48
Ministerio de Trabajo de Indonesia sufre filtración de 347 GBA verified seller claims a 347 GB dump (~1.2 billion records) from Indonesia's Ministry of Labor, kemnaker.go.id, said to date from December 2025. A government dataset of this size can fuel identity theft, phishing and fraud against citizens and workers at scale. Although not fresh, regional CTI teams should track its reuse and downstream misuse.
51m
Leak52
Base de datos CRM de 627.000 clientes de mihnati.com a la ventaA marketplace seller is offering a 627,000-record CRM PII dataset from the Saudi recruitment site mihnati.com, including emails, names and dates of birth. The volume and PII depth make it valuable for phishing and identity fraud targeting job seekers in Saudi Arabia. Though outside Latin America, it is a sizable fresh leak worth tracking.
2h
Leak25
Base de datos de 28 millones de consumidores de EE.UU. a la ventaA seller offers a 28-million-record US consumer opt-in database for $200, likely containing names, emails, phones and addresses. Although the post dates from mid-2023 and the data has probably circulated already, its scale makes it valuable for phishing, fraud and account-takeover campaigns. Defenders should watch for reuse of these records in credential-stuffing and social-engineering against US consumers.
3h
Leak40
Volcado de 740 GB de registros stealer y ULP publicadoA 740 GB archive of stealer logs and URL:login:password (ULP) data has been posted on RaidForums. Though published in January 2026, the sheer volume makes it a long-lived credential source for account takeover. Defenders should assume broad credential exposure and enforce resets and MFA.
4h
Leak60
Base de datos de la exchange de criptomonedas CoinSwitch a la ventaA partial database of crypto exchange CoinSwitch containing over 1 million lines with KYC data and account balances is being offered on RaidForums. KYC records are highly sensitive and fuel identity fraud and targeted phishing. Financial-sector defenders should monitor for downstream abuse of the leaked customer data.
4h