BRIEFLeaklowP25
Chile-targeted credentials combolist (87K) circulating
Detected14 September 2026 · 04:12 UTC
A combolist of roughly 87,000 Chile-targeted email:password pairs is being shared, dated 7 May 2026. These credentials feed credential-stuffing and phishing campaigns against Chilean users and organizations. It is a diffuse credential dump rather than a breach of a specific entity, and it is several months old, so impact is limited but regionally relevant.
CategoryLeak
Severitylow
Priority score25
Detected14 September 2026 · 04:12 UTC
Leak● 15
Refiltración de 272K correos de clientes de LedgerAn actor is re-posting a list of about 272,000 Ledger customer email addresses, matching the data originally exposed in the 2020 Ledger breach. It enables targeted phishing and crypto-theft attempts against Ledger users. This is stale, previously-leaked data rather than a fresh compromise, so it is low priority.Leak● 45
Base de datos de la agencia de viajes rusa vpoxod.ru (1M) a la ventaA seller is offering a database of roughly 1 million records from the Russian travel booking site vpoxod.ru, with the data dated October 2025. It likely holds customer names, contacts and booking details usable for phishing and account takeover. It is outside Latin America, but represents a large, fresh leak of a real commercial entity worth logging.Leak● 24
Filtración de datos de 2,8 millones de residentes del Kurdistán iraquíA thread advertises a dataset of roughly 2.8 million records tied to northern Iraq/Kurdistan, likely a regional population or citizen database. Large PII sets enable identity fraud and targeted attacks against the affected population. It is outside the AR-LatAm scope and appears in a long-running thread, so it is marginal for this feed.Leak● 32
A la venta base de datos del sistema de pagos Fast Payment System 2026A seller is advertising a 'Fast Payment System 2026 base', suggesting a payment-system database for sale, posted in mid-June 2026. Compromised payment data can drive fraud and account takeover across banks and merchants. The target and region are unclear and the listing is months old, so confidence and urgency are limited.Leak● 28
Filtración de 272.000 correos de usuarios de LedgerA forum post offers roughly 272,000 Ledger user email addresses, dated early January 2026. Such data fuels phishing and crypto-theft campaigns targeting hardware-wallet owners. It is several months old and an email list rather than fresh access, so it is low priority now.Leak● 38
Filtración de código fuente y CRM interno de LacosteA leak labeled 'Lacoste.com Leak 2026' advertises source code plus internal documents and CRM data, dated mid-2026. Source-code and CRM exposure can reveal internal systems, customer records and logic useful for follow-on attacks. It is not a LatAm target and the post is months old, so it is not a fresh alert but remains relevant context.