PULSE
FEED
vulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
Kalir Brief · Item18 September 2026 · 04:12 UTC
BRIEFAccess salehighP62

Buyer seeking data from Argentina's Bull Market Brokers

Bull Market Brokers (inversiones.bullmarket.com.ar)

Detected18 September 2026 · 04:12 UTC
Why it matters

A buyer on DarkForums is soliciting valid leads or credentials tied to inversiones.bullmarket.com.ar, an Argentine brokerage. This signals active interest in compromising an Argentine financial-sector target, likely via credential stuffing or account takeover. Defenders at the firm should watch for brute-force, phishing and anomalous logins.

MetadataRECORD
CategoryAccess sale
Severityhigh
Priority score62
Detected18 September 2026 · 04:12 UTC
Related items6
Access sale42
Dump y acceso admin de alifyaeducation.co.uk a la ventaA fresh listing offers a dumped database plus administrative access for alifyaeducation.co.uk. Admin access allows full site takeover, data theft and abuse of the host for further attacks. Even a small education target is a useful pivot for phishing and hosting infrastructure.
5h
Access sale70
Filtración y acceso de administrador a la base de datos de personal de Xarxa Tecla (SISCAT)A threat actor is leaking a personnel database from xarxatecla.cat (SISCAT) while offering associated email and admin access. This combines a data leak with privileged access to a Catalan telecom/technology network, enabling follow-on intrusion. Privileged access plus PII raises both fraud and lateral-movement risk.
5h
Access sale45
Venta de acceso admin WordPress al Ministerio de Educación de UgandaA seller is offering administrative WordPress access to the Uganda Ministry of Education's website. Government CMS takeovers enable defacement, malware or phishing hosting under an official domain, and can serve as a pivot into connected government infrastructure, so it should be validated and monitored.
6h
Access sale45
Venta de acceso al sistema de causas judiciales de un país africanoA seller is offering access to a government court-case system in an African country, an initial-access sale to a public-sector target. Although outside the AR-LATAM focus, it demonstrates a live vendor offering judicial-system access that regional CTI teams should track as a capability. No date is given, so treat it as time-sensitive but unverified.
7h
Access sale35
Comprador busca correos de gobiernos en foro clandestinoA user on DarkForums posted a request to buy government email accounts, a demand signal for access to public-sector mailboxes. Such buyers typically pursue espionage, invoice fraud or further intrusion via trusted government addresses. No specific victim is named, so impact is potential rather than confirmed.
1d
Access sale61
Venta de acceso a la base de datos del hospital de la Fuerza Terrestre del IRGC (Irán)A seller on BreachForums is offering full database access to the IRGC Ground Force Hospital, a military medical facility. Selling direct database access to a named military target is a high-value access offering, not generic chatter, and could enable further intrusion or extortion. CTI teams tracking regional military/healthcare threats and any partners with Iranian exposure should monitor this listing.
1d