BRIEFLeakhighP45
IKEA customer data offered for sale at low price
IKEA
Detected13 September 2026 · 10:12 UTC
A threat actor is selling personal information of IKEA customers at a low price on a leak forum. IKEA is a global retailer with large customer bases, so even a partial database enables phishing, account takeover and fraud against consumers. The offer appears current but its scale and authenticity are unverified.
CategoryLeak
Severityhigh
Priority score45
Detected13 September 2026 · 10:12 UTC
Leak● 48
Base de datos de clientes de CEGID filtrada (74K registros)A seller is offering a 74K-record customer database allegedly from CEGID, a French business-software vendor, tagged as fresh 2026 data spanning France, Belgium, Luxembourg and Spain. These records expose corporate contacts and licence details that enable invoice fraud and targeted BEC against CEGID's business clients. Spanish and Belgian customers should be warned about impersonation risk.Leak● 60
Filtración de datos de LinkedIn de siete países, incluido BrasilA forum actor is advertising a LinkedIn dataset covering the USA, Austria, Brazil, Canada, France, India and the UK, posted today. Scraped LinkedIn data fuels credential stuffing and targeted phishing, and the Brazilian slice directly touches Latin America. Defenders should watch for reuse of corporate emails and follow-on BEC attempts.Leak● 68
Base de datos de 30 millones de tarjetas QiCard de Irak a la ventaA member posted a 30-million-record database tied to Iraq's QiCard national payment scheme, marketed 'to be redeemed', implying live, monetizable card and identity data. At that scale it enables mass card fraud, account takeover and identity theft well beyond Iraq's borders. Financial-crime teams should flag downstream use and monitor BIN-level abuse.Leak● 70
Filtración de base de datos de socios de Resamania.fr (5,2M)A threat actor is selling a 5.2M-record membership database from French fitness chain Resamania.fr, described as fresh 2026 data. Member records typically include names, emails, phones and addresses, ideal for phishing, smishing and credential stuffing. Fraud and privacy teams should prepare for customer-targeted campaigns and GDPR exposure.Leak● 76
Filtración de base de datos de clientes de Intersport.fr (8,1M)A forum actor is offering an 8.1M-record customer database allegedly from French sportswear retailer Intersport.fr, tagged fresh 2026. Such dumps expose names, emails, addresses and order data, enabling large-scale phishing and credential-stuffing against shoppers. Retail defenders should treat it as a high-priority leak and monitor for downstream fraud.Leak● 35
Base de datos de la empresa india Beco a la ventaAn Indian database tied to 'Beco' was posted in late August 2026 on a leak forum. Company data of this kind fuels credential stuffing, fraud, and downstream B2B targeting. It sits outside the AR/LATAM focus but is a genuine breach offering worth logging.