PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-central
Kalir Brief · Item16 September 2026 · 16:12 UTC
BRIEFRansomwarelowP36

Qilin ransomware publishes French manufacturer Thema Foundries

Thema Foundries

Detected16 September 2026 · 16:12 UTC
Why it matters

The Qilin ransomware group has published Thema Foundries, a French manufacturing firm, as a victim. Manufacturing is a frequent target for operational disruption and supply-chain impact, and a listing usually implies stolen data or encryption. Latin American relevance is limited, but it confirms ongoing Qilin activity worth mapping.

MetadataRECORD
CategoryRansomware
Severitylow
Priority score36
Detected16 September 2026 · 16:12 UTC
Related items6
Ransomware34
El ransomware Qilin publica a Thorndale Foundation (Australia)The Qilin ransomware group has listed Thorndale Foundation in Australia, sector Other, as a victim. Details are scarce, but a new Qilin posting signals active operations and probable data theft or encryption. Regional relevance is minimal; it is noted mainly for victimology and group-tracking purposes.
1h
Ransomware62
RansomHouse publica a la Fuerza de Defensa de Namibia como víctimaThe RansomHouse group has listed the Namibian Defence Force, the national military of Namibia, as a ransomware victim. A defence/military target raises the risk of exposure of operational, personnel and logistics data. Although outside Latin America, a government-defence victim is a high-signal alert for tracking ransomware activity.
1h
Ransomware43
Ransomware Akira publica a la contratista británica MandersThe Akira ransomware group listed Manders Companies, a GB manufacturing/contracting firm, and claims it will upload ~70GB of corporate data. The leak reportedly includes employee SSNs, passports, driver's licenses, financials, client contracts and NDAs. It is a fresh victim publication with sensitive PII, useful for tracking Akira's targeting and data-monetization patterns.
2h
Ransomware42
Ransomware Panzer publica a la firma Nielsen DesignThe ransomware group 'panzer' has listed Nielsen Design as a newly published victim on its leak site. The entry gives no country or sector detail, so direct regional impact is unclear and the firm appears to be a small European design/architecture company. It is worth monitoring if the group shifts toward Latin American targets, but remains a lower priority for a region-focused operator.
3h
Ransomware72
Proveedor de salud mexicano La Concepción, víctima de ransomware safepayThe 'safepay' ransomware group added laconcepcion.com.mx to its victim list. The organization identifies itself as one of the principal private healthcare providers in the Coahuila region of Mexico. A ransomware hit on a healthcare provider risks patient safety and sensitive medical data.
21h
Ransomware90
El portal gubernamental de Perú gob.pe, víctima de ransomware safepayThe 'safepay' ransomware group listed gob.pe, Peru's central government services portal, as a victim. It is the country's primary online contact point between public institutions and citizens, i.e. critical national infrastructure. A compromise could disrupt public services and expose citizen data.
21h