PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSS
Kalir Brief · Item11 September 2026 · 23:12 UTC
BRIEFRansomwarehighP44

safepay ransomware publishes US technology firm Compunnel

Compunnel

Detected11 September 2026 · 23:12 UTC
Why it matters

The safepay ransomware group has listed US technology-services firm Compunnel as a victim, indicating a breach with data-theft and extortion claims. Compunnel provides IT consulting and workforce services, so its clients may face downstream exposure of shared data. Watch for leaked client records and credential reuse.

MetadataRECORD
CategoryRansomware
Severityhigh
Priority score44
Detected11 September 2026 · 23:12 UTC
Related items6
Ransomware45
El ransomware Qilin publica a la sanitaria estadounidense Imperial Healthcare SolutionsThe Qilin ransomware group has listed US healthcare provider Imperial Healthcare Solutions as a victim, implying a breach with data-theft and extortion claims. Healthcare incidents risk patient-safety and regulatory consequences, and stolen records often resurface in later fraud. Sector defenders should monitor for leaked patient and insurance data.
52m
Ransomware45
El ransomware shadowbyt3$ publica a la inmobiliaria estadounidense John Engel TeamThe shadowbyt3$ ransomware group published John Engel Team, a US real estate and professional-services firm, on its leak site. The actor claims to hold serious data and shows an image as proof, indicating an active extortion. Freshly published victims are the earliest actionable signal for incident response and negotiation.
2d
Ransomware65
Aurora ransomware publica datos del contratista militar Metrea LLCAurora ransomware leaked 339 MB from Metrea LLC, a US defense contractor providing ISR aircraft for US SOCOM, and its subsidiary Commuter Air Technology. The dump includes Harris PRC-117G military radio documentation, exposing sensitive operational data. This is a significant defense-sector breach of interest to CTI operators tracking cyber threats against military supply chains.
7d
Ransomware72
Ransomware Silent Ransom publica al bufete estadounidense Holland & KnightThe Silent Ransom Group has published Holland & Knight, a major US law firm, on its ransomware victim site. Law firms hold sensitive client data, and a confirmed ransomware publication can lead to document leaks and legal or regulatory damage. This is a fresh ransomware victim incident relevant for tracking, even though the firm is outside Latin America.
10d
Ransomware35
Ransomware Rhysida publica a la organización húngara Szechenyi ProgramirodaThe Rhysida ransomware group has listed the Hungarian nonprofit Szechenyi Programiroda on its leak site. Although the victim is outside Latin America, monitoring Rhysida activity helps anticipate tactics, infrastructure, and potential targeting of regional entities. Organizations should review their exposure to Rhysida indicators.
10d
Ransomware55
Ransomware Qilin publica a la Commission de la construction du QuébecThe Commission de la construction du Québec (CCQ), a public agency overseeing Quebec's construction industry, has been listed on the Qilin ransomware leak site. Government agencies are high-value targets and the incident may expose sensitive employee and project data. While outside Latin America, it is a fresh ransomware event worth tracking for regional CTI.
11d