PULSE
FEED
vulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOS
Kalir Brief · Item22 September 2026 · 11:01 UTC
BRIEFLeakhighP55

Leak of 11.5 million Mexican data records

Detected22 September 2026 · 11:01 UTC
Why it matters

A 1.36 GB dataset holding roughly 11.5 million Mexican records is being circulated for free on a carding forum, likely containing personal identifiers and contact data of Mexican citizens. The source organisation and breach date are not stated, so it may be a re-post of an older incident, but the sheer volume makes it viable for credential-stuffing and identity-fraud against Mexican users and services. Defenders in Mexico should monitor for re-use of these identities and watch for linked downstream fraud.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score55
Detected22 September 2026 · 11:01 UTC
Related items6
Leak45
Reventa del volcado de National Public Data con 2.700 millones de registrosA seller is re-posting the well-known National Public Data breach, advertising access to roughly 2.7 billion records including SSNs, names and addresses. While the underlying data is an old 2024 US leak rather than new activity, the huge scale means it fuels identity theft, account takeover and loan fraud. The thread itself is new, so defenders in US financial, telecom and identity sectors should treat it as recycled high-impact PII rather than a fresh breach.
2h
Leak47
Filtración de base de datos de 58K registros de firma brasileñaThe AnkaTeam crew is advertising a 58,000-record database leak from the Brazilian domain sinepenopr.com.br on TurkHackTeam. Even at mid scale, exposed records can fuel credential stuffing and targeted phishing against Brazilian customers. Defenders should verify the exposure, confirm the data set and force password resets for affected accounts.
3h
Leak82
Filtración de datos de 394K usuarios de la venezolana DigitelA database with roughly 394,000 user records of Digitel, a major Venezuelan mobile telecom operator, is being offered on DarkForums. The exposed subscriber data can enable SIM-swap, phishing and account-takeover against Venezuelan users. As state-linked critical telecom infrastructure, a leak of this scale warrants subscriber notification and forced credential resets.
3h
Leak30
Filtración de datos del contratista de defensa Rheinmetall DefenceA leak attributed to European defence contractor Rheinmetall Defence was posted in February 2023, exposing sensitive defence-supplier data. Defence supply chains are high-value targets for espionage, so such material can aid reconnaissance and targeting. It is stale, so treat it as background context rather than a fresh alert.
4h
Leak55
Filtración de seis millones de archivos del banco ICBC LondonA leak titled 'ICBC London' with roughly 6 million files is circulating on a cracking forum, targeting the London branch of a major Chinese bank. Financial data at this scale enables fraud, account takeover and regulatory exposure. Even without a clear date, the size and finance-sector target justify flagging it for fraud and insider-risk monitoring.
4h
Leak70
Base de datos de 205.000 usuarios de Ledger USA a la ventaA DarkForums seller is offering a database of roughly 205,000 Ledger USA users, posted on 19 September 2026. Ledger is a leading crypto hardware-wallet vendor, so the data can drive phishing, SIM-swap and targeted theft against verified customers. Defenders should watch for credential-stuffing and brand-impersonation campaigns.
4h