BRIEFLeakhighP52
20M emails leaked via IMDataCenter's open AWS bucket
IMDataCenter
Detected10 October 2026 · 04:21 UTC
A BreachForums post reports 20 million unique emails exposed through an open AWS bucket and lead list belonging to IMDataCenter. Because the dataset is shared for free, it significantly lowers the barrier for spam, phishing and credential-stuffing campaigns. Defenders should monitor for downstream abuse of these addresses even though the post date is unclear.
CategoryLeak
Severityhigh
Priority score52
Detected10 October 2026 · 04:21 UTC
Leak● 55
Filtración completa de la base de datos del minorista surcoreano e-topplusA full database dump of South Korean retailer e-topplus.kr, roughly 28 million lines with full names, dates of birth, addresses and phone numbers, is being circulated for download. The scale and PII richness make it highly valuable for identity theft and targeted phishing against Korean users. Although outside the LatAm region, it is a large fresh leak worth tracking for downstream credential-reuse exposure.Leak● 62
Filtración de base de datos de la plataforma de e-commerce TiendupA threat actor published a downloadable dump of Tiendup, a Chilean SaaS e-commerce platform widely used across Latin America, exposing customer and order data. Store owners and shoppers linked to the platform face PII and credential exposure and follow-on fraud risk. LatAm defenders should flag Tiendup-linked accounts as compromised and watch for credential reuse.Leak● 58
Filtración de 26,5 millones de registros de Vertafore (Texas Lien Records)A BreachForums thread offers a 26.5 million-row dataset labeled as Vertafore Texas lien records. Vertafore is a US insurance-software provider, so this likely contains personal and property data of US policyholders and lien holders. Defenders should treat the exposure as a phishing and identity-fraud risk, though the exact post date is unknown and the data could be stale.Leak● 55
Base de datos de Brasil publicada en BreachForumsA user posted a thread titled "Brazil DB" on BreachForums on 10 October 2026, apparently offering a Brazilian database for sale. The exact organization, sector and record count are not disclosed in the snippet, so scope is unknown. Because Brazil is a priority LATAM target, a fresh dump like this could expose citizen or corporate records worth monitoring for regional defenders.Leak● 36
Filtración de base de datos de Bombordo Group, BrasilA database from the Brazilian nautical consulting and school Bombordo Group was posted to DarkForums by user P4R4ZYT3. The affected entity is a small private company, so the strategic impact is limited despite being a Latin American target. It is worth noting mainly for regional coverage and possible credential reuse.Leak● 48
Filtración de base de datos de SNCF Rémi Val-de-Loire, FranciaA database tied to the French regional rail service SNCF Rémi Val-de-Loire was posted by DarkForums user l0cked. It concerns a public transport operator, so exposed operational or customer data could enable fraud and lateral access. It is outside the AR-LATAM region, so it ranks below regional alerts but remains a genuine org leak.