BRIEFLeakhighP48
Leak of 202K contact lists and 55M phone numbers from Russia
Detected15 September 2026 · 14:12 UTC
A dataset of 202,069 contact lists and 55,429,130 phone numbers tied to Russia is being sold on DarkNetArmy. This scale enables mass SMS phishing, SIM-swap and social-engineering campaigns. Although outside LATAM, such aggregations fuel downstream fraud against any organization with Russian-region contacts and should be flagged for awareness.
CategoryLeak
Severityhigh
Priority score48
Detected15 September 2026 · 14:12 UTC
Leak● 45
Filtrada base de datos de las elecciones de ArmeniaAn election-related database for Armenia was posted as a fresh leak on Spear Leaks minutes before discovery. Election systems hold voter PII that can be abused for disinformation and targeted influence operations. It indicates an active government leak, but it sits outside the AR-LATAM focus, so it is lower priority for regional defenders.Leak● 48
Base de datos de Binance Francia a la venta (75.105 líneas)A vendor is selling a database attributed to Binance France containing roughly 75,105 records. Even if partial, exchange user data fuels phishing, SIM-swap and account-takeover campaigns against crypto holders. Regional KYC data increases the identity-theft and regulatory exposure for affected users.Leak● 52
Filtración de datos de clientes de ZenLedger a la ventaA seller is advertising a customer data leak from ZenLedger, a crypto tax software provider that holds sensitive financial and identity data. Customer lists of tax/crypto platforms are valuable for phishing, account takeover and targeted fraud. Users of the platform face elevated risk of identity theft and crypto-related social engineering.Leak● 55
Filtración de 1 millón de registros URL:LOG:PASS (stealer logs)A fresh private dump of roughly 1 million URL:LOG:PASS stealer-log entries has been published, aggregated from infostealer infections. The set is large and current, so it enables credential-stuffing and session hijacking against enterprise and consumer services. Security teams should hunt for exposed credentials in their domains and force resets where matches appear.Leak● 72
Venta de datos militares confidenciales de SEKISUI AerospaceA seller is offering what is described as confidential military data belonging to SEKISUI Aerospace, a defense and aerospace supplier. If authentic, this exposes sensitive engineering, contract and program information relevant to defense supply chains. Defenders in aerospace/defense and their partners should treat it as a potential precursor to targeted intrusion or extortion.Leak● 44
Filtración de escaneos de pasaportes de más de 20 paísesA collection of scanned passports from more than 20 countries is circulating, exposing highly sensitive identity documents. Such scans fuel identity theft, forged documents and cross-border account takeover. Affected individuals face long-term fraud risk and should be alerted where identifiable.