PULSE
FEED
ransomdragonforce reclama a TEXMA International Co., Ltd · TW · Manufacturingransomthegentlemen reclama a Royal Thai Air Force · TH · Government & Defenseransomumbra reclama a Helwan University (HITU) · EG · Educationransomredact reclama a DexCom · US · Healthcareransomqilin reclama a ACI Proyectos SAS · CO · Otherransomexitium reclama a KOIKE Sanso Kogoyo Co. Ltd. · JP · Manufacturingransomrhysida reclama a Gress Clark Young & Schoepper · US · Professional Servicesransomqilin reclama a Glenhardie Country Club · US · Hospitalityransomqilin reclama a LD Constructora · CL · Manufacturingransomdeadlock reclama a Saber1 · US · Not Foundransomdeadlock reclama a idi pharma · ES · Healthcareransomsafepay reclama a hoteldelfinolugano.ch · CH · Hospitalityransomsafepay reclama a dwi-bau.de · DE · Otherransompanzer reclama a Supreme Energy · SG · Energy & Utilitiesransomdragonforce reclama a TEXMA International Co., Ltd · TW · Manufacturingransomthegentlemen reclama a Royal Thai Air Force · TH · Government & Defenseransomumbra reclama a Helwan University (HITU) · EG · Educationransomredact reclama a DexCom · US · Healthcareransomqilin reclama a ACI Proyectos SAS · CO · Otherransomexitium reclama a KOIKE Sanso Kogoyo Co. Ltd. · JP · Manufacturingransomrhysida reclama a Gress Clark Young & Schoepper · US · Professional Servicesransomqilin reclama a Glenhardie Country Club · US · Hospitalityransomqilin reclama a LD Constructora · CL · Manufacturingransomdeadlock reclama a Saber1 · US · Not Foundransomdeadlock reclama a idi pharma · ES · Healthcareransomsafepay reclama a hoteldelfinolugano.ch · CH · Hospitalityransomsafepay reclama a dwi-bau.de · DE · Otherransompanzer reclama a Supreme Energy · SG · Energy & Utilities
Kalir Brief · Item11 October 2026 · 02:21 UTC
BRIEFLeakhighP47

Leaked .env file with SATTNORD credentials

SATTNORD

Detected11 October 2026 · 02:21 UTC
Why it matters

A BreachForums leak post dated October 11 exposes an .env configuration file allegedly belonging to SATTNORD, which typically contains API keys, database credentials and tokens. Such secrets can grant direct access to backend systems and third-party services. The named organization should rotate all keys and secrets referenced in the file immediately.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score47
Detected11 October 2026 · 02:21 UTC
Related items6
Leak● 35
Filtración de 16 bases de datos educativas de BrasilSixteen Brazilian educational databases were leaked and shared for download on a darkweb forum. Education-sector breaches expose student, parent and staff records that enable phishing, identity theft and account takeover. Even if the post is a few months old, Brazilian schools and universities should confirm whether their data is included and warn users.
10m
Leak● 48
Base de datos del ERP brasileño FRM Sistemas (159MB) a la ventaA 159MB corporate database belonging to Brazilian ERP vendor FRM Sistemas is being offered on a darkweb forum. ERP databases typically hold customer, financial and operational records, so exposure could enable fraud, extortion and downstream attacks on client firms. Brazilian businesses running this ERP should review exposure and rotate leaked credentials.
10m
Leak● 64
Base de datos y código fuente de Legiit.com a la ventaA seller is offering the Legiit.com database together with its source code, exposing customer accounts and proprietary backend code. Leaked source code can reveal hidden vulnerabilities and enable exploits or platform cloning, while user data enables credential stuffing and phishing. Affected users should rotate credentials and audit for exposed secrets.
10m
Leak● 72
Filtración de 21.145 cuentas de BinanceA fresh post offers a database of 21,145 Binance account records from a 2026 crypto leak. Exposed credentials and account data enable account takeover, SIM-swap and phishing attacks against exchange users, and can be monetized to drain funds. Binance users and counterparties should force password resets and verify MFA.
10m
Leak● 60
Filtración de datos de 87.000 estudiantes de PanamáA fresh leak of 87,000 Panamanian student records appeared on a darkweb forum, exposing names and contact details of minors. This data fuels targeted phishing and identity theft against students and families, pointing to a breach at a Panama education entity. Authorities should verify the exposure and notify those affected.
10m
Leak● 24
Volcado SQL de la empresa brasileña topsay.com.brA SQL dump of the Brazilian company topsay.com.br was posted on DarkForums, dated June 2023. While the data relates to a Latin American firm, the post is over three years old and likely already circulated, so it is not a fresh alert. Worth noting for exposure history only, not for immediate response.
1h