
BRIEFLeakhighP68
Database leak of Uruguayan firm De Simoni & Piaggio
De Simoni & Piaggio
Detected8 October 2026 · 03:07 UTC
A database from the Uruguayan firm De Simoni & Piaggio was posted for download on BreachForums on October 8, 2026. The leak exposes records tied to a Latin American professional-services entity, which criminals can use for fraud and targeted phishing. Uruguayan and regional defenders should verify the exposure and watch for credential reuse.
CategoryLeak
Severityhigh
Priority score68
Detected8 October 2026 · 03:07 UTC
Leak● 72
Venta de base de datos de 102M clientes de Rakuten JapónA threat actor is selling a Rakuten Japan database containing roughly 102 million customer records on BreachForums. The scale makes it one of the largest customer-data offerings seen recently, enabling identity theft and account takeover across a major e-commerce and fintech group. Though outside LATAM, it shows the market's appetite for bulk PII.Leak● 60
Base de datos de 2TB de Jomar Electrical Contractors publicadaA 2TB database belonging to Jomar Electrical Contractors has been posted to a breach forum in early October 2026. The size suggests extensive operational, client or employee records. Electrical contractors sit in critical-infrastructure supply chains, so defenders should confirm scope, rotate exposed credentials and assess downstream exposure.Leak● 56
Base de datos PII mexicana de Cosmotienda filtradaA forum user is distributing a Mexican PII database tied to Cosmotienda (2026). Exposure of customer names, contacts and likely payment data enables identity theft and targeted phishing against Mexican consumers. Retail and fraud teams should verify the leak, notify affected customers and force credential resets.Leak● 35
Filtración de la base de datos SQL de helpachildofindia.orgA BreachForums user posted a full SQL database dump of helpachildofindia.org, an Indian children's charity, dated October 7, 2026. The dump likely exposes donor and contact records for a small NGO, which matters for the affected organization and for downstream phishing. Impact is limited and the entity is outside the Latin America region, so priority is low.
Leak● 55
Filtración de 90 millones de credenciales URL:login:passwordA freshly posted 90-million-line URL:login:password combolist (stealer logs) is being distributed as a private UHQ dump dated 07/10/2026. The set is global and not tied to a single named org, but its sheer scale makes it a high-value resource for credential-stuffing and account-takeover campaigns. Defenders should treat it as a fresh corpus of valid-looking domain credentials for password-reuse monitoring.Leak● 44
Filtración de identidades de 120.000 residentes de CirebonA threat actor is publishing a database reportedly containing the personal identities of roughly 120,000 residents of Cirebon, Indonesia, likely sourced from a local government population registry. The scale and citizen-PII nature make it useful for identity theft and downstream fraud. It matters to defenders outside the region only as a signal of an exposed civic data source, not as a direct AR-LATAM target.