BRIEFLeakhighP55
Database leak of Vodafone telecom operator
Vodafone
Detected9 October 2026 · 14:22 UTC
A database attributed to telecom operator Vodafone is being distributed on the Spear Leaks forum, dated mid-2026, with a thread spanning nine pages. The size suggests a substantial dump of subscriber or corporate records. Because telecom operators are critical infrastructure, defenders should verify the data and prepare customer notifications and credential-reset plans.
CategoryLeak
Severityhigh
Priority score55
Detected9 October 2026 · 14:22 UTC
Leak● 48
Filtración de historiales de pacientes del grupo portugués CUFA dataset of roughly 263,000 patient records from Portuguese healthcare group cuf.pt is being offered, including contact and demographic data. Health data is among the most sensitive categories, enabling targeted fraud and extortion. It is a confirmed named-organization healthcare leak worth surfacing.Leak● 55
Base de datos de clientes de Optum a la ventaA customer database attributed to Optum.com is being offered on the forum, indicating a leak at a major US healthcare services company. Healthcare customer data is highly sensitive and fuels medical fraud and targeted phishing. It is a sizable, named-organization leak worth surfacing to defenders.Leak● 63
Filtración de base de datos del Colegio Mexicano de NutriólogosA database of roughly 584,000 records from colegiomexicanodenutriologos.org.mx is being leaked, containing personal and contact data. It affects a Mexican professional organization and its members, exposing PII usable for phishing and fraud. It is a LATAM-relevant leak worth tracking even if not government or critical infrastructure.Leak● 33
Filtración de datos del hospital Thye Hua Kwan (Singapur)A data collection linked to Singapore's Thye Hua Kwan Hospital (Ang Mo Kio) is circulating on BreachForums. Healthcare records are highly sensitive, so any leak of patient or staff data raises privacy and regulatory risks. The scale is unclear, so treat it as a possible breach to confirm with the affected organization.Leak● 66
Base de datos de IKEA a la venta en foro clandestinoA forum user posted a claimed IKEA database for sale, indicating a possible breach or resale of the retailer's data. If authentic, it could expose customer or internal records usable for phishing, credential stuffing and account takeover. Given IKEA's global footprint it should be validated and monitored even though the source and scale are unconfirmed.Leak● 88
Base de datos con identidad completa de 596.652 ciudadanos mexicanos a la ventaA threat actor is offering a full identity database of 596,652 Mexican citizens, including CURP, INE voter ID, home address and personal data. Government-issued identity records at this scale enable mass identity theft, fraud, loan/credit abuse and impersonation of voters. Defenders in Mexico and LATAM should treat this as a high-priority exposure and validate its authenticity.