BRIEFLeaklowP50
Swan Bitcoin database leak
Swan Bitcoin
Detected27 September 2026 · 05:17 UTC
Reposts collapsed2
A database allegedly belonging to Swan Bitcoin, a US Bitcoin financial services firm, is being shared on a leak forum. KYC and customer PII from a crypto company is high-value for fraud and targeted phishing. Posted in May 2026, it is not a fresh breach but remains relevant for crypto-sector defenders.
CategoryLeak
Severitylow
Priority score50
Detected27 September 2026 · 05:17 UTC
Leak● 45
Venta de 2.700 millones de registros de SSN de EE.UU.A seller is advertising 2.7 billion US SSN records with full name, address, date of birth, phone and ID. This volume almost certainly repackages the earlier National Public Data breach rather than a new incident, but it still represents massive identity-theft exposure for US residents. Treat it as a recycled yet high-volume PII dataset for fraud monitoring.Leak● 62
Filtración de código fuente y claves de acceso de VercelA threat actor is offering source code, access keys and database dumps allegedly belonging to Vercel, a major cloud deployment and hosting platform. If authentic, exposed API keys and source code could enable supply-chain attacks against the many organizations hosting their apps on Vercel. Defenders should rotate Vercel tokens and deployment secrets immediately.Leak● 45
Documentos filtrados de Pertamina, petrolera estatal de IndonesiaA threat actor is distributing documents allegedly stolen from PT Pertamina, Indonesia's state-owned oil and gas enterprise. Breaches of national energy operators can expose sensitive operational and employee data and enable follow-on attacks on critical infrastructure. It matters as a large state-enterprise leak even though it is outside Latin America.Leak● 48
Publican un paquete con 10 bases de datos masivas de ChinaA user released a pack of ten large databases originating from China on BreachForums. Bulk dumps of this scale typically contain millions of credential and personal records that fuel account takeover and fraud. Monitoring them lets defenders check whether their own users' data appears in the corpus.Leak● 50
Base de datos de la agencia de cuarentena de Indonesia (Badan Karantina) filtradaA database belonging to Badan Karantina, Indonesia's national quarantine agency, was published for download on 7 September 2026. Government records like these often hold personal and operational data usable for phishing and identity fraud. Though outside Latin America, it points to an active leak campaign worth tracking for actor or infrastructure overlap.Leak● 92
Filtración de base de datos de Agua y Drenaje de MonterreyA threat actor has just published a database allegedly belonging to Servicios de Agua y Drenaje de Monterrey, the water and drainage utility serving Mexico's second-largest metro area. This is critical water infrastructure in Latin America, so exposure of customer or operational data carries high risk of fraud, targeted phishing, and follow-on intrusion into OT/IT systems. Defenders should urgently verify the leak's authenticity and scope and notify the utility.