BRIEFLeakhighP45
Database leak of Kenyan power transmission firm KETRACO
ketraco.co.ke (Kenya Electricity Transmission Company)
Detected14 September 2026 · 07:12 UTC
A database belonging to Kenya Electricity Transmission Company (KETRACO), a national grid operator, was posted for sale on a leak forum, exposing internal data. Targeting a power-transmission utility matters because such data can enable espionage or follow-on intrusion against critical energy infrastructure. Though outside Latin America, it is a genuine critical-infrastructure victim worth tracking.
CategoryLeak
Severityhigh
Priority score45
Detected14 September 2026 · 07:12 UTC
Leak● 40
Filtración de código fuente de Lacoste 2026A leak advertised as Lacoste.com source code plus internal documents and CRM data from 2026 surfaced on a leak forum. Exposure of proprietary code and customer CRM records can aid further attacks and expose customer PII. Though the brand is not regional, the leak is recent and concerns a major global retailer.Leak● 33
Venta de un millón de tarjetas de crédito argentinas y de otros paísesA dataset of roughly one million Argentine credit cards mixed with other countries is being traded on a forum. Although the card dump appears dated early 2025, its scale and Argentine financial focus make it relevant for fraud monitoring. Stale data reduces immediate urgency but still fuels card-not-present fraud and account takeover.Leak● 42
Filtración de datos de 263 GB de ciudadanos estadounidensesA 263 GB dataset claiming full names, addresses, income and family details of US citizens is being circulated. The scale is large enough to fuel identity fraud and targeted social engineering, though the victims are outside the Latin America region. Worth tracking for downstream abuse and data reuse across other leaks.Leak● 15
Refiltración de 272K correos de clientes de LedgerAn actor is re-posting a list of about 272,000 Ledger customer email addresses, matching the data originally exposed in the 2020 Ledger breach. It enables targeted phishing and crypto-theft attempts against Ledger users. This is stale, previously-leaked data rather than a fresh compromise, so it is low priority.Leak● 25
Combolista de credenciales dirigidas a Chile (87K) en circulaciónA combolist of roughly 87,000 Chile-targeted email:password pairs is being shared, dated 7 May 2026. These credentials feed credential-stuffing and phishing campaigns against Chilean users and organizations. It is a diffuse credential dump rather than a breach of a specific entity, and it is several months old, so impact is limited but regionally relevant.Leak● 45
Base de datos de la agencia de viajes rusa vpoxod.ru (1M) a la ventaA seller is offering a database of roughly 1 million records from the Russian travel booking site vpoxod.ru, with the data dated October 2025. It likely holds customer names, contacts and booking details usable for phishing and account takeover. It is outside Latin America, but represents a large, fresh leak of a real commercial entity worth logging.