BRIEFLeaklowP47
Leak of 52-million-record Ukraine database
Ucrania
Detected12 September 2026 · 08:12 UTC
A thread advertises a 52-million-record Ukrainian database in a 'fresh leaks' section, reportedly containing citizen or service data. Even though it is outside the LATAM scope, its scale makes it relevant for identity-theft and credential-reuse monitoring across downstream services. Verify freshness and actual record contents before acting on it.
CategoryLeak
Severitylow
Priority score47
Detected12 September 2026 · 08:12 UTC
Leak● 42
Filtración de la base de datos de la tienda de moda RomweThe Romwe database, belonging to a global fast-fashion e-commerce brand, has been reposted for download, potentially exposing customer emails, hashed passwords and order details. For defenders it is mainly useful for gauging credential-stuffing exposure affecting end users, not a regional target. Treat as corroborating material unless evidence of a genuinely new breach appears.Leak● 62
Filtración de documentos de Yucatán, MéxicoA freshly posted thread (about 1 hour old) shares a pack of documents attributed to Yucatán, Mexico, promoted alongside Telegram channels whose names reference attacking governments. The exact record count and whether the files come from state/municipal entities are not yet confirmed, but the targeting pattern points to a government or public-sector source. Defenders in Mexican government and critical-infrastructure entities should treat this as a possible breach lead and monitor for reuse of the data.Leak● 42
Base de datos de médicos del hospital Hermina Palembang (Indonesia) filtradaA fresh forum post advertises a database attributed to Doctors/Hermina Palembang, a hospital network in Indonesia, reportedly containing doctor/medical records. Healthcare data is highly sensitive and enables targeted fraud, phishing and extortion against staff and patients. Though outside the LATAM region, it reflects ongoing hospital-sector exposure worth tracking for regional analogues.Leak● 35
Base de datos de WiredBucks.com a la ventaA listing advertises a database from WiredBucks.com, a crypto-related service, suggesting stolen user or account records may be circulating. If genuine, the data could be used to target crypto users via credential reuse and phishing. Impact is modest given the site's size, but it is worth logging for correlation with larger credential campaigns.Leak● 55
Filtración de la base de datos de Success.com expuesta en foroA thread dated August 2026 announces a database leak from Success.com, a US media/education company, on a leak forum. The posting indicates a real organizational data set is circulating, likely containing subscriber or account data usable for credential stuffing and phishing. Defenders and brand-protection teams tied to the domain should confirm scope and force resets as needed.Leak● 48
Filtración de 43.773 cuentas de la app de pesca Lakemonster.comA breach of the fishing app Lakemonster.com exposed about 43,773 accounts including GPS locations, phone numbers and premium status. The combination of geolocation and contact data enables targeted phishing and physical-tracking risks for affected users. It is a real-company leak but outside the AR-LATAM critical-infrastructure scope, so it ranks lower.