PULSE
FEED
vulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScaler
Kalir Brief · Item20 September 2026 · 03:37 UTC
BRIEFLeakhighP65

Database leak of Colombian courier Interrapidísimo (661K)

Interrapidísimo (Colombia)

Detected20 September 2026 · 03:37 UTC
Why it matters

A 661K-record database attributed to Colombian courier Interrapidísimo is being posted for leak/sale. Shipping firms hold names, addresses, phone numbers and tracking IDs that enable parcel scams, phishing and identity fraud against customers. LatAm defenders and the company should confirm scope and warn users about impersonation.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score65
Detected20 September 2026 · 03:37 UTC
Related items6
Leak60
Se ofrecen 723.000 registros de clientes de DoorDash y otras marcasA 723K-record dataset claimed to include DoorDash, BWW and other customer data is marketed as fresh 2026 private data with many 'hits'. Large PII/credential dumps fuel account takeover and card fraud across food-delivery and retail users. Fraud and identity teams should monitor for reuse of these credentials on other services.
28m
Leak55
Filtración de datos de residentes de Hong Kong: 2,8M filas con nombres, teléfonos y HKIDAn actor is selling a 2.8M-row dataset of Hong Kong residents containing names, phone numbers and HKID numbers. Government-issued identity numbers enable impersonation, account takeover and fraud at scale. Although outside AR-LATAM, large national PII sets like this feed downstream attacks and are worth tracking for fraud and identity-abuse detection.
28m
Leak80
Base de datos de Vivo Brasil con 28 millones de líneas filtradaAn actor is distributing a database attributed to Brazilian telecom Vivo with roughly 28.1 million lines. Telecoms are critical infrastructure, so subscriber and customer records from a major regional carrier carry high risk of SIM-swap, phishing and credential-stuffing. LatAm telco defenders should verify exposure and hunt for reuse of leaked identifiers.
28m
Leak26
Filtración de la base de datos de Lockstation.co.ukA forum user posted a leaked database belonging to Lockstation.co.uk, a UK-based company, which could expose customer or account records. The post is dated October 2025, so it is months old and not a fresh alert, and the impacted entity is a UK firm outside the Latin America focus. It is retained only for context; no immediate action is warranted.
1h
Leak66
Filtración de base de datos de Hallmark Cards con 7,9M de registrosA threat actor is distributing a database allegedly containing over 7.9 million records of PII from Hallmark Cards, Inc. and Hallmark Plus, including customer names, addresses and contact details. If authentic, the volume makes it highly valuable for identity theft, phishing and credential-stuffing against a well-known retail brand. Defenders should watch for downstream fraud and account-takeover attempts tied to these identities.
1h
Leak40
Filtración (repost) de 3,8 millones de registros de Zain Telecom IrakA CSV of roughly 3.8 million records allegedly from Iraqi telecom Zain is being re-shared. Telecom is critical infrastructure and such data enables SIM-related fraud and targeted phishing, but the item is an out-of-region repost with no fresh date, so urgency is low for Latin America. Track it mainly as context rather than a new alert.
3h