BRIEFLeakhighP68
Database leak of Spanish car-rental firm Record Go
Record Go (recordrentacar.com)
Detected15 September 2026 · 10:12 UTC
A threat actor just dropped a database allegedly belonging to Record Go, the Spanish car-rental company behind recordrentacar.com. It likely exposes customer PII such as names, ID/passport documents and contact details, enabling targeted phishing and identity fraud. As a large consumer-facing service, it carries serious reputational and GDPR compliance risk for the firm and its customers.
CategoryLeak
Severityhigh
Priority score68
Detected15 September 2026 · 10:12 UTC
Leak● 42
Filtración de base de datos de la canadiense NL FisherA leak-forum post offers a database from the Canadian company NL Fisher (nlfisher.com). It likely holds corporate and possibly customer records usable for phishing and business-email-compromise attacks. The drop is recent but the victim is a small non-LATAM firm, so its operational priority is modest.Leak● 45
Base de datos de la estadounidense Mundt and Associates a la ventaA leak forum shows a database attributed to the US company Mundt and Associates (mundtinc.com) as a fresh drop. It may expose corporate contacts and client information that enable phishing and social-engineering against the company. Impact is contained to a small US business, so it ranks below region-relevant or critical-infrastructure leaks.Leak● 45
Filtración de base de datos de la empresa estadounidense KuhnlineA leak-forum post offers a database from the US company Kuhnline (kuhnline.com). It likely contains business contact and possibly client records, enabling phishing and invoice-fraud activity against the firm and its partners. It is a brand-new drop, but it concerns a small US company, so impact beyond that organisation is limited.Leak● 40
Base de datos de 5M usuarios de Animoto a la ventaA 5-million-user database for the video-creation platform Animoto (animoto.com) is being offered on a leak forum. If genuine, it exposes subscriber emails and account data usable for credential stuffing and phishing campaigns. However, the post dates to March 2026, so it is a stale re-post rather than a fresh breach.Leak● 22
Filtración de 10 GB de datos de NestléRoughly 10GB of data attributed to Nestlé was published on a leak forum, potentially including internal or customer information. However, the post is dated January 2023, making it stale and not a fresh alert. It holds mainly historical or enrichment value for defenders.Leak● 40
Filtración de base de datos del Departamento de Pesca de BangladeshA database belonging to Bangladesh's Department of Fisheries has reportedly been leaked, and the post appears fresh. Although outside Latin America, exposing a government body's data can enable targeted phishing against officials and contractors. It is a timely government-sector leak worth tracking.