BRIEFLeaklowP28
Database leak at Polish postal operator InPost
InPost (inpost.pl)
Detected20 September 2026 · 09:37 UTC
A database reportedly belonging to InPost, a major Polish postal and logistics operator, has been posted for download on DarkForums. The dump appears to hold customer and order data that could power phishing and account takeover against InPost users. The post is not recent and the victim is outside Latin America, so it ranks low for a regional DRP feed.
CategoryLeak
Severitylow
Priority score28
Detected20 September 2026 · 09:37 UTC
Leak● 22
Filtración de 1,2 millones de registros de la minorista rusa DetmirA 1.2 million-row database attributed to Russian retailer Detmir has been posted on DarkForums, though the underlying data dates from 2024. It likely includes customer names, emails and phone numbers usable for spam and credential attacks. Because the data is old and the victim is outside Latin America, it is only marginally relevant.Leak● 34
Filtración de base de datos de la Universidad de HarvardA database purportedly belonging to Harvard University has been shared on DarkForums. University breaches typically expose student and staff PII, credentials and internal directories, useful for credential stuffing and targeted phishing. However, the post dates from April 2026 and the victim is outside the region, so it is low priority here.Leak● 42
Filtración de la base de datos completa de Sctour.ruAn actor claims to hold the full database of Russian travel site Sctour.ru and is distributing it on DarkForums. Full customer databases typically contain names, contacts and booking/payment data, enabling fraud against the site's customers. Low regional priority but relevant if Sctour has Latin American partners or clients.Leak● 50
Filtración de 85.451 credenciales de correo de ArgentinaAn 85,451-line email:password dump specifically for Argentine accounts was published, dated August 2026. AR-focused combolists drive credential-stuffing and account takeover against local users and organizations, with possible access to corporate and public-sector mailboxes. Regional defenders should force resets and monitor for credential reuse.Leak● 40
Filtración parcial de base de datos de la inmobiliaria CapifranceA partial database of the French real-estate network Capifrance is circulating, likely containing client/agent contact data and possibly credentials. Partial leaks still fuel phishing and account takeover against the company and its clients. Impact is limited because only part of the dataset is exposed.Leak● 52
Filtrada base de datos del Ministerio de Asuntos Religiosos de IndonesiaA database attributed to Indonesia's Ministry of Religious Affairs is being shared, exposing government records and likely citizen data. Government ministry data is high-value for fraud, espionage and identity theft. Though outside the AR-LATAM region, it shows active targeting of public-sector entities.