PULSE
FEED
vulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScaler
Kalir Brief · Item20 September 2026 · 07:37 UTC
BRIEFGov / MilitarycriticalP80

Database leak of users and emails from a Latin American municipality

Alcaldía de C (municipio, Latinoamérica)

Detected20 September 2026 · 07:37 UTC
Why it matters

A forum post offers a database containing emails and user/password pairs from a Latin American municipality ('Alcaldia'), suggesting a breach of public-sector systems. If valid, these credentials enable credential-stuffing, phishing and direct access to government accounts. Municipalities hold citizen PII and often serve as a pivot into broader regional government networks.

MetadataRECORD
CategoryGov / Military
Severitycritical
Priority score80
Detected20 September 2026 · 07:37 UTC
Related items6
Gov / Military62
Presunta filtración masiva de datos del gobierno de Banyumas (Indonesia)A forum user is advertising information allegedly exfiltrated from the Banyumas Regency government portal (banyumaskab.go.id), posted with a large-volume claim ('75JT'). If genuine, it exposes citizen and administrative data of a regional government, enabling fraud, targeted phishing and further intrusion into public systems. Government data exposure at this scale warrants verification and monitoring even outside our core Latin America region.
6h
Gov / Military42
Colección filtrada de la Policía Federal de Brasil (PF 2026)A forum post offers a 'collection' of Brazil's Federal Police (PF) data labeled 2026, potentially exposing law-enforcement records. Because the post is dated February 2026 — roughly seven months old — it is not a fresh alert, but the described victim is a high-value Latin American federal agency and should still be logged for context.
13h
Gov / Military90
Filtración completa de la base de datos de la SED BogotáA full-leak post for the SED Bogotá (District Education Secretariat) database appeared roughly 15 minutes ago, exposing data tied to Colombia's capital education authority. Leaked government records enable identity fraud, targeted phishing and follow-on intrusion against public entities. Colombian public-sector defenders should treat this as fresh and urgent.
13h
Gov / Military96
Filtración de datos de gobierno y militares: gov.lc, gov.ph y eb.mil.brA threat actor (DBHunter) posted a database claimed to hold government and military data from gov.lc, gov.ph and, critically for the region, eb.mil.br — the Brazilian Army. If verified, exposure of military records, credentials or internal documents carries direct risk to Brazilian defence and regional security. .mil.br and partner entities should urgently validate the claim and hunt for credential reuse.
13h
Gov / Military52
Filtración de datos del Ministerio de Trabajo de Indonesia con 1.200 millones de registrosA verified leak attributed to Indonesia's Ministry of Labor (kemnaker.go.id) is being sold, claiming 1.2 billion records in 347GB dated December 2025. It is a massive government PII exposure outside the Latin America theater, useful for benchmarking government breach response and watching regional spillover. Consider checking for reused government credentials.
15h
Gov / Military80
Filtración de bases de datos de la Secretaría de Educación de Brasil y la Universidad Federal de AcreA database tied to Brazil's Education Secretariat, CORIPA and the Federal University of Acre is being offered, exposing student and staff records. Latin American government education bodies hold sensitive PII that fuels identity theft and credential phishing. Immediate verification and credential resets are warranted.
15h