BRIEFLeaklowP33
Database leak of the French company Ekolis
Ekolis
Detected12 September 2026 · 13:12 UTC
A forum member posted a database leak attributed to the French entity Ekolis. The size and contents are not specified, so impact is limited, but it is a real-organization leak worth noting and verifying. Check the data for credential reuse and potential downstream access abuse.
CategoryLeak
Severitylow
Priority score33
Detected12 September 2026 · 13:12 UTC
Leak● 38
Base de datos de la tienda neerlandesa rubberwebshop.nl a la ventaA seller is offering a database of roughly 100,000 records from the Dutch webshop rubberwebshop.nl. The post is dated May 2026, so it is not fresh, but it is a real company's customer data being monetized on the market. Monitor for downstream fraud and reuse of the leaked credentials.Leak● 54
Filtración de datos de clientes de la agencia japonesa Hankyu TravelA criminal is selling a database of about 742,000 customer records from hankyu-travel.com, a Japanese travel agency, including full customer details. It is a genuine large breach of a real company and useful for tracking the actor's targeting and monetization patterns. Travel-sector defenders should watch for credential-stuffing against exposed customers.Leak● 28
Filtración de código fuente de HD HyundaiA post shares a leaked data set from HD Hyundai, including source code, dated November 2025. Source-code exposure of a large industrial group can reveal credentials, internal systems and supply-chain details. It is included at low priority because it is months old and the affected entity is outside the LATAM region, so it is background rather than a live alert.Leak● 38
Base de datos de la criptoexchange Nexo (1,7M) republicadaA 1.7M-record Nexo database is being re-shared on BreachForums, dated May 2026 but tied to an earlier 2024 leak. It contains customer identity and KYC-type data valuable for account takeover and crypto-targeted fraud. The impact is real but reduced because the material is recycled rather than a new intrusion, so treat it as context, not a fresh alert.Leak● 80
Filtración de datos ciudadanos de UTU y UDELAR (Uruguay)A 267,000-record database containing citizen data from Uruguay's UTU (technical education) and UDELAR (national university) is being released for free, likely by a regional actor (LaPampaLeaks). The public-sector origin means real personal data of students and staff is exposed, enabling identity theft and targeted phishing. Uruguayan defenders should validate the exposure, scope the records and notify affected individuals.Leak● 45
Base de datos de 4,2M de registros personales de daryn.online a la ventaA 4.2 million-record personal database allegedly belonging to the Kazakh digital-services platform daryn.online is being circulated for sale. Dumps of citizen personal data of this size feed identity theft, fraud and targeted phishing against a broad user population. Organizations that integrate or federate with the platform should review exposure and monitor for downstream abuse.