BRIEFGov / MilitaryhighP62
Nepal government database dump with admin access exposed
Gobierno de Nepal / Nepal government agency
Detected6 October 2026 · 20:07 UTC
Reposts collapsed2
An actor claims a full database dump, admin access, and compromise of a Nepal government entity plus a tech company. Government databases typically hold citizen PII, credentials, and internal systems, making this a serious breach even outside Latin America. The post signals an actor with live post-exploitation access whose TTPs are worth tracking.
CategoryGov / Military
Severityhigh
Priority score62
Detected6 October 2026 · 20:07 UTC
Gov / Military● 28
Oferta de datos/acceso a departamentos gubernamentales y militares de PakistánA seller ('ModernStealer') is advertising material tied to Pakistani government and military departments. Access to state or defence entities is inherently high value, but the listing dates to May 2026, is outside the AR-LATAM remit and gives no verified target list or scale. It is therefore not a fresh alert, though it hints at the seller's state-sector reach.Gov / Military● 52
Venta de cuentas de correo de gobiernos y policías de varios paísesA seller is advertising access to government and law-enforcement email accounts across multiple countries. Compromised official mailboxes enable impersonation of state bodies, phishing of public servants and lateral movement into institutional networks. Country attribution is missing, so AR-LATAM exposure is possible but unconfirmed; worth watchlisting until the target list surfaces.Gov / Military● 45
Filtración de base de datos del Instituto de Diplomacia y Relaciones Exteriores de MalasiaA threat actor is offering a 2,527-record breach of Malaysia's Institute of Diplomacy and Foreign Relations (IDFR), a government-linked diplomatic training institution, on BreachForums. Although the volume is small, the data belongs to a sensitive foreign-affairs body and could feed targeted phishing or social engineering against officials. The victim is outside the LATAM region, so the relevance for Argentine and regional defenders is indirect rather than a fresh domestic alert.Gov / Military● 80
Base de datos del DETRAN de Brasil con 250 millones de registros filtradaA 250-million-record database attributed to Brazil's DETRAN state traffic departments is being offered on a hacking forum. It would expose drivers' identities, vehicles, licences and addresses at national scale. For LATAM defenders this is a major government/critical-infrastructure leak and a rich source for identity fraud and further targeting.Gov / Military● 93
Filtración de 20.000 registros del gobierno de CorrientesA threat actor posted a 20,000-record database allegedly belonging to the Corrientes provincial government in Argentina (corrientes.gob.ar) just minutes ago. Government datasets usually hold citizen PII, tax, or service records, exposing residents to identity theft and targeted phishing. Any leak of an Argentine .gob domain warrants immediate verification and incident response.Gov / Military● 90
Base de datos del gobierno de Tamaulipas a la ventaA database apparently extracted from the Tamaulipas state government website (tamaulipas.gob.mx) is being offered on DarkForums. State portals typically hold citizen records, official accounts and internal contacts, so exposure enables fraud, credential abuse and follow-on intrusion into e-government services. Defenders at Mexican state agencies should verify the source and assume credential and record compromise.