BRIEFLeakhighP60
Database leak of Pesisir Selatan regency government (Indonesia)
Pesisir Selatan Regency (pesisirselatankab.go.id)
Detected4 October 2026 · 15:55 UTC
A threat actor claims to have leaked the database of pesisirselatankab.go.id, the official site of the Pesisir Selatan regency government. Government databases typically hold citizen PII, civil-servant records and internal credentials, so exposure can enable identity theft and follow-on intrusions. It is fresh but outside the AR/LATAM region, making it relevant mainly for tracking regional-government exposure.
CategoryLeak
Severityhigh
Priority score60
Detected4 October 2026 · 15:55 UTC
Leak● 55
Filtración de la base de datos de SHEIN a la ventaA database attributed to global fashion retailer SHEIN is being distributed for free download on BreachForums, with a long multi-page thread. If authentic, it exposes customer records such as emails, addresses and order data for a company with hundreds of millions of users worldwide. Defenders should confirm the scope and watch for credential-stuffing and phishing abuse of the leaked identities.Leak● 55
Base de datos de 1,8 TB de un exchange canadienseA 1.8TB dataset described as a Canadian exchange-group database is being offered, posted in June 2026. Financial and identity data at this volume fuels account takeover, fraud and KYC bypass, and exchange customers are high-value targets. Worth validating the sample and monitoring for reused credentials.Leak● 22
Base de datos de Colis Relais (Francia) con 14M de registrosA 14M-record Colis Relais parcel-pickup database from France is being shared, dated 2025. It contains logistics and personal contact data that enables smishing and package-fraud campaigns, but the leak is over a year old. Treat as background context rather than a fresh alert.Leak● 62
Base de datos de ciudadanos israelíes a la ventaA recent post offers a database of Israeli citizens for sale, claiming a government-scale trove of personal data. If genuine it enables identity theft, targeted phishing and even physical targeting, though such datasets are often recycled, so sample validation is essential. Relevant to CTI teams tracking citizen-data leaks and their reuse.Leak● 76
Base de datos de Thai Airways con 200M de registros a la ventaA threat actor is advertising a 200M+ record database allegedly belonging to Thai Airways, posted fresh today. The airline is critical transport infrastructure, and a leak of this scale would expose passenger PII (passports, contacts, loyalty data), enabling fraud and targeted phishing. Defenders in aviation and travel should verify the sample and watch for credential-stuffing and downstream fraud.Leak● 38
Base de datos de la CAF francesa con 22,37M de registrosA 22.37M-record dataset attributed to France's CAF (family/student benefits agency) is circulating, dated 2025. It is a government welfare database, but the data is over a year old, so it is a stale repost rather than a fresh breach. Useful as background for reuse/fraud risk, not an urgent alert.