BRIEFLeakhighP62
US airline flight operations data leaked
US airlines
Detected9 October 2026 · 02:22 UTC
A forum user posted what is described as US airline flight operations data, a dataset touching aviation logistics and scheduling. If genuine, exposure could reveal routes, schedules and operational details useful for disruption or fraud. Aviation operators and their suppliers should verify exposure and monitor for downstream abuse.
CategoryLeak
Severityhigh
Priority score62
Detected9 October 2026 · 02:22 UTC
Leak● 72
Filtración de base de datos de Argentina, Perú y MéxicoA forum user posted a claimed database leak covering Argentina, Peru and Mexico just minutes before discovery, indicating fresh and possibly large regional data. The specific victim, record count and data types are not yet confirmed, but multi-country LatAm leaks often bundle citizen, consumer or corporate PII. Defenders in AR/PE/MX should monitor for credential and PII exposure and validate whether their organization's data appears.Leak● 40
Filtración de 89 millones de credenciales URL:login:contraseñaA member is publishing a very large stealer-log compilation of URL:login:password entries, claimed at 89 million lines. Credential dumps this size fuel credential-stuffing and account-takeover campaigns across many services. Defenders should enforce MFA and monitor for spikes in failed logins against their user base.Leak● 42
Venta de datos de 43.000 residentes de Probolinggo, IndonesiaA seller is advertising 43,000 identity records belonging to residents of Probolinggo, Indonesia, likely including national ID and personal data. Bulk PII of this kind enables identity fraud and targeted phishing against the affected population. It also suggests a possible compromise of a regional government or service-provider database.Leak● 30
A la venta base de 89 millones de credenciales URL:LOGIN:PASSA seller is dumping a roughly 89-million-entry URL:LOGIN:PASS combo of stealer-log style credentials sourced from infected hosts. It is a large commodity credential set rather than a breach of a specific named organization, so it mainly fuels credential-stuffing. Value is limited unless defenders cross-reference their own domains against it.Leak● 44
Volcado fresco de registros stealer de 743 MB publicado en foroA 743 MB dump of infostealer logs was posted today on DarkForums, likely containing credentials, cookies and session data harvested from infected machines. Fresh stealer logs of this size often feed account-takeover and initial-access campaigns against corporate and government targets. Defenders should hunt their users' and organizations' credentials in the dump before it is weaponized.Leak● 71
Filtración de datos de empleados de TI de StarMedica MéxicoStarMedica, a Mexican private hospital chain, is reportedly leaking data tied to its IT department employees. If valid, threat actors could reuse credentials and internal details for phishing or lateral access into healthcare infrastructure. Health-sector targets in Latin America are prime for ransomware, so this warrants validation and credential-reset advice.