BRIEFLeakhighP52
Croatian pension institute HZMO database of 105K records leaked
Mirovinsko / HZMO (Croacia)
Detected19 September 2026 · 23:38 UTC
A 105,000-record database tied to mirovinsko.hr (Croatian Pension Insurance Institute, HZMO) was posted on a dark web forum in August 2026. It leaks citizens' personal and pension-related data held by a government body. This is a confirmed public-sector exposure useful for tracking government targeting trends, even though it sits outside LATAM.
CategoryLeak
Severityhigh
Priority score52
Detected19 September 2026 · 23:38 UTC
Leak● 20
Combolist de 101.000 cuentas de Argentina (datos de agosto de 2025)An Argentina-focused combolist of about 101,000 email/password pairs was posted, but it is dated August 2025, over a year old, and is a generic credential dump rather than a breach of a specific organization. It is not a fresh alert, though it can still fuel credential-stuffing against Argentine accounts. Treat as background, not an urgent incident.Leak● 48
Filtración de 86.000 registros del sistema judicial de CroaciaA database of about 86,000 records from the Croatian judicial system was published on a cybercrime forum in August 2026. It exposes citizens' personal and case-related data held by a state institution. While outside Latin America, it is a genuine government data leak showing active targeting of public-sector systems and can enable identity fraud.Leak● 80
Filtración de base de datos de 50 GB de la clínica boliviana FoianiniA roughly 50 GB database attributed to Bolivia's Clínica Foianini was posted for download on a dark web forum and appears freshly published. Given the volume and healthcare sector, it likely contains patient, medical and administrative records. This is a critical-sector LATAM leak that can drive identity theft, extortion and phishing against patients and staff.Leak● 35
Filtración masiva de datos de usuarios de Telegram (182M)A large Telegram user dataset (182M + 13.41M + 0.7M records) is being redistributed on RaidForums, reportedly with phone numbers and account identifiers. This kind of data fuels phishing, SIM-swap and account-takeover campaigns. It appears to be a known/older repost rather than a fresh breach, so it is context, not an alert.Leak● 88
Filtración de base de datos de la telco Telmex ColombiaA DarkForums user posted a fresh database leak tied to Colombian Telmex, the América Móvil telecom operator serving Colombia. Telecom data exposes subscriber and infrastructure details useful for fraud and follow-on intrusion. As Latin American critical infrastructure, this warrants immediate verification.Leak● 45
Filtración de la base de datos de la Universidad Horus (Egipto)A leak-forum thread advertises a dumped database of Horus University in Egypt (horus.edu.eg). University databases typically expose student and staff PII plus authentication material useful for password spraying. The exact scale and date are unclear, so it is a moderate lead rather than a fresh in-region alert.