BRIEFLeaklowP32
Hautelook database leak exposes 6.5 million users
Hautelook
Detected23 September 2026 · 07:29 UTC
A database for the US fashion retailer Hautelook containing roughly 6.5 million user records was posted for download on a cybercrime forum. It likely includes customer emails and hashed or plaintext credentials, enabling credential-stuffing and targeted phishing. It is a large real-organization leak, but the March 2026 posting date and non-LATAM scope keep it a low-priority alert for this feed.
CategoryLeak
Severitylow
Priority score32
Detected23 September 2026 · 07:29 UTC
Leak● 20
Volcado de 15 millones de registros de Trello (julio 2024)A 15-million-record Trello database dump is being reshared, but the thread dates to July 2024 and the data is widely known and stale. It offers little new intelligence for defenders today beyond confirming continued recirculation. Included only as background context, not a fresh alert.Leak● 53
Venta de base de datos de 280.000 inversores de ADVFNA duplicate listing advertises the same 280,000-record ADVFN user database, indicating the data is being actively marketed. Financial platform users are prime targets for phishing and account takeover. The scale and financial context make it worth flagging despite the non-LATAM scope.Leak● 55
Base de datos de 280.000 usuarios de ADVFN a la ventaA seller is offering a database of 280,000 users of ADVFN, a financial markets and investment information platform. Financial-sector user data of this size fuels credential stuffing, account takeover and targeted investment fraud. While not in Latin America, it is a concrete large leak relevant to financial-sector defenders.Leak● 40
Filtración de 5.200 millones de mensajes de Discord de 110 millones de usuariosA large corpus of 5.2B+ Discord messages tied to over 110M users is being shared, offering mass scraped content that can fuel targeted phishing, doxxing and credential attacks. The dataset is global rather than regional, and the post carries no date, so it may be a repost of older scraped data. It matters as a credential-personal-data trove but is not tied to a specific AR-LATAM victim or critical infrastructure.Leak● 35
Tres bases de datos de México filtradas por EXILIADOS#555A user is giving away three databases attributed to 'EXILIADOS#555' from Mexico in a public forum post dated June 2026. The affected entities are unclear, but Mexican data leaks can affect local businesses and citizens, so checking the contents for overlap with known targets is worthwhile. Because the post is roughly three months old, it is lower priority.Leak● 32
Filtración de base de datos de la Universidad Jawaharlal Nehru de TecnologíaA thread claims to leak a database from an Indian technical university, typically comprising student and staff records. Academic breaches expose personal data and credentials that feed phishing and account-takeover campaigns. Impact is limited and source quality is unverified, so it ranks low for a LATAM-focused operator.