BRIEFLeakhighP55
Database leak of C&A Modas Mexico
C&A Modas (México)
Detected14 September 2026 · 09:12 UTC
A database belonging to Mexican retailer C&A Modas was posted for download on DarkForums, likely containing customer and possibly employee records. The retailer operates widely across Mexico and Latin America, so affected data is regional. Posted in late March 2026, it is not fresh but still fuels credential stuffing and targeted phishing against customers.
CategoryLeak
Severityhigh
Priority score55
Detected14 September 2026 · 09:12 UTC
Leak● 45
Filtración de base de datos de la eléctrica keniana KETRACOA database belonging to Kenya Electricity Transmission Company (KETRACO), a national grid operator, was posted for sale on a leak forum, exposing internal data. Targeting a power-transmission utility matters because such data can enable espionage or follow-on intrusion against critical energy infrastructure. Though outside Latin America, it is a genuine critical-infrastructure victim worth tracking.Leak● 40
Filtración de código fuente de Lacoste 2026A leak advertised as Lacoste.com source code plus internal documents and CRM data from 2026 surfaced on a leak forum. Exposure of proprietary code and customer CRM records can aid further attacks and expose customer PII. Though the brand is not regional, the leak is recent and concerns a major global retailer.Leak● 33
Venta de un millón de tarjetas de crédito argentinas y de otros paísesA dataset of roughly one million Argentine credit cards mixed with other countries is being traded on a forum. Although the card dump appears dated early 2025, its scale and Argentine financial focus make it relevant for fraud monitoring. Stale data reduces immediate urgency but still fuels card-not-present fraud and account takeover.Leak● 42
Filtración de datos de 263 GB de ciudadanos estadounidensesA 263 GB dataset claiming full names, addresses, income and family details of US citizens is being circulated. The scale is large enough to fuel identity fraud and targeted social engineering, though the victims are outside the Latin America region. Worth tracking for downstream abuse and data reuse across other leaks.Leak● 15
Refiltración de 272K correos de clientes de LedgerAn actor is re-posting a list of about 272,000 Ledger customer email addresses, matching the data originally exposed in the 2020 Ledger breach. It enables targeted phishing and crypto-theft attempts against Ledger users. This is stale, previously-leaked data rather than a fresh compromise, so it is low priority.Leak● 25
Combolista de credenciales dirigidas a Chile (87K) en circulaciónA combolist of roughly 87,000 Chile-targeted email:password pairs is being shared, dated 7 May 2026. These credentials feed credential-stuffing and phishing campaigns against Chilean users and organizations. It is a diffuse credential dump rather than a breach of a specific entity, and it is several months old, so impact is limited but regionally relevant.