BRIEFLeaklowP33
France Travail database leak with 44M records
France Travail
Detected25 September 2026 · 20:39 UTC
A 44-million-record dump from France Travail, the French public employment agency, is circulating, including national ID numbers (NIR) and personal data. The post dates to 2024, so it is a stale repost rather than a fresh breach. It still serves as identity-theft and phishing exposure context, but is not an active alert.
CategoryLeak
Severitylow
Priority score33
Detected25 September 2026 · 20:39 UTC
Leak● 52
Filtración de 6,5 millones de registros de robo (URL:login:pass)A 6.5 million stealer-log set in URL:login:password format was posted for free roughly an hour before capture. These logs originate from infostealer malware and contain live corporate and consumer credentials usable for account takeover and session hijacking. Defenders should feed it into credential-monitoring to detect exposed employee or customer logins.Leak● 66
Venta de base de datos del seguro de salud de Corea del Sur (39M)A seller is offering a 39-million-line database from South Korea's national health insurance, containing subscriber records and sensitive personal data. Health data is highly sensitive and enables targeted fraud, phishing and identity theft. It is outside Latin America, but it is a large, real dataset worth tracking for PII exposure.Leak● 82
Presunta filtración de 10 millones de casos del FBIA forum user claims to have leaked roughly 10 million FBI case files, posted only minutes ago. If genuine, this exposes sensitive law-enforcement investigation data and would be a major government leak. Defenders should flag it for verification and monitor for mirrored files or extortion follow-up.Leak● 48
Base de datos MySQL expuesta en GCP con datos personalesA freshly found MySQL database on Google Cloud Platform was left without authentication, exposing PII from a Korean exam dataset and a Saudi loan dataset, with signs of ransomware involvement. Open cloud databases let attackers bulk-scrape personal and financial records. Affected teams should force credential rotation and confirm the exposure is closed.Leak● 60
Filtración de datos del Centro Nacional de Bomberos de EE.UU.A threat actor published a downloadable dump of data allegedly taken from the US National Interagency Fire Center (NIFC), a federal wildfire-response agency. Though outside Latin America, a government breach can fuel phishing, credential reuse and follow-on intrusion. Defenders should verify scope and watch for reuse of the data.Leak● 48
Venta de 82,9 millones de credenciales francesasA seller offers an 82.9 million record email:password dump, allegedly extracted from a large credential-stealer collection, for 500 USDT. Even if recycled from older stealer logs, the sheer volume enables credential-stuffing and targeted phishing against French users and organizations. Defenders should monitor for reuse of these credentials and enforce MFA.