BRIEFLeakhighP45
Database leak of logistics firm Mondial Relay
Mondial Relay
Detected13 September 2026 · 16:12 UTC
A database tied to French parcel and logistics operator Mondial Relay has been posted on a breach forum, with the thread spanning nine pages of data. This suggests a substantial dump of customer or operational records from a real, well-known company. Worth tracking for downstream fraud and credential abuse against the firm and its partners.
CategoryLeak
Severityhigh
Priority score45
Detected13 September 2026 · 16:12 UTC
Leak● 55
Filtración de base de datos con 12 millones de estudiantes siriosA database of roughly 12 million Syrian student records covering 1993 to 2024 has been posted for download on a breach forum. The scale and multi-decade coverage make it a significant education/government-linked leak, although it sits outside Latin America. Monitor for identity-reuse and credential-stuffing risk affecting the exposed population.Leak● 48
Base de datos de clientes de CEGID filtrada (74K registros)A seller is offering a 74K-record customer database allegedly from CEGID, a French business-software vendor, tagged as fresh 2026 data spanning France, Belgium, Luxembourg and Spain. These records expose corporate contacts and licence details that enable invoice fraud and targeted BEC against CEGID's business clients. Spanish and Belgian customers should be warned about impersonation risk.Leak● 60
Filtración de datos de LinkedIn de siete países, incluido BrasilA forum actor is advertising a LinkedIn dataset covering the USA, Austria, Brazil, Canada, France, India and the UK, posted today. Scraped LinkedIn data fuels credential stuffing and targeted phishing, and the Brazilian slice directly touches Latin America. Defenders should watch for reuse of corporate emails and follow-on BEC attempts.Leak● 68
Base de datos de 30 millones de tarjetas QiCard de Irak a la ventaA member posted a 30-million-record database tied to Iraq's QiCard national payment scheme, marketed 'to be redeemed', implying live, monetizable card and identity data. At that scale it enables mass card fraud, account takeover and identity theft well beyond Iraq's borders. Financial-crime teams should flag downstream use and monitor BIN-level abuse.Leak● 70
Filtración de base de datos de socios de Resamania.fr (5,2M)A threat actor is selling a 5.2M-record membership database from French fitness chain Resamania.fr, described as fresh 2026 data. Member records typically include names, emails, phones and addresses, ideal for phishing, smishing and credential stuffing. Fraud and privacy teams should prepare for customer-targeted campaigns and GDPR exposure.Leak● 76
Filtración de base de datos de clientes de Intersport.fr (8,1M)A forum actor is offering an 8.1M-record customer database allegedly from French sportswear retailer Intersport.fr, tagged fresh 2026. Such dumps expose names, emails, addresses and order data, enabling large-scale phishing and credential-stuffing against shoppers. Retail defenders should treat it as a high-priority leak and monitor for downstream fraud.