PULSE
FEED
vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / Artifactory
Kalir Brief · Item25 September 2026 · 11:19 UTC
BRIEFLeakhighP64

Pareto.com database leak of 440,000 records

Pareto.com

Detected25 September 2026 · 11:19 UTC
Why it matters

A fresh database dump of Pareto.com containing roughly 440,000 records has been published on a breach forum on 2026-09-25. The leak exposes customer or user data that can fuel credential stuffing, phishing and identity fraud against the affected company and its clients. Defenders tied to this domain should force credential resets and monitor for reuse of the leaked data.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score64
Detected25 September 2026 · 11:19 UTC
Related items6
Leak● 48
Filtración de 3,5 GB de pasaportes y documentos de identidad de EAUA long-running thread offers a 3.5 GB dataset of UAE passports and identity documents. Government ID leaks enable identity fraud, impersonation and targeted attacks, and the volume indicates sensitive citizen data, although the thread appears long-lived and possibly stale.
13m
Leak● 58
Base de datos de MyPertamina filtrada (energética estatal de Indonesia)The MyPertamina loyalty database belonging to Indonesia's state-owned energy company Pertamina was leaked and is being distributed publicly with a long active thread. State-linked energy customer data leaks can enable phishing, fraud and reconnaissance against a critical-infrastructure operator. Notable as a large government-linked leak, though not in the LATAM region.
1h
Leak● 40
Combolist de credenciales argentinas (117.000 cuentas)A freshly posted combolist claims around 117,000 Argentine email/password pairs, most likely aggregating infostealer and past credential-stuffing data. It is not tied to a government or critical-infrastructure breach, so the impact is diffuse, but it directly feeds account-takeover attempts against Argentine users and organizations. Treat it as working material for credential-stuffing rather than a targeted government compromise.
1h
Leak● 50
Filtración de la base de datos del Banco Syariah IndonesiaA database attributed to Bank Syariah Indonesia (BSI), the country's largest Islamic bank, is posted for sale/download. Banking records include customer identity, account and contact data that fuel fraud and account takeover. The post is a few months old, so it is a standing exposure rather than a fresh alert.
1h
Leak● 66
Base de datos de ALROSA Diamonds filtrada (742.000 registros)A 742,000-record dataset attributed to Russian diamond producer ALROSA, including high-jewelry customer data, has been posted and is being offered or distributed. Large PII leaks from named corporations fuel downstream fraud, phishing and further targeting of customers and partners. It is a significant commercial leak, though outside the LATAM region.
1h
Leak● 35
Filtración de lista de correos de usuarios de CoinbaseA mailing list tied to Coinbase is being circulated in an underground forum. Even a list of email addresses alone is valuable for phishing, credential stuffing and crypto-targeted fraud against exchange users. Coinbase and its customers should watch for follow-on phishing campaigns, though the post is a few months old.
2h