BRIEFLeaklowP40
Leak of the Artsy online-art database
Artsy
Detected9 October 2026 · 12:21 UTC
A database described as the Artsy online art marketplace has been posted in a forum leaks section. The scale and date are unclear, but a real company database leak can expose customer and account data used for credential stuffing. Worth verifying and adding to monitoring if confirmed.
CategoryLeak
Severitylow
Priority score40
Detected9 October 2026 · 12:21 UTC
Leak● 66
Base de datos de IKEA a la venta en foro clandestinoA forum user posted a claimed IKEA database for sale, indicating a possible breach or resale of the retailer's data. If authentic, it could expose customer or internal records usable for phishing, credential stuffing and account takeover. Given IKEA's global footprint it should be validated and monitored even though the source and scale are unconfirmed.Leak● 88
Base de datos con identidad completa de 596.652 ciudadanos mexicanos a la ventaA threat actor is offering a full identity database of 596,652 Mexican citizens, including CURP, INE voter ID, home address and personal data. Government-issued identity records at this scale enable mass identity theft, fraud, loan/credit abuse and impersonation of voters. Defenders in Mexico and LATAM should treat this as a high-priority exposure and validate its authenticity.Leak● 52
Filtración de 21.145 cuentas de BinanceA database of roughly 21,145 Binance accounts is being circulated on a breach forum under a 2026 label. While the volume is modest, crypto-exchange credentials fuel account takeover, wallet draining and follow-on phishing. Exposed users should be flagged for credential rotation and monitoring.Leak● 56
Filtración de SCADA/BMS del hospital Thye Hua Kwan de Ang Mo KioA collection labeled as the Building Management System (BMS) and SCADA system of Ang Mo Kio–Thye Hua Kwan Hospital in Singapore has been posted on a breach forum. If authentic, it exposes operational-technology data controlling building systems in a healthcare facility, a critical-infrastructure setting. Defenders should treat it as a possible OT-access vector and verify whether the data is genuine and current.Leak● 28
Filtración de datos de empleados de McDonald's IndiaA database of McDonald's India workers was leaked and made available for download, exposing staff personal data. Such records enable identity fraud and targeted phishing against employees. The post dates to 2025, so it is not a fresh alert, but the data may still be reused against affected individuals.Leak● 40
Filtración de datos de Systech USA publicada en DarkForumsA dataset from Systech USA was published on DarkForums for free download, exposing internal company data. Although the exact scale is unclear, leaked corporate data fuels fraud and follow-on intrusions. It is worth tracking for credential reuse and possible supply-chain exposure.