BRIEFLeaklowP35
Coinbase user mailing list leaked
Coinbase
Detected25 September 2026 · 14:49 UTC
A mailing list tied to Coinbase is being circulated in an underground forum. Even a list of email addresses alone is valuable for phishing, credential stuffing and crypto-targeted fraud against exchange users. Coinbase and its customers should watch for follow-on phishing campaigns, though the post is a few months old.
CategoryLeak
Severitylow
Priority score35
Detected25 September 2026 · 14:49 UTC
Leak● 48
Filtración de 3,5 GB de pasaportes y documentos de identidad de EAUA long-running thread offers a 3.5 GB dataset of UAE passports and identity documents. Government ID leaks enable identity fraud, impersonation and targeted attacks, and the volume indicates sensitive citizen data, although the thread appears long-lived and possibly stale.Leak● 58
Base de datos de MyPertamina filtrada (energética estatal de Indonesia)The MyPertamina loyalty database belonging to Indonesia's state-owned energy company Pertamina was leaked and is being distributed publicly with a long active thread. State-linked energy customer data leaks can enable phishing, fraud and reconnaissance against a critical-infrastructure operator. Notable as a large government-linked leak, though not in the LATAM region.Leak● 40
Combolist de credenciales argentinas (117.000 cuentas)A freshly posted combolist claims around 117,000 Argentine email/password pairs, most likely aggregating infostealer and past credential-stuffing data. It is not tied to a government or critical-infrastructure breach, so the impact is diffuse, but it directly feeds account-takeover attempts against Argentine users and organizations. Treat it as working material for credential-stuffing rather than a targeted government compromise.Leak● 50
Filtración de la base de datos del Banco Syariah IndonesiaA database attributed to Bank Syariah Indonesia (BSI), the country's largest Islamic bank, is posted for sale/download. Banking records include customer identity, account and contact data that fuel fraud and account takeover. The post is a few months old, so it is a standing exposure rather than a fresh alert.Leak● 66
Base de datos de ALROSA Diamonds filtrada (742.000 registros)A 742,000-record dataset attributed to Russian diamond producer ALROSA, including high-jewelry customer data, has been posted and is being offered or distributed. Large PII leaks from named corporations fuel downstream fraud, phishing and further targeting of customers and partners. It is a significant commercial leak, though outside the LATAM region.Leak● 72
Filtración de base de datos de clientes de AutosurA full customer database belonging to vehicle-inspection firm Autosur is being offered for download on BreachForums, exposing personal and vehicle-owner records. Autosur operates technical inspection plants in Chile and Spain, so the leak hits regulated transport infrastructure and large volumes of citizen PII in the region. Defenders should watch for identity theft and targeted phishing built from the exposed data.