BRIEFAccess salehighP48
Leaked virtual machine from crypto exchange Gate.io
Gate.io
Detected15 September 2026 · 23:12 UTC
A leaked virtual machine image allegedly belonging to the crypto exchange Gate.io was posted on a Russian-language forum, potentially containing configuration, credentials or keys from the platform's infrastructure. Such artifacts can enable initial access or lateral movement against a major financial platform. Exchanges are high-value targets due to the potential for direct fund theft.
CategoryAccess sale
Severityhigh
Priority score48
Detected15 September 2026 · 23:12 UTC
Access sale● 68
Venta de acceso admin a una plataforma internacional de apuestasA seller is offering admin access to a major international sportsbook platform, posted within the last day. Administrative access could allow manipulation of bets, payouts and user accounts, plus access to customer PII and financial data. Fresh access sales of this type are highly time-sensitive.Access sale● 76
Venta de acceso corporativo a una empresa de BrasilA seller on DarkForums is advertising corporate access to a Brazilian organization, posted within the last day. The victim is unnamed, so Brazilian private-sector defenders should treat it as a credible intrusion offer and review exposed remote access and stolen credentials. Regional corporate access sales frequently precede ransomware deployment.Access sale● 45
Venta de acceso a scstrade.com, gran empresa pakistaníA seller is offering access to scstrade.com, described as Pakistan's largest trading company. A verified initial-access sale to a named commercial target enables downstream intrusion, data theft or fraud against its systems and partners. It lies outside LATAM but is a concrete access-sale offer worth tracking.Access sale● 72
Venta de bases de datos, código fuente y claves SSH de BLS InternationalA seller is offering databases, source code and SSH private keys belonging to BLS International, a visa and passport outsourcing firm handling sensitive identity documents for governments. Compromised source code and SSH keys could enable further intrusion into visa-processing systems and expose applicant PII. High-value target for identity theft and government service abuse.Access sale● 80
Venta de credenciales de controlador de red de un Ministerio de Defensa de la ASEANA BreachForums seller is offering credentials to a network controller belonging to a Ministry of Defense of an ASEAN nation. Such access could enable lateral movement into government networks, defense systems and sensitive communications, making it a high-impact state-level target. Even though it is outside Latin America, military/government access sales are a priority indicator for geopolitical CTI monitoring.Access sale● 72
Venta de acceso de lectura a PLC Rockwell MicroLogix 1400 en vivoA seller offers validated read access to a live Rockwell MicroLogix 1400 controller with real I/O. Read access to a running PLC supports reconnaissance and pre-attack positioning for later disruptive manipulation. It matters for defenders tracking ICS supply-chain and OT exposure.