BRIEFLeakhighP50
Sri Lanka Police electronic services system leak
Sri Lanka Police
Detected30 September 2026 · 00:48 UTC
Reposts collapsed2
An attacker claims to have breached the Sri Lanka Police electronic services system, specifically security-clearance data, exposing sensitive law-enforcement records. The victim is a government body outside Latin America, so direct relevance to AR-LATAM defenders is limited, but it is a high-value government data exposure worth monitoring. Treat it as a potential source of personal data that could resurface in fraud or extortion campaigns.
CategoryLeak
Severityhigh
Priority score50
Detected30 September 2026 · 00:48 UTC
Leak● 56
Filtración de datos de la app china de masajes con 1,8M usuariosA freshly posted dump of the Chinese massage-booking app 'An Ge Mo' exposes roughly 7.5 million orders and 1.8 million user records, including names, phone numbers and booking history. Although the victim is outside Latin America, it is a large, ready-to-abuse consumer dataset that threat actors can quickly weaponise for fraud, phishing and account takeover. Worth surfacing as a high-volume leak, ranked below regional government or access-sale items.Leak● 84
Filtración de base de datos de la clínica chilena RedClinicaA fresh DarkForums post ("DATABASE RedClinica Chile 2026") offers a database belonging to RedClinica, a private healthcare provider in Chile, a sector classed as critical infrastructure. If genuine, the dump likely contains patient and staff PII, clinical records and credentials, enabling fraud, targeted phishing against health staff, and lateral movement into connected systems. Chilean health entities should treat this as an active exposure and validate/rotate credentials and monitor for downstream abuse.Leak● 34
Filtración de 2,8 millones de registros de datos kurdos del norte de IrakA dataset described as 2.8 million records of northern Iraq Kurdish data was shared on a hacking forum. It likely aggregates personal and identity records from the region, useful for fraud and targeted phishing. It is outside the LATAM scope and undated, so it is marginal for regional defenders.Leak● 48
Filtración del backup completo de la plataforma DreamUpA full platform backup of DreamUp, an American ed-tech company, was leaked and posted to a leak forum. The dump appears to contain the entire platform database, exposing user accounts, credentials and personal data at scale. It is outside the LATAM scope and roughly three months old, so it matters mainly for credential-stuffing exposure and monitoring rather than immediate alerting.Leak● 42
Filtración de base de datos de la escuela de Hong Kong mckln.edu.hkThe ANKA Team posted a 235,000-record database belonging to Hong Kong school mckln.edu.hk. The leak exposes student and staff PII such as names, emails and likely credentials, enabling phishing and account takeover. It falls outside the LATAM region and has no clear date, so it ranks low for immediate alerting despite being a genuine education-sector breach.Leak● 40
Hackeo y filtración de la red de la Universidad Broward (EE. UU.)A threat actor claims to have hacked and leaked the virtual network system of Broward University in the United States. The dump could expose internal accounts, VPN/VLAN configuration and student records, enabling further intrusion. It is not a regional target and lacks a clear date, so it is only moderately relevant for a LATAM-focused defender.