
BRIEFLeakhighP52
Massive leak of 110M URL:login:password credentials
Detected8 October 2026 · 18:21 UTC
A freshly dated dump claims 110 million URL:login:password stealer-log records, marked private and UHQ. Credential re-use makes this useful for account takeover, credential stuffing and initial access across many organizations. Despite being generic, its scale and recency warrant surfacing for defensive monitoring.
CategoryLeak
Severityhigh
Priority score52
Detected8 October 2026 · 18:21 UTC
Leak● 76
Filtración de 7,5 millones de registros de clientes de Momentum TelecomA 7.5M-record customer PII database attributed to Momentum Telecom was freshly posted for download. The data reportedly includes names, home addresses and city details, enabling large-scale phishing, SIM-swap and account-takeover campaigns against subscribers. Telecoms are critical infrastructure, so defenders should correlate the claims with internal breach indicators and notify affected customers.Leak● 93
Filtración de datos del Gobierno de Mendoza con más de 1M de registros PIIA threat actor posted a database allegedly containing over 1 million PII records belonging to the Government of Mendoza, Argentina, freshly advertised on a leak forum. If authentic, it exposes citizen and employee personal data of a provincial government body, enabling phishing, identity fraud and targeted intrusion against public administration. Argentine government entities should urgently validate the exposure and watch for credential abuse and follow-on attacks.Leak● 74
Filtración de datos de 7,5M de clientes de Momentum TelecomA freshly posted leak claims 7.5 million customer PII records from Momentum Telecom, including names and home addresses. Although the company is US-based, a dataset of this size is a high-value asset for fraud, SIM-swap and phishing campaigns. Defenders in telecom and downstream sectors should monitor for credential and identity abuse.Leak● 40
Base de datos de clientes de AT&T (correo y ubicación) publicadaA collection labelled as an AT&T customer base with email addresses and location data was posted on a leak forum. If authentic and current it would represent a large exposure of a US telecom subscriber base, but it may be a repost of earlier AT&T breach data, so its age should be verified before alerting. Telecoms are critical infrastructure, so any fresh customer-data leak warrants monitoring.
Leak● 45
Filtración masiva de 110 millones de credenciales de stealer logsA 110-million-record URL:login:password dump sourced from stealer logs was posted, likely aggregated infostealer output rather than a single breach. While it names no victim, its sheer volume hands attackers a large pool of valid credentials for credential-stuffing against corporate and government accounts worldwide. Defenders should enforce MFA and monitor for reuse of credentials originating from this dump.Leak● 22
Base de datos de 23,5 millones de ciudadanos de Taiwán (2022) recirculadaA 23.5M-row Taiwan citizens database originally leaked in October 2022 is being recirculated. It is old, so not a fresh incident, but the scale and government-linked PII keep it valuable for identity fraud and social engineering. Treat it as historical context, not an active alert.