PULSE
FEED
vulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScaler
Kalir Brief · Item19 September 2026 · 06:12 UTC
BRIEFLeaklowP42

Massive leak of 20 million stolen credential lines

Detected19 September 2026 · 06:12 UTC
Why it matters

A forum post advertises roughly 20 million stolen URL:login:password lines originating from stealer logs. The dump is generic and not tied to a named victim, but its volume makes it valuable for credential-stuffing and password-reuse attacks across many organizations. Defenders should ingest it for exposure monitoring rather than treat it as a targeted intrusion.

MetadataRECORD
CategoryLeak
Severitylow
Priority score42
Detected19 September 2026 · 06:12 UTC
Related items6
Leak62
Filtración de datos de Radware publicada por OpCyberToufanA user posting as OpCyberToufan released what is described as 'parts one and two' of data allegedly leaked from Radware, a major cybersecurity and application-delivery vendor. If authentic, internal data from a security provider could expose customer records, product internals or credentials reusable in follow-on intrusions. Defenders should treat this as a supply-chain-adjacent exposure and hunt for leaked Radware customer credentials.
56m
Leak88
Filtración de base de datos del Hospital msalud de ArgentinaA threat actor posted a database belonging to the Argentine hospital msalud on DarkForums, indicating exfiltration of patient and operational data. Healthcare is critical infrastructure and holds highly sensitive personal and medical records, so exposure enables fraud, extortion and follow-on intrusion. The post appears only minutes old, so Argentine health-sector defenders should treat this as a live incident.
2h
Leak30
Venta de base de datos de depositantes del bróker de forex InfinityFXA seller is offering lead data on roughly 14,000 depositors of Austrian forex broker InfinityFX plus about 37,000 German leads. It is a small-to-mid marketing database rather than a breach of critical infrastructure, so direct impact is limited. Financial-fraud and anti-phishing teams should note it because such lists fuel targeted phishing and account-takeover against the affected customers.
3h
Leak45
Código fuente de una empresa de servicios financieros a la ventaA freshly posted DarkForums thread advertises source code from a financial services company. If authentic, source code exposure lets attackers find logic flaws, hardcoded secrets and API keys that directly enable fraud or intrusion. The victim is unnamed here, which lowers confidence and urgency until attribution is confirmed.
4h
Leak48
Filtración de base de datos de la Universidad Howard con 5.669 números de Seguro SocialA dump posted on BreachForums claims Howard University data with 6,391 rows, 2,367 emails and 5,669 Social Security numbers. The presence of SSNs makes this high-impact for identity theft affecting students, staff and alumni. It is a named real organization, though the record count is moderate rather than massive.
4h
Leak50
Filtración de base de datos de la radio brasileña Rádio Onda SulA database belonging to radioondasul.com.br, a Brazilian radio station, is being offered on BreachForums. While the organization is small, it is a real LATAM entity with an exposed user/contact database that can fuel phishing and identity fraud. Defenders in the region should note it as a low-tier but genuine LATAM leak.
4h