PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / Windows
Kalir Brief · Item13 September 2026 · 03:12 UTC
BRIEFAccess salehighP42

Network access or data offered on DarkNetArmy

Detected13 September 2026 · 03:12 UTC
Why it matters

A member is offering 'network access or data' on DarkNetArmy, a classic initial-access listing posted in early September. Without a named victim the impact is unclear, but such offers often precede ransomware intrusions. Worth querying the seller for sector and geography.

MetadataRECORD
CategoryAccess sale
Severityhigh
Priority score42
Detected13 September 2026 · 03:12 UTC
Related items6
Access sale40
Credenciales SSL VPN de Fortinet filtradas por fuerza brutaA collection of fresh Fortinet SSL VPN access credentials reportedly obtained via brute-force is being circulated on BreachForums. No specific victim is named and the seller frames it as 'training', but SSL VPN access to Fortinet appliances is a common entry point into government and critical-infrastructure networks. Defenders should assume these credentials may be reused for initial access.
7h
Access sale22
Venta de lote de 130 accesos root y admin de cPanel/WHMCSA seller lists 130 cPanel/WHMCS accounts with root, admin or user-level access, which would let buyers seize control of hosted websites and mail. This access type is a classic stepping stone to mass website compromise, credential theft and spam infrastructure. The post appears to date to 2022 and is stale, but affected hosts may still be vulnerable if credentials were never rotated.
12h
Access sale48
Venta de acceso web shell a servidores comprometidos (lote 10x)A seller is offering a batch of 10 freshly compromised web shells, granting remote code execution on the underlying servers without needing an exploit chain. No specific victim is named, but web shells are a common foothold used to pivot into hosting providers and their downstream customers. Defenders should hunt for unauthorized webshell artifacts and suspicious outbound callbacks.
12h
Access sale78
Acceso admin y defacement de la Universidad César Vallejo (Perú)Threat actor Keishell posted admin-level access to ucv.edu.pe, the Universidad César Vallejo in Peru, along with a website defacement, claiming over 200,000 students affected. This exposes student PII, staff credentials and internal systems to further intrusion or fraud. A large Latin American university is a valuable target for both data theft and reputational disruption.
1d
Access sale74
Venta de acceso de administrador a la infraestructura FTTH/GPON del ISP AlfatihnetA seller is offering administrative access to the FTTH/GPON infrastructure of ISP Alfatihnet, i.e. management control of a telecom operator's access network. Compromise of an ISP access layer enables traffic interception, subscriber data theft and mass service disruption across all customers. Telecom operators should verify and rotate credentials on exposed management interfaces immediately.
1d
Access sale66
Venta de acceso admin a plataforma internacional de apuestasA seller on BreachForums is offering administrative access to a major international sportsbook platform. Admin-level access to a betting platform enables mass account manipulation, fraud, and theft of customer funds and data. Such access is time-sensitive and typically monetized quickly, so defenders in gaming and finance should treat it as actionable.
2d