BRIEFLeaklowP42
Bundle of 21 leaked Iranian databases offered for sale
Detected10 September 2026 · 12:12 UTC
A seller is offering a bundle of 21 leaked Iranian databases, potentially spanning government, telecom or corporate records. Although outside the AR/LATAM region, such aggregated dumps fuel credential reuse and can expose regional partners and supply chains. Verify scope and watch for overlap with your own user base.
CategoryLeak
Severitylow
Priority score42
Detected10 September 2026 · 12:12 UTC
Leak● 68
A la venta bases de datos de DATASUS (149M) y DENATRAN (104M) de BrasilThe listing markets two enormous Brazilian government datasets: DATASUS with roughly 149 million health records and DENATRAN with about 104 million driver/vehicle records. These hold sensitive personal, medical and identity data of Brazilian citizens, giving attackers strong material for identity theft, fraud and targeted social engineering. Defenders in the region should treat it as a high-value PII exposure and verify whether the data is current or a re-posted historical dump.Leak● 40
Filtración de datos de la taiwanesa Infar IndustrialA leak is advertised against Infar Industrial Co., Ltd, a named Taiwanese industrial firm, potentially exposing internal or customer data. The post dates to mid-July 2026 and the scope is unverified, so it is not a fresh, high-confidence alert. Useful only for third-party/industrial risk tracking of a non-regional target.Leak● 42
Venta de datos de préstamos de Taiwán 2026A seller advertises 2026 Taiwan loan data, financial records likely tied to borrowers including identity and credit information. The listing dates to late July 2026, so it is partially stale rather than a fresh alert. Matters for monitoring bulk financial-data sales that enable identity theft and loan fraud.Leak● 52
Base de datos de 6,5 millones de inversores taiwaneses a la ventaA seller is offering a large database of roughly 6.5 million lines containing Taiwan stock and investment investor records, likely including names, contacts and financial details. The volume makes it a serious financial-sector PII leak even outside our region. Relevant mainly for tracking bulk PII monetisation and downstream fraud/phishing risk.Leak● 35
Filtración de 1M de credenciales URL:LOG:PASS de stealer logsA stealer-log dump labeled '1M URL:LOG:PASS' is being reposted across several underground forums, containing roughly one million URL/login/password tuples harvested by infostealers. It has no single target but enables wide credential-stuffing and session-takeover campaigns. Monitor for reuse of your users' credentials inside these logs.Leak● 74
Base de datos de CookUnity (EE. UU.) con 17,6M registros a la ventaA threat actor is selling a fresh 17.6M+ record database allegedly pulled from CookUnity.com, a US meal-delivery service. The dump likely contains customer PII (names, emails, phones, addresses, credentials) usable for credential stuffing, phishing and account takeover. Defenders should treat it as a real large-scale breach and hunt for reuse of the exposed credentials.