PULSE
FEED
ransomdeadlock reclama a Saber1 · US · Not Foundransomdeadlock reclama a idi pharma · ES · Healthcareransomsafepay reclama a hoteldelfinolugano.ch · CH · Hospitalityransomsafepay reclama a dwi-bau.de · DE · Otherransompanzer reclama a Supreme Energy · SG · Energy & Utilitiesransompanzer reclama a solutend · Technologyransomqilin reclama a Vadeto Group · SE · Not Foundransomrhysida reclama a Anne Arundel County · US · Government & Defenseransomthreeam reclama a fleetworksinc.com · US · Transportationransomthegentlemen reclama a TGN · AR · Not Foundransomthegentlemen reclama a Galil Engineering · IL · Manufacturingransomthegentlemen reclama a Smart Value · BZ · Retail & E-Commerceransomthegentlemen reclama a Kooltronic · US · Manufacturingransomthegentlemen reclama a Skyplan Services · Professional Servicesransomdeadlock reclama a Saber1 · US · Not Foundransomdeadlock reclama a idi pharma · ES · Healthcareransomsafepay reclama a hoteldelfinolugano.ch · CH · Hospitalityransomsafepay reclama a dwi-bau.de · DE · Otherransompanzer reclama a Supreme Energy · SG · Energy & Utilitiesransompanzer reclama a solutend · Technologyransomqilin reclama a Vadeto Group · SE · Not Foundransomrhysida reclama a Anne Arundel County · US · Government & Defenseransomthreeam reclama a fleetworksinc.com · US · Transportationransomthegentlemen reclama a TGN · AR · Not Foundransomthegentlemen reclama a Galil Engineering · IL · Manufacturingransomthegentlemen reclama a Smart Value · BZ · Retail & E-Commerceransomthegentlemen reclama a Kooltronic · US · Manufacturingransomthegentlemen reclama a Skyplan Services · Professional Services
Kalir Brief · Item10 October 2026 · 09:21 UTC
BRIEFGov / MilitaryhighP58

Alleged Israel INSS national security breach (15 TB)

Israel Institute for National Security Studies (INSS)

Detected10 October 2026 · 09:21 UTC
Why it matters

A cyber-actor claims to have exfiltrated roughly 15 TB of classified documents linked to Israel's national security establishment, posted this month. If authentic, the scale and government/military sensitivity make it strategically significant, though bold claims of this size are frequently inflated or recycled. Outside the AR-LATAM region, its main value is as an indicator of actor capability and potential document reuse in future campaigns.

MetadataRECORD
CategoryGov / Military
Severityhigh
Priority score58
Detected10 October 2026 · 09:21 UTC
Related items6
Gov / Military● 80
Filtración de base de datos del gobierno mexicano SedesolA freebie dump advertising a database tied to Sedesol, Mexico's former Social Development ministry, was posted minutes ago in a premium forum section. Government social-program data typically contains beneficiary names, addresses and CURP/national IDs, enabling identity fraud and targeting of vulnerable citizens. Any Mexican government body handling citizen data should verify exposure and monitor for abuse of the leaked records.
20m
Gov / Military● 76
Brecha en el INSS de Israel expone 15 TB de documentos clasificadosA threat actor claims a 15 TB leak of classified documents from Israel's INSS national-security think tank, covering policy, strategic and military material. If authentic, the volume and sensitivity could fuel espionage, influence operations and targeting of officials. Analysts should track re-use of this corpus by state-linked actors.
2h
Gov / Military● 28
Código fuente y 5,7M accesos del Kemendikbud de IndonesiaThe thread offers source code and about 5.7 million access records tied to Indonesia's Ministry of Education (Kemendikbud). It is a genuine government target, but the post dates to December 2024, so it is not a fresh alert and only offers background context on a state-education breach.
3h
Gov / Military● 62
Brecha del ERP completo de los Puertos de LibiaA full ERP breach of the Libya Ports Company is being sold, tied to the government domains lpma.gov.ly and lpclibya.com. A complete ERP compromise of a national port authority can expose operational, financial, employee and logistics data and enable further intrusion. Critical-infrastructure and maritime defenders should treat it as high risk.
4h
Gov / Military● 55
Filtración de datos del Ministerio de Exteriores de NepalSensitive data attributed to Nepal's Ministry of Foreign Affairs is being offered on a darkweb forum, reportedly within the last day. Diplomatic government records can expose officials, internal communications and visa or passport-holder data. Regional government and CERT teams should assess authenticity and scope urgently.
4h
Gov / Military● 40
Ciberataque reivindicado contra la autoridad portuaria y marítima de Irán (PGSA)An actor on DarkForums (posted fresh, '1 minute ago') claims to have hacked Iran's Ports and Maritime Organization, a national government body overseeing ports and shipping. If genuine, it could expose maritime/operational systems and government data, but the claim is unverified and falls outside the AR-LATAM scope. Worth tracking only for corroboration, not as a regional alert.
8h