BRIEFGov / MilitaryhighP50
Alleged hack of Nepal's Ministry of Finance
Nepal Ministry of Finance (MOF)
Detected11 September 2026 · 18:12 UTC
A threat actor claims to have hacked Nepal's Ministry of Finance (MOF), a national government body handling budget, tax and citizen data. A breach of public finance systems carries state-level risk and possible fraud exposure. Though outside AR-LATAM, it signals active targeting of government financial infrastructure.
CategoryGov / Military
Severityhigh
Priority score50
Detected11 September 2026 · 18:12 UTC
Gov / Military● 47
Filtración de archivo .env del Ministerio de Comercio de CamboyaAn environment (.env) file from Cambodia's Ministry of Commerce was posted, exposing configuration and likely credentials or API secrets. Such leaks can enable deeper intrusion into government infrastructure and lateral movement. It is outside AR-LATAM, but illustrates credential exposure in the public sector.Gov / Military● 44
Supuesta filtración de datos del IRS de Estados UnidosA forum user posted a claimed leak of irs.gov data with a downloadable file, advertising it as a US government breach. US tax-agency data is high-value for identity theft and tax fraud if the leak is genuine. The post dates from September 2025, well over a year old, so it is stale and likely a lure — verify the sample before acting.Gov / Military● 28
Filtración de datos de ministerios del gobierno de CubaAn older leak (June 2023) covers Cuban government domains including minem.cu (energy and mines ministry), mincex.gob.cu and cult.cu. Despite being stale, it exposes official credentials and data tied to Cuban state infrastructure, including the energy sector, and may still fuel credential-stuffing and phishing.Gov / Military● 93
Filtración del portal de Aviación Civil de Ecuador (aviacioncivil.gob.ec)A BreachForums user (TerroahOver) posted the Ecuadorian civil aviation authority portal aviacioncivil.gob.ec to the Databases section on 10 Sep 2026, claiming the government site was breached. Aviation regulatory bodies hold internal credentials, operational and personnel data, making this high-value LATAM government infrastructure. Defenders should treat exposed credentials as compromised and hunt for reuse across related .gob.ec systems.Gov / Military● 88
Filtración de base de datos del Portal de Transparencia de PerúA threat actor published a database belonging to the Government of Peru's Transparency Portal (Portal de Transparencia), a public-sector platform hosting official documents and citizen requests. A leak tied to a .gob entity enables phishing, impersonation of officials and further intrusion into government networks. Peruvian public administration defenders should verify the scope and rotate any exposed credentials immediately.Gov / Military● 62
Venta de datos de la Comision Electoral de IrakA verified seller is offering data allegedly stolen from Iraq's High Electoral Commission on DarkForums. Electoral and voter records are politically sensitive and enable identity fraud and targeting of individuals. Posted on 2026-08-21, it remains a meaningful, relatively recent government data sale.