PULSE
FEED
ransomulose reclama a www.newyjh.com · KR · Not Foundransomstorm reclama a West County Health Centers · US · Healthcareransomstorm reclama a Gardeners' Guild · US · Agriculture and Food Productionransomthegentlemen reclama a LegalWise · ZA · Professional Servicesransomthegentlemen reclama a Samwumed · KR · Healthcareransomthegentlemen reclama a Edcon · ZA · Manufacturingransomthegentlemen reclama a Defencebit · GB · Government & Defenseransomthegentlemen reclama a Datacomm Services · US · Technologyransomthegentlemen reclama a Webb Electric Company of Florida · US · Energy & Utilitiesransomthegentlemen reclama a Solaria · ID · Energy & Utilitiesransomthegentlemen reclama a Auren · ES · Professional Servicesransomthegentlemen reclama a QUALITY SPORT Topsport Italia · IT · Retail & E-Commerceransomthegentlemen reclama a Europrim · FR · Healthcareransomthegentlemen reclama a Telrad Networks · IL · Technologyransomulose reclama a www.newyjh.com · KR · Not Foundransomstorm reclama a West County Health Centers · US · Healthcareransomstorm reclama a Gardeners' Guild · US · Agriculture and Food Productionransomthegentlemen reclama a LegalWise · ZA · Professional Servicesransomthegentlemen reclama a Samwumed · KR · Healthcareransomthegentlemen reclama a Edcon · ZA · Manufacturingransomthegentlemen reclama a Defencebit · GB · Government & Defenseransomthegentlemen reclama a Datacomm Services · US · Technologyransomthegentlemen reclama a Webb Electric Company of Florida · US · Energy & Utilitiesransomthegentlemen reclama a Solaria · ID · Energy & Utilitiesransomthegentlemen reclama a Auren · ES · Professional Servicesransomthegentlemen reclama a QUALITY SPORT Topsport Italia · IT · Retail & E-Commerceransomthegentlemen reclama a Europrim · FR · Healthcareransomthegentlemen reclama a Telrad Networks · IL · Technology
Kalir Brief · Item30 September 2026 · 12:18 UTC
BRIEFLeakhighP43

Leak of 1 million URL:LOG:PASS stealer records

Detected30 September 2026 · 12:18 UTC
Why it matters

A one-million-row 'URL:LOG:PASS' stealer-log dump has just been released, giving attackers ready-to-use credentials mapped to specific login pages. No single victim organization is named, but the volume makes it valuable for credential stuffing and account takeover across many services. Defenders should ingest it into exposure monitoring for their corporate email domains and high-value portals.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score43
Detected30 September 2026 · 12:18 UTC
Related items6
Leak● 33
Filtración de base de datos de Orange Moldova (orange.md)A dump tied to Orange Moldova (orange.md), a national mobile and internet operator, was posted on BreachForums dated July 28, 2025. Telecom subscriber data is high value for SIM-swap, phishing and account fraud against customers. However, the post is over a year old and likely already circulated widely, so it is background context rather than a fresh alert.
2h
Leak● 58
Filtración de base de datos de ExtremeTech Costa RicaA database of roughly 23,500 records attributed to ExtremeTech in Costa Rica was posted for free on a DarkForums leak thread, containing full names, national ID numbers, phone numbers, emails and physical addresses. Exposed Costa Rican cédula numbers plus contact data enable identity theft, SIM-swap and highly targeted phishing against residents. LATAM defenders should treat this as a fresh regional PII leak and watch for credential reuse and downstream fraud.
2h
Leak● 45
Base de datos de 5,4 millones de empresas del Reino Unido a la ventaA seller on BreachForums is offering a United Kingdom business database of about 5.4 million records. The data appears to be compiled business contact and firmographic information usable for B2B phishing, invoice-redirection fraud and social engineering against UK companies. It matters as a bulk targeting list, though the impact is lower than a single-organization breach.
3h
Leak● 47
Base de datos de 8,5 millones de empresas de Canadá a la ventaA seller is offering a Canadian business database of roughly 8.6 million leads, posted recently. It likely aggregates business contact and firmographic records that enable B2B phishing, invoice fraud and targeted social engineering. Impact is moderate because it appears to be compiled business/marketing data rather than a breach of a single organization.
3h
Leak● 58
Filtración de la base de datos de clientes de Swan Bitcoin (republicada)A database attributed to Swan Bitcoin, a US Bitcoin financial-services company, has been reposted on a dark-web forum, likely exposing customer account data. If genuine, exchange data enables targeted phishing, account takeover and financial fraud against a regulated financial firm. It is explicitly a repost, so treat it as potentially stale until the original dump date is confirmed.
3h
Leak● 40
Paquete de datos de correos cripto (2019-2025) con 180 millones de registrosA large aggregated data pack bundling roughly 180 million email records tied to crypto users from 2019-2025 is being sold. It is likely a repackaged combolist rather than a single fresh intrusion, so freshness and uniqueness are uncertain. It still matters for credential-stuffing and phishing risk against crypto account holders.
4h