PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-central
Kalir Brief · Item15 September 2026 · 12:12 UTC
BRIEFRansomwarehighP46

Qilin ransomware publishes victim Incrys

Incrys

Detected15 September 2026 · 12:12 UTC
Why it matters

The Qilin ransomware group has published 'Incrys' as a new victim on its leak site. Publication signals an active intrusion with stolen data, threatening operational disruption and extortion. Region and sector are unclear, so the entity should be verified to assess exposure.

MetadataRECORD
CategoryRansomware
Severityhigh
Priority score46
Detected15 September 2026 · 12:12 UTC
Related items6
Ransomware42
Ransomware Qilin publica a Bravo Group (Singapur)Qilin ransomware has listed 'Bravo Group' (Singapore) as a victim, indicating a fresh intrusion with data theft and extortion. Newly published victims are time-sensitive because the operation may still be ongoing. Defenders should verify the entity and monitor for related data exposure.
2h
Ransomware55
Ransomware thegentlemen publica a la heladería peruana GelartiThe thegentlemen ransomware group listed Gelarti, Peru's largest gourmet ice-cream chain with 39 outlets, as a victim. Retail and franchise operators hold customer loyalty, payment and supplier data. Encryption of POS or back-office systems could interrupt sales across Peru and expose customer and franchisee information.
6h
Ransomware52
Ransomware thegentlemen publica a la contable brasileña MultiplaThe thegentlemen group listed Multipla Contabilidade Empresarial, a family accounting firm in Piracicaba, São Paulo state, as a victim. Accounting firms concentrate tax, payroll and financial records of many client companies, so a breach can cascade to those clients. It is a smaller but real Brazilian data-exposure and extortion risk.
6h
Ransomware68
Ransomware thegentlemen publica al integrador guatemalteco SomitThe thegentlemen ransomware group listed Somit, a Guatemalan IT systems integrator serving banks, universities and government clients, as a victim. A compromised integrator is a supply-chain risk: its access to client networks, telemedicine platforms and data centers could enable downstream intrusions. This makes it relevant to Latin American critical-infrastructure defenders.
6h
Ransomware60
Ransomware thegentlemen publica al Colegio Humboldt de São PauloThe thegentlemen group lists Colegio Humboldt, the German binational school in São Paulo with ~1,200 students, claiming 300GB of stolen data. Schools hold student, family, health and staff records plus financial data. A leak of that volume at a high-profile institution raises serious privacy, extortion and reputational risk in Brazil.
6h
Ransomware62
Ransomware thegentlemen publica a la librería argentina Santa FeThe thegentlemen ransomware group listed Librería Santa Fe APS S.R.L., an Argentine book retailer and B2B distributor in Buenos Aires, as a victim. Such firms hold customer, supplier and school-institution sales data plus payment records. Encryption or data theft could disrupt book distribution across Argentina and expose customer PII to extortion.
6h