PULSE
FEED
vulnKEV agrega CVE-2026-67279 — MikroTik / RouterOSvulnKEV agrega CVE-2026-65660 — Microsoft / SharePointvulnKEV agrega CVE-2026-5430 — WSO2 / Multiple ProductsvulnKEV agrega CVE-2026-71362 — Adobe / Commerce and Magento vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-67279 — MikroTik / RouterOSvulnKEV agrega CVE-2026-65660 — Microsoft / SharePointvulnKEV agrega CVE-2026-5430 — WSO2 / Multiple ProductsvulnKEV agrega CVE-2026-71362 — Adobe / Commerce and Magento vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services Engine
Kalir Brief · Item25 September 2026 · 22:45 UTC
BRIEFLeakhighP85

15 million rows of Brazilian bank data for sale

Bancos de Brasil

Detected25 September 2026 · 22:45 UTC
Why it matters

A seller on DarkForums is offering 15 million rows of Brazilian bank data, posted in late September 2026. Financial records enable account takeover, fraud and identity theft, and typically include PII and account details. Brazilian banking is critical infrastructure, so this warrants urgent validation and customer-notification planning.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score85
Detected25 September 2026 · 22:45 UTC
Related items6
Leak● 40
Datos 'Top Secret' del Ministerio de Defensa de la India a la ventaA 'Top Secret' Indian Ministry of Defence dataset is advertised for sale, mirroring posts dated May 2025 across several forums. If authentic, leaked defense technology or procurement data could aid espionage against a foreign government. However the posting is stale and outside the AR-LATAM region, so it ranks well below fresh regional alerts.
14m
Leak● 55
Filtración de base de datos de la app china 'AnGeMo' con 1,8 millones de usuariosAn actor posted a database said to contain 7.5 million orders and 1.8 million user records from the Chinese massage-booking app 'AnGeMo'. The volume and PII/financial fields make it a strong credential-stuffing and fraud source. It is outside the LATAM region, but the scale warrants tracking for downstream resale.
1h
Leak● 60
Datos y código fuente de la plataforma Kayako puestos a la ventaA seller is offering both customer data and the proprietary source code of Kayako, a helpdesk/CRM platform used by many enterprises. Source-code disclosure is high-value because it lets attackers locate auth, file-upload and deserialization flaws and pivot into any organization running the product. No date or sample is shown, so the claim needs verification before acting.
1h
Leak● 42
Filtración de base de datos de sdmtponorogo.com (250K registros)TurkHackTeam's AnkaTeam is publishing a 250K-record database allegedly taken from sdmtponorogo.com, an Indonesian website. While not a high-value government target, it is a named organisational breach with real user records that fuels credential stuffing and phishing. Useful mainly as a signal of ongoing regional hacktivist leak activity.
2h
Leak● 36
Base de datos de France Travail (44M, NIR) filtrada en 2024The France Travail national employment agency database with roughly 44 million records, including French national ID numbers (NIR), is being reposted. The data stems from the 2024 breach, so it is stale exposure rather than a fresh incident. Still a rich source for identity fraud and should be treated as historical.
2h
Leak● 52
Filtración de 6,5 millones de registros de robo (URL:login:pass)A 6.5 million stealer-log set in URL:login:password format was posted for free roughly an hour before capture. These logs originate from infostealer malware and contain live corporate and consumer credentials usable for account takeover and session hijacking. Defenders should feed it into credential-monitoring to detect exposed employee or customer logins.
3h