PULSE
FEED
vulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
Kalir Brief · Item18 September 2026 · 10:12 UTC
BRIEFAccess salehighP48

WordPress admin access to multiple sites for sale

Detected18 September 2026 · 10:12 UTC
Why it matters

Seller CLOUD9BASE is advertising valid WordPress administrator credentials in bulk, the kind of access that lets an intruder deploy webshells, deface sites or pivot into hosting. It is cross-posted across several forums, signalling an active broker, and any organisation running unpatched WordPress should treat it as a live risk.

MetadataRECORD
CategoryAccess sale
Severityhigh
Priority score48
Detected18 September 2026 · 10:12 UTC
Related items6
Access sale38
Venta de accesos de administrador de WordPress (URL y credenciales)A dump of WordPress administrator URLs paired with username and password credentials is being circulated, giving buyers ready access to web control panels. Sites running unpatched plugins are the usual victims, and such access is frequently the entry point for defacement, SEO spam or webshell deployment. No specific targets are named, so immediate relevance is limited, but it is a live access-sale listing.
2h
Access sale62
Compra de datos de la argentina Bull Market BrokersA buyer on DarkForums is soliciting valid leads or credentials tied to inversiones.bullmarket.com.ar, an Argentine brokerage. This signals active interest in compromising an Argentine financial-sector target, likely via credential stuffing or account takeover. Defenders at the firm should watch for brute-force, phishing and anomalous logins.
7h
Access sale42
Dump y acceso admin de alifyaeducation.co.uk a la ventaA fresh listing offers a dumped database plus administrative access for alifyaeducation.co.uk. Admin access allows full site takeover, data theft and abuse of the host for further attacks. Even a small education target is a useful pivot for phishing and hosting infrastructure.
11h
Access sale70
Filtración y acceso de administrador a la base de datos de personal de Xarxa Tecla (SISCAT)A threat actor is leaking a personnel database from xarxatecla.cat (SISCAT) while offering associated email and admin access. This combines a data leak with privileged access to a Catalan telecom/technology network, enabling follow-on intrusion. Privileged access plus PII raises both fraud and lateral-movement risk.
11h
Access sale45
Venta de acceso admin WordPress al Ministerio de Educación de UgandaA seller is offering administrative WordPress access to the Uganda Ministry of Education's website. Government CMS takeovers enable defacement, malware or phishing hosting under an official domain, and can serve as a pivot into connected government infrastructure, so it should be validated and monitored.
12h
Access sale45
Venta de acceso al sistema de causas judiciales de un país africanoA seller is offering access to a government court-case system in an African country, an initial-access sale to a public-sector target. Although outside the AR-LATAM focus, it demonstrates a live vendor offering judicial-system access that regional CTI teams should track as a capability. No date is given, so treat it as time-sensitive but unverified.
13h