PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / Windows
Kalir Brief · Item13 September 2026 · 13:12 UTC
BRIEFAccess salehighP72

Live read access to Rockwell MicroLogix 1400 PLC for sale

Rockwell MicroLogix 1400

Detected13 September 2026 · 13:12 UTC
Why it matters

A seller offers validated read access to a live Rockwell MicroLogix 1400 controller with real I/O. Read access to a running PLC supports reconnaissance and pre-attack positioning for later disruptive manipulation. It matters for defenders tracking ICS supply-chain and OT exposure.

MetadataRECORD
CategoryAccess sale
Severityhigh
Priority score72
Detected13 September 2026 · 13:12 UTC
Related items6
Access sale85
Venta de acceso a interfaz PLC Rockwell de POWERGRID (India, Ranchi)An actor is selling web-interface access to a Rockwell PLC belonging to POWERGRID's Ranchi facility, a state-owned power transmission utility. Compromise of grid OT exposes substation control and can enable disruptive or destructive attacks. Although outside LATAM, it shows the live ICS-access market and the OT exposure that regional operators should be watching for.
3h
Access sale62
Venta de acceso completo a base de datos del hospital militar de la IRGCA seller is offering full database access to the IRGC Ground Force Hospital, a military medical facility in Iran, in a listing posted yesterday. Access to such a target could expose personnel records and sensitive health and military data, and it is specifically presented as live database access rather than a stale dump. Named high-value military targets of this kind warrant immediate verification and tracking.
6h
Access sale65
Venta de acceso a toda la base de datos del hospital de la Fuerza Terrestre del IRGC (Irán)A seller is offering full database access to the IRGC Ground Force Hospital, a military-affiliated medical facility in Iran. Such databases typically hold personnel records, patient identities and operational details, making it a high-value state/military target. Defenders tracking state-sponsored and healthcare-sector data theft should monitor this offer.
12h
Access sale42
Oferta de acceso a red o datos en DarkNetArmyA member is offering 'network access or data' on DarkNetArmy, a classic initial-access listing posted in early September. Without a named victim the impact is unclear, but such offers often precede ransomware intrusions. Worth querying the seller for sector and geography.
13h
Access sale40
Credenciales SSL VPN de Fortinet filtradas por fuerza brutaA collection of fresh Fortinet SSL VPN access credentials reportedly obtained via brute-force is being circulated on BreachForums. No specific victim is named and the seller frames it as 'training', but SSL VPN access to Fortinet appliances is a common entry point into government and critical-infrastructure networks. Defenders should assume these credentials may be reused for initial access.
19h
Access sale22
Venta de lote de 130 accesos root y admin de cPanel/WHMCSA seller lists 130 cPanel/WHMCS accounts with root, admin or user-level access, which would let buyers seize control of hosted websites and mail. This access type is a classic stepping stone to mass website compromise, credential theft and spam infrastructure. The post appears to date to 2022 and is stale, but affected hosts may still be vulnerable if credentials were never rotated.
1d