BRIEFLeakhighP52
Data of US ad firm AirFind offered for sale
AirFind
Detected13 September 2026 · 14:12 UTC
A seller posted three hours ago a dataset allegedly belonging to AirFind, a US mobile advertising firm. If legitimate it exposes company and likely user data usable for targeted phishing and account takeover. Defenders tied to this firm should verify scope and treat sourced credentials as compromised.
CategoryLeak
Severityhigh
Priority score52
Detected13 September 2026 · 14:12 UTC
Leak● 45
Filtración de la base de datos de la logística Mondial RelayA database tied to French parcel and logistics operator Mondial Relay has been posted on a breach forum, with the thread spanning nine pages of data. This suggests a substantial dump of customer or operational records from a real, well-known company. Worth tracking for downstream fraud and credential abuse against the firm and its partners.Leak● 55
Filtración de base de datos con 12 millones de estudiantes siriosA database of roughly 12 million Syrian student records covering 1993 to 2024 has been posted for download on a breach forum. The scale and multi-decade coverage make it a significant education/government-linked leak, although it sits outside Latin America. Monitor for identity-reuse and credential-stuffing risk affecting the exposed population.Leak● 48
Base de datos de clientes de CEGID filtrada (74K registros)A seller is offering a 74K-record customer database allegedly from CEGID, a French business-software vendor, tagged as fresh 2026 data spanning France, Belgium, Luxembourg and Spain. These records expose corporate contacts and licence details that enable invoice fraud and targeted BEC against CEGID's business clients. Spanish and Belgian customers should be warned about impersonation risk.Leak● 60
Filtración de datos de LinkedIn de siete países, incluido BrasilA forum actor is advertising a LinkedIn dataset covering the USA, Austria, Brazil, Canada, France, India and the UK, posted today. Scraped LinkedIn data fuels credential stuffing and targeted phishing, and the Brazilian slice directly touches Latin America. Defenders should watch for reuse of corporate emails and follow-on BEC attempts.Leak● 68
Base de datos de 30 millones de tarjetas QiCard de Irak a la ventaA member posted a 30-million-record database tied to Iraq's QiCard national payment scheme, marketed 'to be redeemed', implying live, monetizable card and identity data. At that scale it enables mass card fraud, account takeover and identity theft well beyond Iraq's borders. Financial-crime teams should flag downstream use and monitor BIN-level abuse.Leak● 70
Filtración de base de datos de socios de Resamania.fr (5,2M)A threat actor is selling a 5.2M-record membership database from French fitness chain Resamania.fr, described as fresh 2026 data. Member records typically include names, emails, phones and addresses, ideal for phishing, smishing and credential stuffing. Fraud and privacy teams should prepare for customer-targeted campaigns and GDPR exposure.