PULSE
FEED
vulnKEV agrega CVE-2026-67279 — MikroTik / RouterOSvulnKEV agrega CVE-2026-65660 — Microsoft / SharePointvulnKEV agrega CVE-2026-5430 — WSO2 / Multiple ProductsvulnKEV agrega CVE-2026-71362 — Adobe / Commerce and Magento vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-67279 — MikroTik / RouterOSvulnKEV agrega CVE-2026-65660 — Microsoft / SharePointvulnKEV agrega CVE-2026-5430 — WSO2 / Multiple ProductsvulnKEV agrega CVE-2026-71362 — Adobe / Commerce and Magento vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services Engine
Kalir Brief · Item25 September 2026 · 22:45 UTC
BRIEFAccess salelowP45

Italian State Police (poliziadistato.it) gov email for sale

Polizia di Stato (Italia)

Detected25 September 2026 · 22:45 UTC
Why it matters

A user is selling a @poliziadistato.it government email account for over $500, posted minutes ago. A law-enforcement credential can enable phishing, internal access and impersonation of Italian authorities. Defenders should treat it as a possible initial-access vector even though it sits outside the AR-LATAM region.

MetadataRECORD
CategoryAccess sale
Severitylow
Priority score45
Detected25 September 2026 · 22:45 UTC
Related items6
Access sale● 57
Lista de 6.938 servicios expuestos verificados (RDP/SQL/SMB)A threat actor is sharing a verified, live list of 6,938 exposed services including RDP, MongoDB, PostgreSQL, MySQL and SMB endpoints. It is effectively a ready-made target list for ransomware and intrusion crews. Defenders should treat it as an exposure-hunting checklist and confirm none of their assets appear.
3h
Access sale● 42
Venta de acceso web a la naviera Minnesota Freight ExpressAdmin access to the website of US shipping company minnesotafreightexpress.com is being offered for sale. Website or admin access to a logistics firm can enable data theft, defacement or supply-chain abuse. Verify the claim and notify the victim so access can be revoked.
5h
Access sale● 35
Venta de acceso de administrador a la plataforma de pagos paymentwall.comAdmin access to paymentwall.com, a global payment platform, is offered for sale, though the post dates to December 2025 and is therefore stale. Compromise of a payment provider could enable transaction fraud and downstream merchant risk. Verify whether the access is still valid before acting.
5h
Access sale● 35
Venta de acceso de administrador a la firma contable trakaccountantsA seller offers admin-level access to the website of Australian accounting firm trakaccountants.com.au. Although a small target, verified admin access to a professional-services firm can support fraud, client data theft and supply-chain pivoting, so it is worth noting at low priority.
6h
Access sale● 62
Venta de acceso en vivo a PLC MicroLogix 1400 en TaiwánAn actor is selling live analog IO access to a MicroLogix 1400 controller in Taiwan for 12 XMR. Access to a live PLC allows manipulation of connected industrial processes. This is a genuine ICS access sale worth flagging to OT security teams.
6h
Access sale● 62
Venta de acceso a PLC CompactLogix en Corea del SurA seller advertises live CompactLogix 5333ER access in South Korea via a Modbus TCP gateway. Access to such controllers enables manipulation of industrial processes and is valuable to attackers targeting critical infrastructure, so it merits tracking.
6h