PULSE
FEED
vulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
Kalir Brief · Item18 September 2026 · 15:12 UTC
BRIEFLeaklowP40

Sale of the MOAB (Mother of All Breaches) dataset

Detected18 September 2026 · 15:12 UTC
Why it matters

A seller is offering the 'Mother of All Breaches' (MOAB), a huge aggregated dataset of billions of leaked credentials. The listing is recent but the underlying data is a known 2024 compilation, so it is stale intel rather than a new breach. Still useful for credential-stuffing exposure checks.

MetadataRECORD
CategoryLeak
Severitylow
Priority score40
Detected18 September 2026 · 15:12 UTC
Related items6
Leak30
Filtración de datos de clientes de Mercedes-Benz EspañaA posting offers a database from Mercedes-Benz's Spanish retail operations, including customer records. The thread dates from March 2025, so this is not a fresh alert, but it exposes PII that can fuel phishing and fraud against Spanish customers. Worth tracking for regional Spanish-language data-leak trends.
57m
Leak78
Filtración de base de datos de ADT USA con números de Seguro SocialADT, the US home-security provider (adt.com), is being offered with SSNs and customer records. Posted today (18 Sep 2026), the leak is fresh and the SSNs are usable for identity theft and account takeover. Defenders should watch for credential reuse and downstream fraud.
57m
Leak47
Base de datos de iChargePoint a la venta: 154.944 cuentasA database containing roughly 154,944 user accounts of iChargePoint.com is being offered for free download, exposing customer credentials and identifiers tied to an EV-charging/payments platform. Even a mid-size leak like this enables credential stuffing, account takeover and targeted phishing, and charge-point operators are increasingly viewed as critical infrastructure. Affected users should be forced to reset passwords and monitor for fraud.
2h
Leak35
Base de datos de miembros de sociedad científica coreana filtradaA database claimed to be the full member list of the Korean scientific society en.corrosionkorea.org has been posted for download on RAIDForums. It likely contains names, emails and institutional affiliations of researchers. Impact is limited to a niche research community outside Latin America, so it is lower priority for regional defenders.
3h
Leak48
Posible filtración de SSN de clientes de ADT (EE.UU.)A forum post advertises what appears to be ADT (adt.com) customer records containing US Social Security Numbers. If authentic, it exposes highly sensitive PII of home-security customers, enabling identity theft and account takeover. No scale or date is confirmed, so treat it as unverified but potentially high-value PII.
3h
Leak45
Filtración masiva de 16 millones de credenciales stealer (Secretline.top)A 16 million-line URL:login:password dump attributed to Secretline.top stealer logs was reposted across several underground forums. Bulk stealer logs routinely contain corporate and government credentials that fuel account takeover and VPN/RDP intrusions. Volume is high but provenance and freshness are unverified, so treat it as context rather than a targeted alert.
4h