BRIEFLeaklowP40
740 GB stealer log and ULP dump published
Detected18 September 2026 · 05:12 UTC
A 740 GB archive of stealer logs and URL:login:password (ULP) data has been posted on RaidForums. Though published in January 2026, the sheer volume makes it a long-lived credential source for account takeover. Defenders should assume broad credential exposure and enforce resets and MFA.
CategoryLeak
Severitylow
Priority score40
Detected18 September 2026 · 05:12 UTC
Leak● 60
Base de datos de la exchange de criptomonedas CoinSwitch a la ventaA partial database of crypto exchange CoinSwitch containing over 1 million lines with KYC data and account balances is being offered on RaidForums. KYC records are highly sensitive and fuel identity fraud and targeted phishing. Financial-sector defenders should monitor for downstream abuse of the leaked customer data.Leak● 50
Venta de cédulas y licencias de conducir de Costa RicaA seller is offering Costa Rican national ID cards, driver licenses and matching selfies, likely sourced from identity theft or a prior breach. This enables large-scale identity fraud, account opening and KYB/KYC bypass against Costa Rican citizens. Data appears to be posted around July 2026.Leak● 41
Base de datos de JobsGo filtrada y ofrecida para descargaA database belonging to the job platform JobsGo has been posted for download on BreachForums, exposing account and personal data of its users. Job-portal leaks are valuable for credential stuffing, recruitment fraud and targeted phishing because they hold employment and contact details. Affected users and partner organizations should reset credentials and monitor for abuse.Leak● 58
Base de datos de la mayor app de maternidad del sudeste asiático (21,6M)A threat actor is offering a 21.6 million-record database from Southeast Asia's largest parenting app, including pregnant women's names, national ID numbers and home addresses. The stolen PII enables large-scale phishing, identity theft and fraud against a vulnerable population. Organizations in the region should treat this data as compromised and warn affected users.Leak● 58
Filtración de la base de datos de pH Electrónica S.A. (Buenos Aires)A database belonging to pH Electrónica S.A., an industrial analytical instrumentation firm in Buenos Aires, has been posted for download. Although not a government body, it is an Argentine company whose customer and business data could feed phishing and invoice fraud. It is directly relevant to Argentine incident responders.Leak● 50
Venta de 1 millón de datos personales de la firma británica mtglobal.orgA seller is offering roughly 1 million PII records belonging to UK international money-transfer firm mtglobal.org. The dataset enables identity theft and targeted financial fraud against its customers. It is a fresh, named-entity data sale relevant to financial-sector monitoring.