PULSE
FEED
vulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
Kalir Brief · Item17 September 2026 · 13:12 UTC
BRIEFLeakhighP55

Massive 1.2 billion credential dump (44 GB)

Detected17 September 2026 · 13:12 UTC
Why it matters

A 44 GB dump containing roughly 1.2 billion URL:login:password lines was posted on 15 September 2026. This is a very large stealer-log aggregation, implying massive credential-reuse risk across corporate and consumer accounts. Defenders should enable credential-leak detection and force resets for exposed users.

MetadataRECORD
CategoryLeak
Severityhigh
Priority score55
Detected17 September 2026 · 13:12 UTC
Related items6
Leak62
Filtración de la base de datos central de VodafoneA threat actor claims to have compromised Vodafone's core database and posted an encrypted drop on a cloned forum. Vodafone is a major global telecom, so a core database leak could expose subscriber and infrastructure data at scale. Defenders in telecom should treat this as a possible exposure pending verification.
1h
Leak42
Filtración de datos de John Lewis, Currys y American AirlinesA leak thread offers data linked to UK retailers John Lewis, Currys and PC World plus US airlines American Airlines and Southwest. Collections like this usually contain customer accounts and credentials that feed fraud and account takeover. It is outside LatAm, but the airlines' reach makes it worth tracking.
3h
Leak55
Base de datos de Samsung a la venta en foro clandestinoA freshly posted thread on a darkweb forum claims a Samsung database is up for grabs, potentially exposing customer or corporate records of the global electronics giant. If genuine, such data would support fraud, account takeover and targeted attacks. Authenticity and scale are unverified, so treat it as an unconfirmed lead.
3h
Leak60
Volcado de datos de Sudamérica con datos de Argentina y BrasilA criminal forum post advertises a verified South America data dump covering Argentina, Brazil, Chile and more, likely credentials or personal data. Such region-specific collections enable account takeover and targeted phishing against Latin American organizations. Local defenders should hunt for reuse of these leaked credentials.
3h
Leak35
Base de datos de Chile con 10 millones de registros circula en foroA 10-million-record database described as Chilean is circulating on BreachForums. If authentic, it could expose a significant share of Chile's population to identity theft and phishing. The posting dates to July 2025, so it is not a fresh incident but remains relevant for exposure monitoring.
4h
Leak42
Datos internos de Coinbase (50.000 registros) a la ventaA seller is offering roughly 50,000 records described as insider Coinbase data, including a named individual. Even partial customer or internal data from a major crypto exchange fuels account takeover, phishing and regulatory exposure. Worth tracking to verify authenticity and scope.
4h