
🚨Cyber Alert ‼️ 🇵🇦Panama - NordVPN A threat actor known as "1011" claims to have leaked over 10 databases’ worth of source code from a NordVPN development server. Allegedly, the breach was achieved by bruteforcing a misconfigured server, which stored sensitive data including Salesforce API keys, Jira tokens, and other internal credentials. According to the post, the exposed data includes structured .SQL files containing development environment configurations and authentication keys. Sector: ICT Threat class: Cybercrime Observed: Jan 04, 2026 Status: Pending verification — About this post: Hackmanac provides early warning and cyber situational awareness through its social channels. This alert is based on publicly available information that our analysts retrieved from clear and dark web sources. No confidential or proprietary data was downloaded, copied, or redistributed, and sensitive details were redacted from the attached screenshot(s). For more details about this incident, our ESIX impact score, and additional context, visit HackRisk.io.













