
Retail, E-commerce and Consumer Goods, July 2026
July brought ransomware, fraud, and extortion to LATAM retail and consumer goods, with a focus on Brazil, Argentina
Whalemate Labs is the research desk behind CiberLATAM news and analysis. It runs AI-assisted research agents that track CERTs, vendor advisories, regulators and specialist media across Latin America. Every story publishes automatically, but only after its cited URLs are checked over HTTP and the story is corroborated by at least two distinct outlets, or by one verifiable official source. Anything that fails those checks is not published. Corrections to published stories are always made by a human editor.
Emperador claims an attack on Arcos city hall in Brazil. The case remains unverified, with no public confirmation from the municipality.
Aug 23, 2026 · 2 min
Brazil’s Central Bank adds audits, preventive holds and tighter monitoring for Pix and virtual assets, with new provider requirements.
Aug 23, 2026 · 4 min
Peru's SBS is consulting new prudential rules for EAFs and AFP payment channels, with cyber, continuity and operational risk requirements.
Aug 23, 2026 · 4 min
Deputies debated the cybersecurity bill, CERT-PY cited the 2025-2028 strategy, and DNIT activated new cryptoasset reporting rules.
Aug 23, 2026 · 4 min
The Central Bank will consult on a stablecoin framework, while the Public Prosecutor’s Office and regulators launch new antifraud coordination.
Aug 23, 2026 · 3 min
Communication A 8438 updates the National Payments System framework and reorders Circular SINAP 1-248.
Aug 23, 2026 · 2 min
Breachsense flagged amca.org.ar as a BLACKWATER victim on Aug. 17, 2026. Security Arsenal also cited it among two new leak-site victims.
Aug 23, 2026 · 3 min
The Brazilian Senate is still processing PL 2114/2026 and PL 5092/2026 as debate continues over AI and personal data.
Aug 23, 2026 · 2 min
Peru is debating a general cyber law, the rollout of AI rules, and a bill that would penalize criminal praise in media and digital platforms.
Aug 23, 2026 · 2 min
Bolivia’s Senate does not list a visible data protection or cybersecurity bill, while ENTEL pushes a national cyber agenda.
Aug 23, 2026 · 2 min
Chile has given urgent status to a bill protecting minors online, with amendments due by Aug. 28 and a focus on platforms.
Aug 23, 2026 · 2 min
Paraguay, Guatemala and Chile are moving ahead on cyber and digital bills, with technical reviews, new debate steps and added urgency.
Aug 23, 2026 · 3 min
Microsoft fixed CVE-2026-69836 in Entra ID, a critical deserialization flaw rated CVSS 10.0. No customer action is needed.
Aug 23, 2026 · 2 min
COLCERT warned on Operation Dream Job and CVE-2026-68820, a Windows flaw used to raise privileges and deploy malware.
Aug 22, 2026 · 3 min
FBI, CISA and HHS updated their Medusa alert, saying the group has hit more than 500 victims and kept targeting US health care.
Aug 22, 2026 · 2 min
The BCU will add an online process for virtual asset providers and require a sworn declaration before new fundraising activity.
Aug 22, 2026 · 3 min
The OCC proposed in August 2026 a new framework to loosen the disclosure of confidential supervisory information and align it with the FDIC.
Aug 22, 2026 · 2 min
The Central Bank, SERNAC and ABIF launched an anti-fraud task force as Chile advances stablecoin rules and new data duties.
Aug 22, 2026 · 3 min
Ransomware hit Colombia’s Justice Ministry, while Grandoreiro resurfaced in Mexico, with detections also reported in Peru
Aug 22, 2026 · 2 min
Quaker State Mexico appeared in a Qilin-attributed listing, with no independent public confirmation of a breach or data theft.
Aug 22, 2026 · 2 min
Brazil's ANPD is reviewing its LGPD enforcement and sanctions rules while moving ahead with its AI sandbox and new incident reporting rules.
Aug 22, 2026 · 3 min
CISA added four actively exploited flaws in Apple, Microsoft and VMware to its KEV catalog and set the federal deadline for Aug. 21.
Aug 22, 2026 · 3 min
Brazil’s Central Bank adds limits for unregistered devices and requires device validation for higher-value Pix transfers.
Aug 21, 2026 · 4 min
Paraguay’s Chamber of Deputies held a hearing on the cybersecurity bill as DNIT activated a new crypto asset filing and banks updated prevention.
Aug 21, 2026 · 1 min

July brought ransomware, fraud, and extortion to LATAM retail and consumer goods, with a focus on Brazil, Argentina

Ecopetrol drove LATAM this month, with data exfiltration, extortion, and regulatory response; actively exploited CVEs also added pressure.

July saw leaks, operational stoppages from failures, and ransomware, led by Colombia and Mexico, alongside a rise in active vulnerabilities.

July closed with more regulation, less fraud, and more availability incidents and leaks in public agencies across the region.

July ended with cloud and SaaS intrusions, critical Citrix and Ivanti alerts, and Ecopetrol as the region's most sensitive case.

July saw fiber outages, incidents at Copaco and Ecopetrol, telecom fraud, and strong ransomware pressure across the region.

Ransomware, disputed leaks, and sanctions shaped July in LATAM health, with Brazil and Sinaloa at the center.

Ransomware and data leaks marked July in Latin American utilities, with Ecopetrol, Oldelval, and Sinop Energia at the center.

July brought regulatory pressure in Peru and Brazil, plus 40 vulnerability events and an operational incident at Caixa lotteries.

July ended with more regulation, persistent digital fraud, and signs of ransomware and phishing affecting banking and insurance across the region.

July closed with Redis, SharePoint, OpenSSH, Ivanti, and Joomla/JCE in focus, plus confirmed active exploitation and regional CERT alerts.

July ended with heavy ransomware pressure in LATAM, led by Brazil and Argentina and with new confirmed cases in Bolivia.