A threat actor is advertising what they claim to be a massive Wise data breach affecting millions of users. The alleged database recently appeared on a cybercrime forum and reportedly contains sensitive information tied primarily to customers in Spain.
While Wise has not confirmed the authenticity of the claims, researchers who reviewed the listing warn that the exposed information could create significant risks for affected individuals if the data proves genuine.
Hackers Claim to Hold 4.9 Million Records
According to the forum post, the seller is offering a database containing approximately 4.9 million records allegedly linked to Wise customers. The sample data shared by the threat actor appears to include personal information associated with Spanish users.
Researchers noted that some records contain Spain’s national identification numbers, known as NIF numbers, along with contact details and other personal information. Such data can be highly valuable to cybercriminals because it allows them to create convincing fraud schemes that target specific individuals.
The listing has attracted attention due to the scale of the alleged breach and the sensitive nature of the exposed information.
Researchers Believe the Data May Be Recent
One detail that concerns investigators is the apparent age of the records. According to researchers, timestamps found in sample entries range between late 2025 and early 2026. This suggests the information may be relatively recent rather than recycled from older data leaks.
Cybercriminals frequently repackage old databases and advertise them as new breaches. However, the available samples indicate that this dataset could contain fresh information if the claims are accurate. Researchers continue to analyze the material to determine its legitimacy.
At this stage, there is no public evidence confirming how the data may have been obtained.
Exposed Data Could Fuel Fraud Campaigns
Personal information remains one of the most valuable assets in cybercrime markets. Criminals can use identification numbers, phone numbers, and email addresses to launch highly targeted attacks.
Fraudsters often combine leaked information with publicly available data to create convincing phishing messages. In some cases, attackers use the details to impersonate financial institutions or customer support representatives. Previous scams targeting Wise users have relied on personal information to appear legitimate and gain victims’ trust.
Identity theft is another concern. National identification numbers can provide attackers with information needed to bypass verification processes or support broader fraud schemes.
Financial Platforms Remain Prime Targets
Financial technology companies continue to attract attention from cybercriminals because they manage valuable customer information and financial data. Even unverified breach claims can create concern among customers and force organizations to investigate potential security issues.
Researchers warn that users should remain cautious if they receive unexpected messages, calls, or emails claiming to come from financial institutions. Attackers frequently exploit news about alleged breaches to increase the success of phishing campaigns.
Using strong passwords, enabling multi-factor authentication, and monitoring account activity remain important security measures.
Final Thoughts
The Wise data breach claim has raised concerns after a threat actor advertised what they say is a database containing 4.9 million records linked primarily to Spanish users. Researchers believe the information may be recent, increasing the potential impact if the dataset proves authentic.
Although the claims remain unverified, the incident highlights the risks associated with exposing personal identification data. Users should stay alert for phishing attempts and suspicious communications while investigators continue to examine the alleged leak.


0 responses to “Wise Data Breach Claim Exposes Millions of Records”