Breach Intelligence

2,843

Total breached databases

In 2022, a data breach exposed 3,178,461 COVID-19 vaccination records obtained from an unprotected API found in a GitHub repository. Among the compromised data were email addresses, government IDs, names, birthdates, phone numbers, physical locations, genders, and health information.
  • Date: 2022
  • Domain: farmapatria.com.ve
  • Country: Venezuela
  • Category: Healthcare
  • Records Announced: 3,178,461
  • Data: Birthdates Email Addresses Genders Government IDs Health Information Names Phone Numbers Physical Locations
  • Imported:
  • Records Imported: 3,178,462
  • Size: 1.88 GB
  • Passwords: No
In August 2019, the computer hardware and software forum HKGolden (高登讨论区) suffered a data breach that impacted 297k users. The attack led to the exposure of data including Email addresses, Usernames, Phone numbers, IP Addresses, Genders, Dates of birth and Passwords stored in Plaintext.
  • Data: Birthdates Email Addresses Genders IP Addresses Passwords Phone Numbers Usernames
  • Imported:
  • Records Imported: 297,904
  • Number of lines: 298,155
  • Size: 80.26 MB
  • Passwords: Plaintext
In 2016, Fave, a shopping deals app formerly available at the now-defunct website thefaveapp.com, experienced a data breach. The platform was known for offering discounted deals on food, spa, fitness, and other services in Malaysia and Singapore. The incident reportedly exposed approximately 549,000 user records. Among the compromised data were names, email addresses, and password information stored as salted hashes.
  • Data: Email Addresses Names Passwords
  • Imported:
  • Records Imported: 549,120
  • Number of lines: 549,120
  • Size: 65.69 MB
  • Passwords: Rails
  • Cracked: 5%
In approximately October 2022, maisamigas.com.br, the website of Brazilian multi-level marketing company Amigas, suffered a data breach. The incident, attributed to threat actor @thrax, reportedly exposed data belonging to around 603,000 users, including 93,000 unique email addresses. Among the compromised data were full names, email addresses, phone numbers, tax identification numbers, physical addresses, genders, marital statuses, and dates of birth.
  • Data: Birthdates Email Addresses Genders Marital Statuses Names Phone Numbers Physical Locations Tax IDs
  • Imported:
  • Records Imported: 603,796
  • Number of lines: 726
  • Size: 164.23 MB
  • Passwords: No
In June 2022, the Taiwan's low-cost airline Tigerair Taiwan (https://www.tigerairtw.com/) suffered a data breach exposed over 585k clients. The data contained over 656k unique email addresses, dates of birth, genders, names, passport numbers and passport expiration date as well as passwords stored as Base64(unhex(SHA-256($plaintext))) hashes.The data also contains almost 3 million credit cards.
  • Date: Jun 2022
  • Domain: tigerairtw.com
  • Country: Taiwan
  • Category: Travel
  • Records Announced: 585,115
  • Data: Birthdates Credit Card Information Email Addresses Genders Names Passports Passwords Site Activity
  • Imported:
  • Records Imported: 585,115
  • Number of lines: 1,902
  • Size: 558.94 MB
  • Passwords: SHA-256
  • Cracked: