Breach Intelligence

3,512

Total breached databases

Sometime before 2022, the Marist school treasury and billing portal at tesoreria-maristas.com.ar (tesoreria-maristas.com.ar) allegedly suffered a data breach. The portal manages tuition billing and student administration for a Marist (Colegio Marista) school in Argentina. Reports suggest approximately 60,000 individuals were exposed. The compromised data allegedly included names, email addresses, plaintext passwords, phone numbers, government identification numbers, birthdates, genders, geographic locations, and credit card information.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Credit Card Information Government IDs Genders Company Information Birthdates
  • Records: 69,364
  • Lines: 837,287
  • Size: 186.84 MB
  • Passwords: Plaintext
In September 2022, the Swachh.city (Swachhata) platform allegedly suffered a data breach. Swachh.city is India's citizen-engagement app for the Swachh Bharat Mission, operated by Janaagraha for the Ministry of Housing and Urban Affairs, letting citizens report civic and sanitation grievances. It has been reported that the exposed data was subsequently made public. Reports suggest approximately 16 million records were exposed, including email addresses, names, usernames, phone numbers, IP addresses, site activity and geographic locations, along with passwords stored as bcrypt hashes.
  • Date: Sep 2022
  • Domain: swachh.city
  • Country: India
  • Category: Government
  • Data: Email Addresses Passwords Phone Numbers Geographic Locations Usernames IP Addresses Site Activity
  • Records: 15,835,135
  • Lines: 15,954,414
  • Size: 5.56 GB
  • Passwords: BCrypt
  • Cracked: 0%
Sometime before 2022, TEO (teo-me.com), a Syrian educational gaming platform for children, allegedly suffered a data breach. It has been reported that approximately 12,000 individuals were affected. The exposed data allegedly included email addresses, usernames, plaintext passwords, BCrypt and MD5 password hashes, phone numbers, geographic locations, device identifiers, and site activity records.
  • Date: 2022
  • Domain: teo-me.com
  • Country: Syria
  • Category: Education
  • Data: Email Addresses Passwords Phone Numbers Geographic Locations Usernames Site Activity Device Identifiers Device Information
  • Records: 15,374
  • Lines: 18,042,007
  • Size: 1.7 GB
  • Passwords: Plaintext, MD5, BCrypt
Sometime before 2023, the web hosting server testerzone.com (primarily hosting the UK mortgage and bridging-loan broker UK Property Finance, along with several other client websites) allegedly suffered a data breach. Reports suggest a database dump of approximately 48,000 records, covering around 22,000 individuals, was exposed. The exposed data reportedly included email addresses, names, usernames, phone numbers, geographic locations, birthdates, IP addresses, website and company information, and passwords stored as BCrypt, PHPass, and MD5 hashes.
  • Date: 2022
  • Domain: testerzone.com
  • Country: United Kingdom
  • Category: Finance & Payments
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames IP Addresses Site Activity Websites Company Information Birthdates
  • Records: 48,164
  • Lines: 5,063,449
  • Size: 2.35 GB
  • Passwords: BCrypt, MD5, PHPass
  • Cracked: 0%
Sometime before September 2022, tecnica3139-salta.edu.ar allegedly suffered a data breach. The domain belongs to a public technical secondary school in Salta Province, Argentina, running Chamilo and Moodle learning-management platforms. It has been reported that the exposed data, drawn from the school's student, teacher and user records, affected approximately 2,400 individuals. Reports suggest the compromised information included email addresses, names, usernames, phone numbers, birthdates, government-issued ID numbers, geographic locations, IP addresses and passwords stored as BCrypt and PHPass hashes.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Government IDs Genders IP Addresses Site Activity Websites Birthdates
  • Records: 3,814
  • Lines: 1,172,953
  • Size: 237.22 MB
  • Passwords: BCrypt, PHPass
  • Cracked: 0%
Sometime before 2023, telesia.in (along with telesiasurface.com) allegedly suffered a data breach. The exposed data originated from a shared web-hosting backup that bundled numerous Indian e-commerce stores, WordPress/WooCommerce installs, and custom shop and CRM applications on the same server. Reports suggest approximately 30,000 individuals were affected. The compromised records allegedly included email addresses, names, usernames, phone numbers, geographic locations, birthdates, job and company information, website activity, and passwords stored as MD5 and PHPass hashes.
  • Date: 2023
  • Domain: telesia.in
  • Country: India
  • Category: E-commerce & Retail
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Genders Site Activity Websites Job Information Company Information Birthdates
  • Records: 31,612
  • Lines: 673,937
  • Size: 841.85 MB
  • Passwords: MD5, PHPass
  • Cracked: 28%
In early 2023, TESLA investiční společnost (teslainvest.cz), a Czech investment and financial-services company, allegedly suffered a data breach of its vTiger CRM system. Reports suggest that data on approximately 15,000 individuals — clients, sales leads and financial advisors — was exposed. The compromised records allegedly included email addresses, full names, phone numbers, birth dates, postal addresses, company information, and a small number of BCrypt-hashed staff account passwords.
  • Date: Apr 6, 2023
  • Domain: teslainvest.cz
  • Country: Czech Republic
  • Category: Finance & Payments
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Company Information Birthdates
  • Records: 29,986
  • Lines: 1,995,256
  • Size: 131.09 MB
  • Passwords: BCrypt
  • Cracked: 0%

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.