Breach Intelligence

6,872

Total breached databases

In November 2022, the French online store ERGC (ergc.fr) allegedly suffered a data breach. Reports suggest ergc.fr operated a PrestaShop-based e-commerce site selling refurbished and second-hand electronics and computer hardware. It has been reported that approximately 2,300 individuals were affected. The exposed data allegedly included email addresses, names, phone numbers, physical addresses, birthdates, genders, IP addresses, and passwords stored as MD5 and bcrypt hashes.
  • Date: Nov 13, 2022
  • Domain: ergc.fr
  • Country: France
  • Category: E-commerce & Retail
  • Data: Email Addresses Passwords Names Phone Numbers Physical Locations Genders IP Addresses Birthdates
  • Records: 5,021
  • Lines: 469,684
  • Size: 42.31 MB
  • Passwords: BCrypt, MD5
  • Cracked: 0%
In June 2022, the French online store Emotis (emotis.fr) allegedly suffered a data breach. Emotis is a French e-commerce shop selling silk stoles, scarves and Bach-flower wellness textiles, built on the PrestaShop platform. It has been reported that a full database dump was published, exposing approximately 116,000 individuals. The compromised data reportedly included email addresses, names, MD5-hashed passwords, IP addresses, dates of birth, genders, physical addresses and phone numbers.
  • Date: Jun 2022
  • Domain: emotis.fr
  • Country: France
  • Category: E-commerce & Retail
  • Data: Email Addresses Passwords Names Phone Numbers Physical Locations Genders IP Addresses Birthdates
  • Records: 338,369
  • Lines: 760,436
  • Size: 87.68 MB
  • Passwords: MD5
  • Cracked: 0%
In February 2023, the French IT services company Dotline (dotline.fr) allegedly suffered a data breach. Dotline is a Paris-based managed-IT provider handling hardware supply, software licensing, maintenance contracts and technical support for business clients, and the exposed data came from its internal ERP/CRM database. Reports suggest information relating to approximately 300 individuals was exposed, including email addresses, names, usernames, phone numbers and SHA-1 password hashes.
  • Date: Feb 5, 2023
  • Domain: dotline.fr
  • Country: France
  • Category: Technology
  • Data: Email Addresses Names Phone Numbers Usernames
  • Records: 1,356
  • Lines: 148,939
  • Size: 33.21 MB
  • Passwords: SHA-1
  • Cracked: 0%
Sometime before June 2022, the French online bearings retailer Nice Roulements Magnan (niceroulements-magnan.com) allegedly had a development/staging database exposed. Reports suggest a small set of records, corresponding to roughly a handful of individuals, was affected, including email addresses, names, phone numbers, physical addresses, birthdates, genders, and passwords stored as bcrypt and MD5 hashes.
  • Data: Email Addresses Names Phone Numbers Physical Locations Genders Birthdates
  • Records: 23
  • Lines: 78,315
  • Size: 4.88 MB
  • Passwords: BCrypt, MD5
  • Cracked: 0%
Sometime before 2023, the French online discount retailer Défi Discount (defidiscount.fr) allegedly suffered a data breach. Reports suggest the exposed data originated from the store's PrestaShop customer database. Approximately 41,000 individuals were affected, with exposed data allegedly including email addresses, names, genders, dates of birth, IP addresses, phone numbers, physical addresses and MD5-hashed passwords.
  • Data: Email Addresses Passwords Names Phone Numbers Physical Locations Genders IP Addresses Birthdates
  • Records: 51,041
  • Lines: 2,519,219
  • Size: 245.49 MB
  • Passwords: MD5
  • Cracked: 0%
Sometime around 2021, ALU (alu.archi), a French architecture agency based in the Paris region, allegedly suffered a data breach. Reports suggest a small dataset of fewer than 50 records was exposed, drawn from the firm's website database. It has been reported that the exposed data included email addresses, names, job information, phone numbers, physical addresses, and SHA-1 password hashes belonging to the site's administrators and staff.
  • Date: 2021
  • Domain: alu.archi
  • Country: France
  • Category: Design
  • Data: Email Addresses Passwords Names Phone Numbers Physical Locations Usernames Job Information
  • Records: 46
  • Lines: 1,269
  • Size: 579.95 KB
  • Passwords: SHA-1
  • Cracked: 0%
In October 2024, Free, a French internet service provider, allegedly suffered a data breach that was initially offered for sale and later leaked publicly. The incident reportedly exposed 14 million unique email addresses. Among the compromised data were names, physical addresses, phone numbers, genders, dates of birth, and, in many cases, IBAN bank account numbers.
  • Data: Email Addresses Names Phone Numbers Geographic Locations Bank Account Information Company Information
  • Records: 38,165,087
  • Lines: 38,165,198
  • Size: 10.86 GB
  • Passwords: No

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.