Breach Intelligence

6,875

Total breached databases

In 2021, veganallsorts.com, a UK-based online retailer selling vegan sweets and confectionery, allegedly suffered a data breach. Reports suggest approximately 177,000 customer records were exposed, including email addresses, names, phone numbers, geographic locations, and salted SHA-1 password hashes.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Genders Site Activity
  • Records: 177,517
  • Lines: 694,060
  • Size: 141.86 MB
  • Passwords: SHA-1 Salted
  • Cracked: 0%
Sometime in or after 2012, the United Kingdom-based philatelic e-commerce site Rowland Hill Stamps European (rhs-european.co.uk) allegedly suffered a data breach. Reports suggest approximately 3,400 individuals were exposed, with the leaked records containing email addresses, names, phone numbers, geographic locations, genders, IP addresses, and site activity, along with a small amount of credit card information.
  • Data: Email Addresses Names Phone Numbers Geographic Locations Credit Card Information Genders IP Addresses Site Activity
  • Records: 33,166
  • Lines: 39,821
  • Size: 18.89 MB
  • Passwords: No
Sometime in 2007, Weddingdecor.co.uk allegedly suffered a data breach. The site appears to have been a UK-based wedding decoration company that hosted a vendor directory and accepted online inquiries from customers. Reports suggest approximately 70 individuals were exposed in the leak, including email addresses, names, phone numbers, geographic locations, usernames, site activity, company information and plaintext passwords.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Site Activity Company Information
  • Records: 96
  • Lines: 1,051
  • Size: 216.15 KB
  • Passwords: Plaintext
Sometime before 2016, Lastolite, a British manufacturer of photography accessories, allegedly suffered a data breach affecting its media and school-of-photography website. Reports suggest approximately 8 individuals were exposed, including emails, usernames, IP addresses, website URLs, site activity, and passwords stored as PHPass hashes alongside some plaintext credentials.
  • Data: Email Addresses Passwords Usernames IP Addresses Site Activity Websites
  • Records: 17
  • Lines: 12,987
  • Size: 2 MB
  • Passwords: PHPass
  • Cracked: 29%
Sometime in or after December 2016, the British vehicle performance tuning company Paramount Performance allegedly suffered a data breach. Reports suggest approximately 1,400 customer records were exposed, including email addresses, names, usernames, MD5 password hashes, phone numbers, geographic locations, company information and site activity.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Genders Site Activity Websites Company Information Languages
  • Records: 1,672
  • Lines: 2,074
  • Size: 1.31 MB
  • Passwords: MD5, Unknown
In 2009, GhostMarket allegedly suffered a data breach. GhostMarket was an English-language cybercrime forum where members traded stolen credit card data, financial credentials, and fraud-related tools. Reports suggest approximately 11,000 records were exposed, including email addresses, usernames, IP addresses, PHPass-hashed passwords, site activity, social profiles, websites, and language preferences.
  • Data: Email Addresses Passwords Usernames IP Addresses Site Activity Social Profiles Websites Languages
  • Records: 10,952
  • Lines: 34,815
  • Size: 23.95 MB
  • Passwords: PHPass
  • Cracked: 0%
In 2020, Unmined.io allegedly suffered a data breach. Unmined.io was a Bitcoin mining pool service based in the UK. Reports suggest approximately 146,000 records were exposed, including email addresses, names, usernames, MD5 password hashes, Bitcoin wallet addresses, cryptocurrency balances, and IP addresses.
  • Date: 2020
  • Domain: unmined.io
  • Country: United Kingdom
  • Category: Cryptocurrency
  • Data: Email Addresses Passwords Names Usernames Cryptocurrency Information IP Addresses Site Activity
  • Records: 146,116
  • Lines: 146,135
  • Size: 47.57 MB
  • Passwords: MD5
  • Cracked: 0%

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.