Breach Intelligence

6,875

Total breached databases

In June 2025, a database belonging to the Italian consortium Ecoped (ecoped.org) was allegedly leaked. Ecoped is a non-profit collective compliance scheme managing the recycling of waste electrical and electronic equipment (WEEE) and batteries in Italy. Reports suggest the exposed data, exported as multiple CSV tables, covered member companies and their contacts, including roughly 77,000 unique email addresses, along with company names, Italian tax and VAT identifiers, contact names, physical addresses and phone numbers.
  • Date: Jun 13, 2025
  • Domain: ecoped.org
  • Country: Italy
  • Category: Non-Profit & Charities
  • Data: Email Addresses Names Phone Numbers Physical Locations Geographic Locations Government IDs Tax IDs Company Information
  • Records: 177,946
  • Lines: 4,467,674
  • Size: 2.4 GB
  • Passwords: No
Sometime before 2025, LaToSeC Solutions (latosec.com), an Italian IT and security-solutions company, allegedly suffered a data breach of its vTiger CRM system. Reports suggest the exposed SQL dump contained approximately 184,000 email addresses drawn largely from CRM message/mailbox records, alongside contact, lead and company details including names, phone numbers and websites. No passwords were included.
  • Date: 2025
  • Domain: latosec.com
  • Country: Italy
  • Category: Technology
  • Data: Email Addresses Names Phone Numbers Geographic Locations Websites Messages Company Information
  • Records: 174,556
  • Lines: 10,071,093
  • Size: 2.74 GB
  • Passwords: No
Sometime before 2011, the phpBB forum at romanisti.it, an Italian community for AS Roma football supporters, allegedly suffered a data breach. It has been reported that the exposed user table contained roughly 1,300 accounts. Reports suggest the compromised data included usernames, email addresses, and MD5-hashed passwords.
  • Date: 2011
  • Domain: romanisti.it
  • Country: Italy
  • Category: Forums & Communities
  • Data: Email Addresses Passwords Geographic Locations Usernames
  • Records: 1,276
  • Lines: 1,276
  • Size: 83.27 KB
  • Passwords: MD5
  • Cracked: 0%
Sometime before November 2018, the Italian online store expertoffice.it allegedly suffered a data breach of its Magento store. It has been reported that approximately 800 customer records were exposed, including email addresses, first and last names and salted MD5 password hashes, with a small number also carrying phone numbers and addresses.
  • Date: Nov 19, 2018
  • Domain: expertoffice.it
  • Country: Italy
  • Category: E-commerce & Retail
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations
  • Records: 790
  • Lines: 1,323
  • Size: 208.2 KB
  • Passwords: MD5 Salted
  • Cracked: 0%
In December 2019, the Italian online store ziprar.com allegedly suffered a data breach that later surfaced as part of the Cit0day collection published in November 2020. Reports suggest approximately 15,700 customer records were exposed, including email addresses, first and last names, salted MD5 password hashes, phone numbers and postal addresses.
  • Date: Dec 24, 2019
  • Domain: ziprar.com
  • Country: Italy
  • Category: E-commerce & Retail
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations
  • Records: 15,713
  • Lines: 16,620
  • Size: 2.3 MB
  • Passwords: MD5 Salted
  • Cracked: 0%
In November 2019, the Italian online store bucatoprofumato.com allegedly suffered a data breach. It has been reported that approximately 10,000 customer records were exposed, including email addresses, first and last names, phone numbers, geographic locations and salted MD5 password hashes.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations
  • Records: 10,561
  • Lines: 10,561
  • Size: 1.9 MB
  • Passwords: MD5 Salted
  • Cracked: 0%
In November 2022, the Italian online store Franzy's Online (franzysonline.it) allegedly suffered a data breach, with its customer database subsequently shared on hacking forums. Reports suggest that approximately 11,000 customer records were exposed. The compromised data allegedly included email addresses, names, phone numbers, geographic locations, birthdates, company information and site activity. No passwords were included in the exposed data.
  • Date: Nov 18, 2022
  • Domain: franzysonline.it
  • Country: Italy
  • Category: E-commerce & Retail
  • Data: Email Addresses Names Phone Numbers Geographic Locations Site Activity Company Information Birthdates
  • Records: 11,055
  • Lines: 13,727
  • Size: 2.73 MB
  • Passwords: No

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.