Breach Intelligence

6,874

Total breached databases

In April 2022, the calibration services company TIC-MS, Inc. (ticms.com) allegedly suffered a data breach. TIC-MS is a US-based test-instrument and equipment calibration laboratory serving industrial and manufacturing clients. It has been reported that a full database dump was exposed, affecting approximately 1,500 individual business contacts across roughly 2,000 customer company records. The exposed data allegedly included email addresses, names, phone numbers, geographic locations, and company information. No passwords were exposed.
  • Date: Apr 2022
  • Domain: ticms.com
  • Country: United States
  • Category: Industry
  • Data: Email Addresses Names Phone Numbers Geographic Locations Company Information
  • Records: 2,018
  • Lines: 698,133
  • Size: 114.37 MB
  • Passwords: No
Sometime before 2022, the US-based online news website TNCN (tncn.com) allegedly suffered a data breach. TNCN is a news and media website built on the Joomla content-management system. Reports suggest the exposed data was limited to a small number of site accounts, comprising email addresses, usernames, names, site activity, and passwords stored as bcrypt hashes.
  • Date: 2022
  • Domain: tncn.com
  • Country: United States
  • Category: News & Media
  • Data: Email Addresses Passwords Names Usernames Site Activity
  • Records: 2
  • Lines: 9,276
  • Size: 8.01 MB
  • Passwords: BCrypt
  • Cracked: 0%
Sometime before mid-2022, the scripts.mit.edu-hosted website for an MIT undergraduate residence allegedly suffered a data breach. This was a Django-based site running on MIT SIPB's shared web-hosting service for student and campus groups. Reports suggest approximately 700 individuals were affected. The exposed data included email addresses, names, usernames, site activity timestamps, and a small number of MD5 and MySQL password hashes.
  • Data: Email Addresses Passwords Names Usernames Site Activity
  • Records: 739
  • Lines: 3,619
  • Size: 532.65 KB
  • Passwords: MD5, MySQL
  • Cracked: 0%
Sometime before January 2023, the freight and logistics management system at specklogistics.com — an internal shipment-tracking and supply-chain platform operated by Speck Products — allegedly suffered a data breach. Reports suggest the exposed database contained roughly 200 user accounts along with company, consignee, freight-forwarder, warehouse and customs-broker records. The compromised data included email addresses, usernames, hashed passwords, names, phone numbers, company information and geographic locations.
  • Date: Jan 20, 2023
  • Domain: specklogistics.com
  • Country: United States
  • Category: Logistics & Transportation
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Site Activity Company Information
  • Records: 321
  • Lines: 1,527,713
  • Size: 209.1 MB
  • Passwords: Unknown
Sometime before 2023, Rhinestones.com allegedly suffered a data breach. Rhinestones.com is an online retailer selling rhinestones, crystals, and craft embellishment supplies. It has been reported that the breach exposed approximately 6,700 individuals, with the compromised data including email addresses, names, usernames, phone numbers, geographic locations, company information, and a small number of salted MD5 password hashes.
  • Date: 2023
  • Domain: rhinestones.com
  • Country: United States
  • Category: E-commerce & Retail
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Site Activity Company Information
  • Records: 8,081
  • Lines: 4,167,310
  • Size: 547.27 MB
  • Passwords: MD5 Salted
  • Cracked: 0%
Sometime before 2021, Red Bank Hair Loss Center (redbankhairlosscenter.com) allegedly suffered a data breach. Red Bank Hair Loss Center is a hair loss and hair restoration clinic based in Red Bank, New Jersey, United States. Reports suggest that a database from the clinic's WordPress website was exposed, affecting approximately 5 individuals. The exposed data allegedly included email addresses, usernames, PHPass-hashed passwords, phone numbers, genders, and website contact-form submissions.
  • Data: Email Addresses Passwords Phone Numbers Geographic Locations Usernames Genders Site Activity Websites
  • Records: 5
  • Lines: 1,601
  • Size: 2.11 MB
  • Passwords: PHPass
  • Cracked: 0%
Sometime before 2022, the QBrand auto-parts point-of-sale and e-catalog platform (qbrand.com) allegedly suffered a data breach affecting a deployment used by a US auto-parts and salvage business. Reports suggest approximately 93,000 records were exposed, covering roughly 30,000 businesses and around 9,700 email addresses. The exposed data allegedly included email addresses, names, usernames, plaintext passwords, phone numbers, geographic locations, company information, birthdates, partial credit card information, and IP addresses.
  • Date: 2022
  • Domain: qbrand.com
  • Country: United States
  • Category: Automotive
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Credit Card Information IP Addresses Company Information Birthdates
  • Records: 93,401
  • Lines: 1,195,837
  • Size: 210.47 MB
  • Passwords: Plaintext

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.