Breach Intelligence

6,875

Total breached databases

In April 2019, the the public record search services Instant Checkmate & TruthFinder (Owned by PeopleConnect) suffered a data breach that impacted 20.2 million users. The attack led to the exposure of data including Email addresses, Full names, Phone numbers and Passwords stored as scrypt hashes (possibly).
  • Data: Email Addresses Names Passwords Phone Numbers
  • Records: 20,221,002
  • Lines: 20,221,006
  • Size: 7.1 GB
  • Passwords: sCrypt
  • Cracked: 0%
In 2021, a dataset titled the “USA Credit and Debit Database” surfaced online, reportedly containing approximately 33 million records. While not linked to any confirmed data breach from a specific organization, the dataset appears to be a compiled marketing or lead-generation list. Among the exposed data were names, email addresses, phone numbers, opt-in dates, mobile operators, and source websites. No passwords or financial account details were included in the dataset.
  • Date: 2021
  • Country: United States
  • Category: Data Brokers
  • Data: Email Addresses Names Phone Numbers Telecom Providers
  • Records: 33,986,000
  • Lines: 33,999,997
  • Size: 3.29 GB
  • Passwords: No
In June 2020, the restaurant solutions provider OrderSnapp suffered a data breach which exposed 1.3M unique email addresses. Impacted data also included names, phone numbers, dates of birth and passwords stored as bcrypt hashes.
  • Data: Birthdates Email Addresses Names Passwords Phone Numbers
  • Records: 1,304,420
  • Lines: 1,304,475
  • Size: 285.66 MB
  • Passwords: BCrypt
  • Cracked: 45%
In 2023, Paysign, a nationally recognized card payment solutions provider and integrated payment processor, suffered a data breach. Credit to user 'doubl' for acquiring the breached data. The breach compromised full names of customers, addresses, dates of birth, phone numbers, and account balances.
  • Date: 2024
  • Domain: paysign.com
  • Threat Actor: doubl
  • Country: United States
  • Category: Finance & Payments
  • Data: Email Addresses Names Phone Numbers Physical Locations Balances Birthdates
  • Records: 1,242,575
  • Lines: 1,242,575
  • Size: 983.81 MB
  • Passwords: No
In June 2020, the interior design website Havenly suffered a data breach which impacted almost 1.4 million members of the service. The exposed data included email addresses, names, phone numbers, geographic locations and passwords stored as SHA-1 hashes, all of which was subsequently shared extensively throughout online hacking communities.
  • Data: Email Addresses Geographic Locations Names Passwords Phone Numbers
  • Records: 1,363,241
  • Lines: 1,363,341
  • Size: 574.38 MB
  • Passwords: SHA-1
  • Cracked: 3%
In February 2019, the email address validation service verifications.io suffered a data breach. Discovered by Bob Diachenko and Vinny Troia, the breach was due to the data being stored in a MongoDB instance left publicly facing without a password and resulted in 763 million unique email addresses being exposed. Many records within the data also included additional personal attributes such as names, phone numbers, IP addresses, dates of birth and genders. No passwords were included in the data. The Verifications.io website went offline during the disclosure process, although an archived copy remains viewable.
  • Data: Birthdates Company Information Email Addresses Genders Geographic Locations IP Addresses Job Information Names Phone Numbers Physical Locations
  • Records: 808,536,946
  • Lines: 808,539,849
  • Size: 159.51 GB
  • Passwords: No
Sometime in 2022, a data breach exposed the personal information of approximately 1.15 million individuals in the United States. The leaked dataset, reportedly in CSV format with a size of 333.97 MB, included a total of 1,150,451 rows of data. Among the compromised information were names, birthdates, email addresses, phone numbers, physical locations, IP addresses, and driving license numbers.
  • Date: 2022
  • Country: United States
  • Category: Automotive
  • Data: Birthdates Driving License Numbers Email Addresses IP Addresses Names Phone Numbers Physical Locations
  • Records: 1,150,450
  • Lines: 1,150,451
  • Size: 333.97 MB
  • Passwords: No

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.