Breach Intelligence

6,236

Total breached databases

In May 2024, French residential solar-panel installer France Solar (france-solar.fr) allegedly suffered a data breach. Reports suggest a full export of the company's CRM was exposed, affecting approximately 37,000 customers and prospects. The exposed data allegedly included email addresses, full names, phone numbers, postal addresses, birthdates, family details, genders, and order and payment information, along with bcrypt-hashed passwords for staff accounts.
  • Date: May 14, 2024
  • Domain: france-solar.fr
  • Country: France
  • Category: Professional & Corporate
  • Data: Email Addresses Passwords Names Phone Numbers Physical Locations Geographic Locations Payment Information Family Members Genders Tax IDs Company Information Birthdates
  • Records: 79,029
  • Lines: 270,210
  • Size: 28.19 MB
  • Passwords: BCrypt
  • Cracked: 0%
In 2015, the Skype resolver website ResolveThem.com allegedly suffered a data breach. Reports suggest the site, which was used to look up the IP addresses behind Skype accounts, was compromised, exposing approximately 1.2 million records. The exposed data included usernames, IP addresses, and a smaller number of email addresses and linked social media handles.
  • Data: Email Addresses Usernames IP Addresses Social Profiles
  • Records: 1,277,919
  • Lines: 1,277,923
  • Size: 49.59 MB
  • Passwords: No
In August 2026, the French agricultural-equipment dealer Duvignau (duvignau40.fr) allegedly suffered a data breach through its BLG Cloud CRM/mail platform. Reports suggest that a threat actor exported the company's customer relationship database and released it publicly. It has been reported that approximately 13,000 CRM contact records were exposed, including email addresses, names, phone numbers, geographic locations, genders and company information.
  • Date: Aug 2026
  • Domain: duvignau40.fr
  • Threat Actor: ChimeraZ
  • Country: France
  • Category: E-commerce & Retail
  • Data: Email Addresses Names Phone Numbers Geographic Locations Genders Company Information
  • Records: 13,462
  • Lines: 988,804
  • Size: 27.5 MB
  • Passwords: No
Sometime before 2026, Remita (remita.net) allegedly suffered a data breach. Reports suggest Remita is a Nigerian electronic payment and collection platform operated by SystemSpecs. It has been reported that approximately 35,000 records were exposed, including email addresses and hashed (bcrypt) passwords, alongside claims of bank account information, government IDs, passports and cookies from a broader compromise.
  • Date: 2026
  • Domain: remita.net
  • Threat Actor: ByteToBreach
  • Country: Nigeria
  • Category: Finance & Payments
  • Data: Email Addresses Passwords Bank Account Information Government IDs Passports Cookies
  • Records: 35,818
  • Lines: 35,824
  • Size: 4.24 MB
  • Passwords: BCrypt, Hashed
  • Cracked: 0%
In August 2025, the website Synergy Institute (synergyinstitute.net) allegedly suffered a data breach. It has been reported that the incident exposed a small user database of approximately 76 records. The compromised data reportedly included email addresses, usernames, full names, and plaintext passwords.
  • Date: Aug 16, 2025
  • Domain: synergyinstitute.net
  • Threat Actor: Darkness./x404
  • Country: India
  • Category: Education
  • Data: Email Addresses Passwords Names Usernames
  • Records: 76
  • Lines: 304
  • Size: 7.86 KB
  • Passwords: Plaintext
In January 2026, the internet radio network BBS Radio (bbsradio.com) allegedly suffered a data breach. It has been reported that a user index from the site was published on a hacking forum. Reports suggest approximately 2,500 records were exposed, including email addresses and usernames. No passwords were included in the exposed data.
  • Date: Jan 2026
  • Domain: bbsradio.com
  • Threat Actor: @888
  • Category: News & Media
  • Data: Email Addresses Usernames
  • Records: 2,079
  • Lines: 75,627
  • Size: 179.15 MB
  • Passwords: No
In August 2026, Baxter International, Inc. (baxter.com) allegedly suffered a data breach. Baxter International is a multinational healthcare and medical-device company. Reports suggest the threat actor exfiltrated data from the company's Salesforce environment and issued an extortion demand. It has been reported that data belonging to approximately 490,000 individuals was exposed, including email addresses, names, phone numbers, geographic locations, usernames, job and company information, and site activity records.
  • Data: Email Addresses Names Phone Numbers Geographic Locations Usernames Site Activity Job Information Company Information
  • Records: 1,703,296
  • Lines: 37,624,990
  • Size: 4.7 GB
  • Passwords: No

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.