Breach Intelligence

2,855

Total breached databases

In April 2016, customer data obtained from the streaming app known as "17" appeared listed for sale on a Tor hidden service marketplace. The data contained over 4 million unique email addresses along with IP addresses, usernames and passwords stored as unsalted MD5 hashes.
  • Data: Device Information Email Addresses IP Addresses Passwords Usernames
  • Imported:
  • Records Imported: 28,052,321
  • Number of lines: 28,052,322
  • Size: 1.95 GB
  • Passwords: MD5
  • Cracked: 57%
In approximately January 2020, the Customer engagement tool owned by Joseph Garcia RocketText suffered a data breach. The breach included Email addresses, Home addresses, IP addresses, Genders, Ethnicities and Phone numbers (Including the Carrier of said Number). In total, 32 million entries were affected. Rocket Text now does it's business under "LaunchSMS", and was also previously known as ApexSMS.
  • Data: Email Addresses Ethnicities Genders IP Addresses Phone Numbers Physical Locations Telecom Providers
  • Imported:
  • Records Imported: 32,144,645
  • Number of lines: 32,146,271
  • Size: 27.79 GB
  • Passwords: No
In August 2021, 38 million records from Indian e-commerce company IndiaMART were found being traded on a popular hacking forum. Dated several months earlier, the data included over 20 million unique email addresses alongside names, phone numbers and physical addresses. It's unclear whether IndiaMART intentionally exposed the data attributes as part of the intended design of the platform or whether the data was obtained by exploiting a vulnerability in the service.
  • Data: Email Addresses Names Phone Numbers Physical Locations
  • Imported:
  • Records Imported: 41,050,079
  • Number of lines: 41,050,139
  • Size: 8.17 GB
  • Passwords: No
In approximately July 2022, the porn website Peep My Porn suffered a data breach. The breach included Usernames, Email addresses and Passwords stored as SHA-1 hashes. In total, 261k users were affected. The website was breached by @impierator.
  • Data: Email Addresses Passwords Usernames
  • Imported:
  • Records Imported: 261,385
  • Number of lines: 261,444
  • Size: 20.95 MB
  • Passwords: SHA-1
  • Cracked: 0%
In approximately September 2022, the Advertising website Avito.ma suffered a data breach that impacted 2.7 million users. The breach led to the exposure of data including Full names, Email addresses, Phone numbers, Regions and IP Addresses. The website was breached via the Admin panel and was breached by @doubl.
  • Data: Email Addresses Geographic Locations IP Addresses Names Phone Numbers
  • Imported:
  • Records Imported: 2,728,091
  • Number of lines: 2,728,092
  • Size: 330.81 MB
  • Passwords: No
In 2015, Wildberries.ru, a popular Russian e-commerce platform, experienced a security breach. The incident reportedly exposed 1,046,581 records, totaling 135.57 MB of data. Among the compromised information were email addresses and phone numbers.
  • Date: 2015
  • Domain: wildberries.ru
  • Country: Russia
  • Category: E-commerce & Retail
  • Data: Email Addresses Phone Numbers
  • Imported:
  • Records Imported: 1,046,578
  • Number of lines: 1,046,581
  • Size: 135.57 MB
  • Passwords: No
Sometime in 2022, a data breach exposed the personal information of approximately 1.15 million individuals in the United States. The leaked dataset, reportedly in CSV format with a size of 333.97 MB, included a total of 1,150,451 rows of data. Among the compromised information were names, birthdates, email addresses, phone numbers, physical locations, IP addresses, and driving license numbers.
  • Date: 2022
  • Country: United States
  • Category: Automotive
  • Records Announced: 1,150,000
  • Data: Birthdates Driving License Numbers Email Addresses IP Addresses Names Phone Numbers Physical Locations
  • Imported:
  • Records Imported: 1,150,450
  • Number of lines: 1,150,451
  • Size: 333.97 MB
  • Passwords: No

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.