Breach Intelligence

2,841

Total breached databases

In 2024, BlueSoleil.com, a Bluetooth software provider, experienced a data breach carried out by an attacker known as "alkoholic." The breach exposed approximately 463,786 records, including IDs, usernames, email addresses, hashed passwords, and other user-related data. The leaked information spans from 2009 to 2024, reflecting user data collected over the years.
  • Date: Aug 9, 2024
  • Domain: bluesoleil.com
  • Threat Actor: alkoholic
  • Category: Technology
  • Records Announced: 463,786
  • Data: Email Addresses Passwords Usernames
  • Imported:
  • Passwords: Unknown
In July 2022, the Newsletter for the crypto mining company known as Coinmine suffered a data breach. The breach included Email addresses, Phone numbers, Full names and Physical addresses. In total, 7.6k users were affected.
  • Data: Email Addresses Names Phone Numbers Physical Locations
  • Imported:
  • Passwords: No
In August 2023, CERT Poland observed a phishing campaign that collected credentials from 68,000 victims. The campaign collected email addresses and passwords via a phishing email masquerading as a purchase order confirmation.
  • Date: Feb 25, 2023
  • Category: Hacking
  • Records Announced: 67,943
  • Source: haveibeenpwned.com
  • Data: Email Addresses Passwords
  • Imported:
  • Passwords: Unknown
Sometime in 2019, Tibia.net.pl, a platform related to the online game Tibia, experienced a data breach exposing approximately 440,292 records. Among the compromised data were email addresses and hashed passwords.
  • Data: Email Addresses Passwords
  • Imported:
  • Passwords: Unknown

Details about the Rat-club.is 2016 data breach are currently limited. This entry was added to our database to help raise awareness, and we will update this page with more information as it becomes available. You will be able to check if your data appears in this breach once it is fully imported. Meanwhile, you can see if your data appears in other breaches.

  • Data: The exact data fields compromised in the Rat-club.is 2016 breach are still under review. Updates will be published when confirmed.
  • Imported:
  • Number of lines: 5,586
  • Size: 96.76 MB
  • Passwords: ?
In September 2019, the forum for discussing "lolcows" (people who can be milked for laughs) Kiwi Farms suffered a data breach. The disclosure notice advised that email and IP addresses, dates of birth and content created by members were all exposed in the incident.
  • Data: Birthdates Email Addresses IP Addresses Profile Photos Site Activity
  • Imported:
  • Number of lines: 18,120,497
  • Size: 491.64 MB
  • Passwords: No
In April 2022, the UK based website for buying and selling soccer tickets Fanpass suffered a data breach which exposed 112k customer records. Impacted data includes names, phone numbers, physical addresses, purchase histories and salted password hashes.
  • Data: Birthdates Email Addresses Genders Names Order Information Passwords Phone Numbers Physical Locations Social Profiles
  • Imported:
  • Passwords: Hashed Salted
  • Cracked: 0%

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.