Breach Intelligence

3,356

Total breached databases

In April 2023, the digital library of Universitas Hamzanwadi (digilib.hamzanwadi.ac.id), a private university in Selong, Lombok, Indonesia, allegedly suffered a data breach. Reports suggest the exposed data originated from the institution's SLiMS-based library management system. Approximately 6,000 member and staff records were reportedly affected, including names, usernames, genders, birthdates, phone numbers, physical addresses, academic affiliations, IP addresses, and bcrypt-hashed passwords.
  • Data: Passwords Names Phone Numbers Geographic Locations Usernames Genders IP Addresses Site Activity Birthdates Education
  • Records: 6,090
  • Lines: 287,474
  • Size: 104.86 MB
  • Passwords: BCrypt
  • Cracked: 0%
In March 2023, the Mexican staffing and recruitment platform Canna (operated by Grupo AYP) allegedly suffered a data breach. Reports suggest the platform, which manages job candidates and field promoters for retail clients across Mexico, had a backend database exposed. It has been reported that approximately 14 thousand individuals were affected. The exposed data allegedly included email addresses, usernames, full names, bcrypt-hashed passwords, government identifiers (CURP), social security numbers (NSS), dates of birth, phone numbers, and physical addresses.
  • Date: Mar 27, 2023
  • Domain: devback.canna.lat
  • Country: Mexico
  • Category: Professional & Corporate
  • Data: Email Addresses Passwords Names Phone Numbers Physical Locations Geographic Locations Usernames Government IDs Social Security Numbers Birthdates
  • Records: 14,019
  • Lines: 882,001
  • Size: 139.13 MB
  • Passwords: BCrypt
  • Cracked: 0%
Sometime before mid-2022, the personal website and blog devdm.com allegedly suffered a data breach. It has been reported that the exposed WordPress database contained approximately 1,200 individuals, primarily comment authors and contact-form submitters, along with a small number of registered accounts. Reports suggest the compromised data included email addresses, usernames, names, websites, and hashed passwords (phpass, SHA-1, and salted SHA-256).
  • Data: Email Addresses Names Usernames Websites
  • Records: 2,834
  • Lines: 134,903
  • Size: 31.41 MB
  • Passwords: PHPass, SHA-1, SHA-256 Salted
  • Cracked: 0%
Sometime before 2022, the WordPress installation of Devidiotz (devidiotz.com), a software, website, and application development agency, allegedly suffered a data breach. Reports suggest fewer than 20 records were exposed, including email addresses, usernames, and passwords stored as PHPass hashes.
  • Data: Email Addresses Passwords Names Usernames Websites
  • Records: 11
  • Lines: 1,907
  • Size: 1.07 MB
  • Passwords: PHPass
  • Cracked: 0%
Sometime before 2021, dev2ezasia.com, a development/staging server operated by the Singapore web design and development agency 2ezasia (2EZ Asia Pte. Ltd.), allegedly suffered a data breach. Reports suggest the exposed database, which mixed genuine customer and administrator accounts with demo and test records, contained approximately 90 individuals' details, including email addresses, names, phone numbers and passwords stored as bcrypt hashes.
  • Data: Email Addresses Passwords Names Phone Numbers
  • Records: 186
  • Lines: 4,390
  • Size: 494.58 KB
  • Passwords: BCrypt
  • Cracked: 0%
Sometime before 2022, the Piarista Vitorlázó Egyesület (Piarist Sailing Association), a Hungarian organization running summer sailing camps at Lake Balaton for schoolchildren, allegedly suffered a data breach of its website. Reports suggest that a development instance of the site was exposed, affecting approximately 1,000 individuals. The compromised data included email addresses, names, usernames, SHA-1 hashed passwords, social security (TAJ) numbers, birth dates, places of birth, home addresses, phone numbers, and health information such as allergies, with much of the exposed data relating to minors.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Social Security Numbers Health Information Birthdates Places of Birth
  • Records: 2,142
  • Lines: 6,061
  • Size: 958.4 KB
  • Passwords: SHA-1
  • Cracked: 0%
Sometime before June 2022, the French online bearings retailer Nice Roulements Magnan (niceroulements-magnan.com) allegedly had a development/staging database exposed. Reports suggest a small set of records, corresponding to roughly a handful of individuals, was affected, including email addresses, names, phone numbers, physical addresses, birthdates, genders, and passwords stored as bcrypt and MD5 hashes.
  • Data: Email Addresses Names Phone Numbers Physical Locations Genders Birthdates
  • Records: 23
  • Lines: 78,315
  • Size: 4.88 MB
  • Passwords: BCrypt, MD5
  • Cracked: 0%

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.