Breach Intelligence

3,356

Total breached databases

Sometime before 2022, the Chilean telecommunications provider CMET (cmet.net) allegedly suffered a data breach. CMET is a regional Chilean operator offering fixed telephony, internet, and cable television services. It has been reported that the exposed database contained approximately 100 individuals, including email addresses, usernames, names, national identification numbers (RUT), and hashed passwords (MD5 and PHPass).
  • Date: 2022
  • Domain: cmet.net
  • Country: Chile
  • Category: Telecommunications
  • Data: Email Addresses Passwords Names Usernames Government IDs
  • Records: 161
  • Lines: 2,083,382
  • Size: 50.92 MB
  • Passwords: MD5, PHPass
  • Cracked: 0%
Sometime before 2023, the customer portal of Latosec (cloudportal.latosec.com), an Italian IT and cloud-hosting provider, allegedly suffered a data breach. Reports suggest the exposed database held the portal's customer logins alongside a small number of staff accounts. It has been reported that approximately 130 records were affected, including email addresses, usernames, names, geographic coordinates and bcrypt-hashed passwords.
  • Data: Email Addresses Passwords Names Geographic Locations Usernames
  • Records: 133
  • Lines: 1,604
  • Size: 126.55 KB
  • Passwords: BCrypt
  • Cracked: 0%
Sometime before February 2023, the Indian web development and hosting company TechOreo (Oreo Technologies Private Limited) allegedly suffered a data breach affecting an online store hosted on its cloud platform. Reports suggest approximately 60 records were exposed, including email addresses, names, phone numbers, physical addresses, order details and bcrypt-hashed administrator passwords.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Order Information
  • Records: 62
  • Lines: 18,927
  • Size: 1.02 MB
  • Passwords: BCrypt
  • Cracked: 0%
Sometime before 2022, Corporación CLEO (cleo.com.co), a Colombian non-profit organization running social development and educational programs, allegedly suffered a data breach. Reports suggest the exposed data included account records for approximately 100 individuals, containing email addresses, names, usernames and bcrypt-hashed passwords.
  • Date: 2022
  • Domain: cleo.com.co
  • Country: Colombia
  • Category: Non-Profit & Charities
  • Data: Email Addresses Names Usernames
  • Records: 116
  • Lines: 12,340
  • Size: 1023.48 KB
  • Passwords: BCrypt
  • Cracked: 0%
Sometime in or before 2019, the website of CIM Douro (Comunidade Intermunicipal do Douro), a Portuguese inter-municipal community for the Douro region of northern Portugal, allegedly suffered a data breach. Reports suggest the exposed WordPress database contained roughly 1 account record, including an email address, a username, and a BCrypt-hashed password.
  • Date: 2019
  • Domain: cimdouro.pt
  • Country: Portugal
  • Category: Government
  • Data: Email Addresses Passwords Usernames
  • Records: 1
  • Lines: 697
  • Size: 163.44 KB
  • Passwords: BCrypt
  • Cracked: 0%
Sometime before 2022, cetic.dz — the data-processing system behind Algeria's public housing promotion program (LPP) run by ENPI under the Ministry of Housing, Urbanism and the City (MHUV) — allegedly suffered a data breach. Reports suggest the exposed dataset covered approximately 400,000 housing applicants. The compromised data included full names, email addresses, phone numbers, dates and places of birth, genders, marital and family details, residential addresses, and plaintext passwords.
  • Date: 2022
  • Domain: cetic.dz
  • Country: Algeria
  • Category: Government
  • Data: Email Addresses Names Phone Numbers Physical Locations Family Members Marital Statuses Relationship Statuses Genders Birthdates Places of Birth
  • Records: 1,163,454
  • Lines: 1,627,950
  • Size: 528.41 MB
  • Passwords: Plaintext
Sometime before 2022, the Slovak student-challenge and recruitment platform Challengest (challengest.com) allegedly suffered a data breach. Challengest was an online platform founded in 2012 in Bratislava that connected university students with companies through skill challenges and a CV/recruitment service. Reports suggest data on approximately 18,000 individuals was exposed, including email addresses, names, usernames, phone numbers, IP addresses, birth dates, genders, geographic locations, company information and passwords stored as bcrypt and phpass hashes.
  • Data: Email Addresses Passwords Names Phone Numbers Geographic Locations Usernames Genders IP Addresses Site Activity Websites Job Information Company Information Birthdates
  • Records: 38,965
  • Lines: 12,928,855
  • Size: 1.46 GB
  • Passwords: BCrypt, PHPass
  • Cracked: 0%

Frequently Asked Questions

A data breach is unauthorized access to data (often involving account takeover, malware, or misconfigured infrastructure). A data leak is exposure of data due to mistakes like public cloud storage, open databases, or accidental publishing. A database dump is a packaged dataset that may come from a breach, leak, scraping, or aggregation.

Change passwords for any affected accounts immediately, prioritizing email, banking, and any account that shares the same password. Enable multi-factor authentication wherever possible. Monitor your accounts for suspicious activity and consider placing a fraud alert or credit freeze if financial data was exposed.

Start with containment and verification: confirm what data was exposed, identify the entry point, rotate credentials (especially SSO, VPN, email), and enforce MFA. Then investigate affected systems, notify stakeholders as required, and harden controls to prevent recurrence. A structured incident response plan helps keep the work measurable and compliant.

Dark web monitoring helps you spot exposure signals early — before stolen data is widely reused for account takeover or targeted attacks. Monitoring complements vulnerability management by revealing when attackers already have leverage. Pair it with continuous attack surface monitoring and strong Asset Discovery to reduce blind spots.

Not always. Some datasets are old, incomplete, or derived from third parties. However, any exposure increases risk because credentials and personal data can be reused indefinitely. Treat it as a priority signal: rotate credentials, enforce MFA, review suspicious logins, and audit the systems that could have produced the data.

SynScan helps you connect the dots between attack surface exposure, vulnerabilities, and breach signals so you can prioritize remediation and reduce the chance of repeat incidents.