BaseLeak
453 subscribers
37 photos
49 links
Download Telegram
In November 2016, the website lupaworld.com which is a chinese open source community website about technology was breached and 523k user accounts

Compromised data: Email addresses, IP addresses, Passwords, Usernames

😀
😈
In November 2016, the website lupaworld.com which is a chinese open source community website about technology was breached and 523k user accounts were breached.In 2024 this leak was reposted by @dodococks on BreachForums.

Compromised data: Email addresses, IP addresses, Passwords, Usernames
πŸ‘Ύ
😈
On August 30 of 2023, Freecycle, a nonprofit organization operating in the United States and the United Kingdom, detected the data breach and promptly alerted affected users. In the notification, Freecycle confirmed that the exposed data included email addresses, md5 hashed passwords, usernames, and User IDs. However, they reassured users that no further personal information had been compromised and data breach has affected more than 7 million subscribers globally.In 2024, part of the data, which included 2.5 million users, was published on BreachForums by user @Moonshine. Please note that this is partial data, if you have complete data and you want to post it on the forum, then create a thread or contact @Addka72424 via pm.

Compromised data: Email addresses, Passwords, Usernames

πŸ‘Ώ
😈

In April 2024, a threat actor named 'Perell', previously linked to an alleged 2023 data breach at Bharat Sanchar Nigam Limited (BSNL), released a database purportedly containing 2.9 million BSNL records on the dark web. This data was originally part of an extortion scheme announced by Perell in December 2023 on BreachForums, despite BSNL not confirming a breach at the time.

Compromised data: Email addresses, Names, Phone numbers, Physical addresses, Purchases

πŸ‘Ώ
😈

n 2024, over 5.360.157 records from Ecuador citizen database was scrapped by @ctf and posted on BreachForums. The leak contains persons dates of birth, family members' names, genders, government issued IDs (NUI numbers), marital statuses, names, nationalities, physical addresses and spouses names.Note:This is a partial leak, if you have a more complete version and you want to provide it, then contact @Addka72424 via pm or create a thread with a leak.

Compromised data: Dates of birth, Family members' names, Genders, Government issued IDs, Marital statuses, Names, Nationalities, Physical addresses, Spouses names


😈
😈

Account balances, Dates of birth, Email addresses, Job titles, Names, Partial credit card data, Phone numbers

Compromised data: In October 2023, the Truist Bank, a leading U.S. commercial bank were breached in an cyberattack and in June 2024, the data was published on BreachForums by @ShinyHunters .The exposed data included over 79k employees unique emails (Work emails) and account balances, dates of birth, job titles, names, partial credit card data and phone numbers.The @ShinyHunters themselves commented about this leak - "There is nothing less true than the promises of CrowdShart and in the case of truist the truest words to be said on this subject are when #l0ckb1tch3z! troops taking point on zscaler its #G4M30V3R for them."

πŸ‘Ώ
😈

In September 2023, the cloud gaming provider Shadow suffered a data breach that exposed over half a million customer records. The data included email and physical addresses, names and dates of birth. The data was breached by the BreachForums user @anonyme1456 .

Compromised data: Dates of birth, Email addresses, Names, Physical addresses

πŸ‘Ώ
😈
In December 2020, Guy4Game - the virtual goods trading service suffered a data breach that contained over 226k user. The breach exposed data including over 227k unique email addresses, names, usernames and unknown hashtype hashed passwords. In 2024 this leak was reposted on BreachForums by @Seacoat .

Compromised data: Email addresses, Names, Passwords, Usernames


πŸ‘Ώ
😈
In June 2024, a data brach sourced from French fashion brand Zadig & Voltaire was publicly posted to a popular hacking forum. The data included names, email and physical addresses, phone numbers and genders. When contacted about the incident, Zadig & Voltaire advised the incident had occurred more than 6 months ago and that "all measures were taken quickly".

Compromised data: Email addresses, Genders, Names, Phone numbers, Physical addresses

πŸ‘Ώ
πŸ‘Ί

In May 2024, the conservative news website The Post Millennial suffered a data breach. The breach resulted in the defacement of the website and links posted to 3 different corpuses of data including hundreds of writers and editors (IP, physical address and email exposed), tens of thousands of subscribers to the site (name, email, username, phone and plain text password exposed), and tens of millions of email addresses from thousands of mailing lists alleged to have been used by The Post Millennial (this has not been independently verified). The mailing lists appear to be sourced from various campaigns not necessarily run by The Post Millennial and contain a variety of different personal attributes including name, phone and physical address (depending on the campaign). The data was subsequently posted to a popular hacking forum and extensively torrented.

Compromised data: Email addresses, Genders, IP addresses, Names, Passwords, Phone numbers, Physical addresses, Usernames


πŸ‘Ί
😈

Approximately in February 2024, French e-commerce website LDLC was breached by @anonyme1456, which publicly posted this on BreachForums.The breach exposed data including over 1.5 million data contains over 1.4 million unique email addresses, genders, names, phone numbers and physical addresses.

Compromised data: Email addresses, Genders, Names, Phone numbers, Physical addresses, Website activity

The .7z File's MD5 Hash is C8F089FF85F33C07C0334862D5211CD4. In total, there are 1467144 records. The file is 692.05MB uncompressed and 70.62MB compressed.

πŸ‘Ώ
😈

Approximately in June 2024, French French Sports Store Sport2000 (https://www.sport2000.fr/) was breached by @anonyme1456, which publicly posted this on BreachForums. The breach exposed data including over 4.3 million data contains over 3.2 million unique email addresses, account balances, dates of birth, names, phone numbers and physical addresses.

Compromised data: Account balances, Dates of birth, Email addresses, Names, Phone numbers, Physical addresses, Website activity

The .7z File's MD5 Hash is F3B5A5F2043516FB52AB956552A0AF06. In total, there are 3217146 records. The file is 1.12GB uncompressed and 196.61MB compressed.

😈
πŸ‘Ί
In April 2024, 2.1M email addresses from the online health products store Piping Rock were publicly posted to a popular hacking forum. The data also included names, phone numbers and physical addresses. The account posting the data had previously posted multiple other data breaches which all appear to have been obtained from the Shopify service used by the respective websites.

Compromised data: Email addresses, Names, Phone numbers, Physical addresses, Website activity
πŸ‘Ί
πŸ‘Ί
In April 2024, the Spanish company providing various household services Expandia (Expandia.com.es) was breached and publicly leaked data over 3 million clients. The breach includes over 303k unique email addresses, names, phone numbers and physical addresses.The data was breached by @opkoke

Compromised data: Email addresses, Names, Phone numbers, Physical addresses
πŸ‘Ί
πŸ‘Ί
Approximately in June 2024, Los Angeles Unified School District suffered a data breach that exposed over.The breach exposed data including over 24 million data contains over 2 million unique email addresses and also contains students, parents and staff members ages, dates of birth, education levels, ethnicities, family members' names, family structure, genders, government issued IDs (SSN's), home ownership statuses, income levels, job titles, names, net worths, phone numbers, physical addresses, school grades (class levels), spoken languages and usernames.The leak also included various social statuses of students, such as poverty, homelessness, migrant status, etc. The data was breached and leaked on BreachForums by @Satanic .

Compromised data: Ages, Dates of birth, Education levels, Email addresses, Ethnicities, Family members' names, Genders, Government issued IDs, Home ownership statuses, Income levels, Job titles, Marital statuses, Names, Net worths, Phone numbers, Physical addresses, School grades (class levels), Spoken languages, Usernames

πŸ‘Ί
πŸ‘Ί
In October 2023, the Chinese adult forum known as Haijiao.com was hacked and over 4.8 million users were exposed publicly.It was posted by @lxstcxntury and includes over 4.8 milliom unique email addresses, account balances, IP addresses, phone numbers, usernames and bcrypt passwords.

Compromised data: Account balances, Email addresses, IP addresses, Passwords, Phone numbers, Usernames, Website activity
πŸ‘Ί
πŸ‘Ί
Vertafore announced that information of 27.7 million Texas drivers has been accidentally exposed due to a human error in March 2020. The company disclosed this security breach this week, data was stored on an unsecured external storage service and they were accessed by an external party.β€œThe files, which included driver information for licenses issued before February 2019, contained Texas driver license numbers, as well as names, dates of birth, addresses and vehicle registration histories. They did not contain any Social Security numbers or financial account information. No information misuse has been identified.”

Compromised data: Dates of birth, Driver's licenses, Physical addresses, Vehicle details
πŸ‘Ί
😈
In May 2024, the American luxury retailer Neiman Marcus suffered a data breach which was later posted to a popular hacking forum. The data included 31M unique email addresses, names, phone numbers, dates of birth, physical addresses and partial credit card data (note: this is insufficient to make purchases). The breach was traced back to a series of attacks against the Snowflake cloud service which impacted 165 organisations worldwide.

I would like to warn users this leak is over 86.11GB uncompressed and 9.35GB compressed.

Compromised data: Dates of birth, Email addresses, IP addresses, Names, Partial credit card data, Phone numbers, Physical addresses, Purchases
πŸ‘Ώ
😈
In April 2024, a substantial volume of data was taken from the Bangladeshi IT services provider Tappware and published to a popular hacking forum. Comprising of 95k unique email addresses, the data also included extensive labour information on local citizens including names, physical addresses, job titles, dates of birth, genders and scans of government issued national identity (NID) cards.

Compromised data: Dates of birth, Email addresses, Genders, Government issued IDs, Job titles, Names, Phone numbers, Physical addresses, Religions

πŸ‘Ώ
😈
In March 2023, DC Health Link discovered a data breach that was later publicly posted to a popular data breach forum. The impacted data included 48k unique email addresses alongside names, genders, dates of birth, home addresses, phone numbers and social security numbers. The data was provided to HIBP by a source who requested it be attributed to @Aegis and @IntelBroker

Compromised data: Citizenship statuses, Dates of birth, Email addresses, Employers, Ethnicities, Genders, Names, Phone numbers, Physical addresses, Purchases, Social security numbers
πŸ‘Ώ
😈

In December 2018, the photo sharing social network Fotolog suffered a data breach that exposed 16.7 million unique email addresses. The data also included usernames and unsalted SHA-256 password hashes. The site was dissolved the following year and repurposed as a news website based in Brcko, Bosnia and Herzegovina.

Compromised data: Email addresses, Passwords, Usernames
πŸ‘Ώ