Breach Group intelligence
Database world roc
ActiveTrack Database world roc with 13866 published victims in a single intelligence view.
Overview
Database world roc is tracked by Dark Eye as a breach group with 13866 published victims.
United States is currently the most targeted country in this dataset.
No leak location metadata is currently available for this group.
Leak Status Distribution
No leak-status data available yet.
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (0)
No known leak locations available for this group.
Top Activity Sectors
No sector intelligence available.
Victims (13866)
Search, filter and paginate the victim timeline for Database world roc. Showing 1001–1100 of 13866.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Breach | NPD_2024_2.7_BILLION.7z.007 id7df45cc6952e View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | NPD_2024_2.7_BILLION.7z.008 ide3c6b6dda749 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | NPD_2024_2.7_BILLION.7z.009 id45468ac8f99d View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | NPD_2024_2.7_BILLION.7z.010 idbde70d333da3 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | NPD_2024_2.7_BILLION.7z.011 id5354d2764290 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | NPD_2024_2.7_BILLION.7z.012 id18fd4f740082 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | NPD_2024_2.7_BILLION.7z.013 id9358b419456b View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | NPD_2024_2.7_BILLION.7z.014 id0705b87dd0b4 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | 332M Socradar (only emails).zip ida64b2b04759a View details | — | leaked | |||
|
A dataset scraped from socradar.io consisting solely of email addresses. The original file of 332,970,064 addresses was cleaned, deduplicated and reduced to 282,977,540 unique email addresses; it contains no other personal data fields |
||||||
| Breach | Giglio_BF.7z ida02b8b791cb2 View details | — | leaked | |||
|
In August 2025, over 1M unique email addresses appeared in a breach allegedly obtained from Italian fashion designer Giglio. The data also included names, phone numbers and physical addresses. Giglio did not respond to repeated attempts to disclose the incident. |
||||||
| Breach | chunk_743.csv id2cec6313bf45 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_741.csv id085078eb0ad0 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_740.csv id34e75df93b2a View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_754.csv id58703249e2e1 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_752.csv id063ea4b86f8f View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_750.csv iddb9f5afc96f6 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_751.csv idd09e3109f710 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_749.csv id3e5ba66757ca View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_75.csv id2afcfe700fba View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_748.csv idc096ce5e0c48 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_747.csv idd3228a643d95 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_746.csv id6c03f22eb45a View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_744.csv idfa31b8ed006b View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_742.csv ida5999b3f4b98 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | chunk_745.csv id0bc2811fdec4 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | Dubsmash @BreachedData.7z.001 id7bf12ea85db8 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | Dubsmash @BreachedData.7z.002 idb35c1e22b22f View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | Dubsmash @BreachedData.7z.003 idba4bcd60373b View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | Dubsmash @BreachedData.7z.004 id35863c700f91 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | Joyalukkas.7z id70022cedf524 View details | — | leaked | |||
|
https://www.joyalukkas.com/ae/ |
||||||
| Breach | BankSyariahIndonesia_BF.7z id0fdda2163c04 View details | Indonesia | — | leaked | ||
|
Bank Syariah Indonesia (BSI) a state-owned Islamic bank, was breached in 2023 by the LockBit 3.0 ransomware group after refusing to pay ransom, resulting in public exposure of over 7.4 million customer records. Leaked data included over 3.1 million unique email addresses, names, phone numbers and activation codes. |
||||||
| Breach | 1key.csv id7279c9e94524 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | allegromusique.fr.7z id2c07a26da6c5 View details | France | — | leaked | ||
|
An updated repost of a database attributed to allegromusique.fr, a French site. The poster states this version adds IBAN bank account details that were missing from a prior repost, implying the dataset includes customer/user financial identifiers alongside other existing fields. |
||||||
| Breach | fargo.zip id3f3feaa9ddb7 View details | — | leaked | |||
|
A 2024 leak attributed to Fargo, described as a leading logistics service provider in Uzbekistan serving merchants, banks, and e-commerce customers. The dataset, dated October 31, 2024, is said to contain about 980,000 rows covering senders and recipients, including names, multiple phone numbers, full addresses, email, and passport series/number details. |
||||||
| Breach | elber.com.ua_none.rar ide9629d8374ff View details | Ukraine | — | leaked | ||
|
anonfiles anonymous file upload leaking your files since 1980! KEEP IN MIND I HAVEN'T VERIFIED ANYTHING HERE YET! I was bored and crawled this shitty file hoster's indexed links, here is what i've found: Ubisoft.com(Forum): Parkmobile.US: AdultFriendFinder: Xfinity.com: Bitly.com: Aimware: Jobzone.co.il: Everycoin.io: onboarding.SberBank.kz: xHamster Partial: Avast.com Partial: Imgur 1.7M: Void.to: Canva Dehashed(500K): BestBlackhatForum: Elber.com.ua: Mineleaks: Chile GOV: Web-max.ca: Deshosting: Bitcoinnetwork: Shanghai CCP: Some random dumps. 24,113 records. |
||||||
| Breach | americannationwide.com_2018.11.rar id62fb1e1b3349 View details | — | leaked | |||
|
Database from American Nationwide Mortgage Company (americannationwide.com), a US mortgage lender. Around 1 million of a reported 37 million leaked mortgage-loan records (dated through November 2018) were made available, including name, address, phone, email (partial), gender, age, property purchase/build year, estimated property value, loan amount, issuing bank and loan type. |
||||||
| Breach | Ukraine Voter Database.rar id5a1f61ef9aa6 View details | Ukraine | — | leaked | ||
|
A voter database from Ukraine shared on a breach forum, reported by the poster to contain approximately 36 million records of voter information. |
||||||
| Breach | uos.net.zip idffe56591d66a View details | — | leaked | |||
|
uos.net.ua, apparently a Ukrainian internet service provider, had a customer database of about 5,000 users (200,000 total lines) dumped. Fields include login credentials, MAC addresses, IP addresses, physical addresses, account balance, connection status, and account passwords |
||||||
| Breach | horoshiy.com.ua.rar id7b68d270b9e7 View details | Ukraine | — | leaked | ||
|
A database attributed to horoshyi.com.ua, dated 10.05.2024, containing 1,205 rows |
||||||
| Breach | hackua.com_2009.05.rar id878bf1d206a4 View details | — | leaked | |||
|
HackUA.com's name suggests a Ukrainian hacking and security discussion forum. This entry is a leaked database attributed to the site, dated May 2009, with no further public details on scale or exposed data. |
||||||
| Breach | km.ru_2016.rar idfb14b594e135 View details | Russian Federation | — | leaked | ||
|
In February 2016, the Russian portal and email service KM.RU was the target of an attack which was consequently detailed on Reddit. Allegedly protesting "the foreign policy of Russia in regards to Ukraine", KM.RU was one of several Russian sites in the breach and impacted almost 1.5M accounts including sensitive personal information. |
||||||
| Breach | vberdyanske.net_2008.09.rar id0559ce8bd812 View details | — | leaked | |||
|
VBerdyanske.net appears to have been a regional community website, likely associated with the city of Berdyansk, Ukraine. This dataset, dated September 2008, is believed to be leaked member account data. |
||||||
| Breach | ERSTENGROUP.zip idf76bd48b24e1 View details | — | leaked | |||
|
A leak concerning Struktura, a stalkerware developer operating under the UK front company Ersten Group LTD, based in Ukraine. The leaked data covers customers/subscribers of a range of associated stalkerware and tracking products/brands, including phone and account tracking, hacking, and spyware services. |
||||||
| Breach | po001set.zip id91b7596cee79 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | visitevirtuelle.zip.001 id13819fc62cce View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | visitevirtuelle.zip.002 id59751cdad54f View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | visitevirtuelle.zip.003 id0706a19c3257 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | BNA_pdc_part_001.zip idf0206e700eb0 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | BNA_pdc_part_002.zip id2f89f2f2b2f3 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | BNA_pdc_part_003.zip id790af7dc6c36 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | BNA_pdc_2025_part_001.zip id15311cb35502 View details | — | leaked | |||
|
~ 2025 |
||||||
| Breach | BNA_pdc_2025_part_002.zip ida67fe54b660c View details | — | leaked | |||
|
~ 2025 |
||||||
| Breach | ohrana.ua_2019.11.24.rar id90d1140ed1c0 View details | Ukraine | — | leaked | ||
|
ohrana.ua is a Ukrainian website related to security or guard services ('okhrana' means security/guard in Russian/Ukrainian). This entry is a leaked customer database from the site, dated 2019. |
||||||
| Breach | novaposhta.com.ua_2016.rar idce4533f8615f View details | Ukraine | — | leaked | ||
|
A leak, originally attributed to the Russian hacker group XakNet, described as containing part of the 1C-format database of the Ukrainian payment service NovaPay (formerly Post Finance), linked to the Nova Poshta delivery company. It reportedly holds over 51,500 records of company employees' personal data, including full name, date of birth, DRFO code (tax ID/INN), gender, and email address |
||||||
| Breach | KomikoAI_BF.7z idffce3d1d5095 View details | — | leaked | |||
|
In February, the AI-powered comic generation platform KomikoAI suffered a data breach. The incident exposed 1M unique email addresses along with names, user posts and the AI prompts used to generate content. The exposed data enables the mapping of individual AI prompts to specific email addresses. |
||||||
| Breach | MairieVenoy-(www.mairie-venoy.fr).7z idda46cc74e60c View details | — | leaked | |||
|
Data from the Venoy town hall website ( in France, reportedly obtained via SQL injection on 31 January 2026. The leaked file is a small user-account database ("MairieVenoyUtilisateur"), containing about 92 records |
||||||
| Breach | TheSquaRE_BF.7z id95f78e2fb095 View details | — | leaked | |||
|
In June 2025, 107k unique customer email addresses were allegedly obtained from TheSqua.re, the "easiest way to find your next serviced apartment". The data also included names, phone numbers and cities which were subsequently posted to a popular hacking forum. TheSqua.re did not respond to repeated attempts to disclose the incident, however multiple impacted HIBP subscribers confirmed the legitimacy and accuracy of the data. |
||||||
| Breach | www.elledecor.com.csv id34b131bbf8b5 View details | — | leaked | |||
|
📁 Elledecor.com ┏• Date: 2026 ┣• Lines: 256k ┗• Size: 24 Mb 📄 Data: Name,Gender,Address,City,ZIP,Flag,Number,Gender Letter Code,Home Ownership SRC,Birth Year,Month,Day,Approximate Age,Household Income,Net Worth,Residence Type,Race Code,Racial Group,Ethnic Language,Ethnic Religion #USA |
||||||
| Breach | TruistBank_BF.7z id6b7a325d92ee View details | — | leaked | |||
|
In October 2023, the Truist Bank, a leading U.S. commercial bank were breached in an cyberattack and in June 2024, the data was published on BreachForums by @ShinyHunters .The exposed data included over 79k employees unique emails (Work emails) and account balances, dates of birth, job titles, names, partial credit card data and phone numbers. The ShinyHunters themselves commented about this leak - "There is nothing less true than the promises of CrowdShart and in the case of truist the truest words to be said on this subject are when #l0ckb1tch3z! troops taking point on zscaler its #G4M30V3R for them." |
||||||
| Breach | shouldve_paid_the_ransom_icsecurity.com_shinyhunters.7z.001 ida21037edf15b View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_icsecurity.com_shinyhunters.7z.002 idf3b4d92fa6c9 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_icsecurity.com_shinyhunters.7z.003 id06407b651b9a View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | microsoft.7z id36f503607e51 View details | — | leaked | |||
|
8M~ records containing: significant PII, employee and customer contact information, authentication data, password hashes, portal identities, corporate account information, business leads, facilities management records, internal service tickets, and access permissions. Size: 130GB |
||||||
| Breach | your_negotiators_fault_alert360_shinyhunters_.7z.001 id39903a9eea4d View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | your_negotiators_fault_alert360_shinyhunters_.7z.002 id2a0bf364a183 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | your_negotiators_fault_alert360_shinyhunters_.7z.003 id229ccb6a6eb8 View details | — | leaked | |||
|
Alert 360 Opco Inc. Over 2.5M records containing PII and other internal corporate data have been compromised. 10GB+ (compressed) |
||||||
| Breach | shouldve_paid_the_ransom_pathstone.com_shinyhunters_.7z.001 id4c3d1a999921 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_pathstone.com_shinyhunters_.7z.002 ida6022c4e21b5 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_pathstone.com_shinyhunters_.7z.003 id27d5337f4601 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_pathstone.com_shinyhunters_.7z.004 idbcbcc781efb7 View details | — | leaked | |||
|
Salesforce records were compromised and other internal corporate data have been compromised. The company failed to reach an agreement with us despite all the chances and offers we made. They don't care about their clients nor investors. 15GB (compressed) |
||||||
| Breach | BouyguesTelecom_BF.7z iddd74e015acf0 View details | — | leaked | |||
|
In August 2025, the French telecommunications company Bouygues Telecom detected a cyber attack against their services. The incident resulted in a data breach that exposed almost 6.4M customer records, including 5.7M unique email addresses. The breach also exposed names, physical addresses, phone numbers, dates of birth and IBANs (International Bank Account Numbers). Bouygues Telecom advised that all affected customers had been notified about the incident. |
||||||
| Breach | Bank of America.txt idc7358297629a View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | JAPANPHONE1.7z idf503306b0ab7 View details | Japan | — | leaked | ||
|
1 Million Database Phone Number Japan with Provider Records: ~1.1M |
||||||
| Breach | sermilweb.eb.mil.br_brazil.7z id8874a461f2bd View details | Brazil | — | leaked | ||
|
Data from the Brazilian Army's SERMIL military conscription portal (sermilweb.eb.mil.br), ~50 million records leaked in October 2025. Fields include full name, full home address, date of birth, CPF, gender, education, father's and mother's names, phone number, email, country and place of birth, army rank and blood type. |
||||||
| Breach | ColisPrivé_BF.7z id52927cde140a View details | — | leaked | |||
|
Colis Privé, a French shipping and delivery company, had its customer data scraped in November 2025 and subsequently leaked, exposing over 22 million customer records (a reply cites 22,564,381 records, noting duplicate entries for the same people). The data contained more than 12 million unique email addresses along with names, parcel numbers, phone numbers, and physical addresses. |
||||||
| Breach | MonLogicielMédical_BF.7z id365780de1403 View details | — | leaked | |||
|
Mon Logiciel Médical, a SaaS-based medical software platform tied to Ameli (France's national health insurance system), had patient data scraped around 2025. Over 19 million patient rows were obtained, including more than 150 thousand unique email addresses, dates of birth, genders, names, phone numbers, and physical addresses. |
||||||
| Breach | EasyCash_BF.7z id632c1a4b3dd7 View details | — | leaked | |||
|
Easy Cash (France) Easy Cash, a French second-hand goods retailer, suffered a data breach in April 2025 that exposed over 14.6 million rows covering roughly 4.8 million clients. Replies note the file actually contains only around 5,000-5,500 unique email addresses, alongside clients, dates of birth and names. |
||||||
| Breach | RevoraForums_BF.7z id3ad539e1dcb3 View details | — | leaked | |||
|
Revora (forums.revora.net), a gaming forum, suffered a data breach that was publicly exposed in February 2025, affecting over 1.2 million users. Exposed data included email addresses, IP addresses, usernames, and passwords stored as vBulletin hashes |
||||||
| Breach | users.7z id42d48d015bf4 View details | — | leaked | |||
|
jamendo.com scrape Date: 2026 Records: ~6,5M |
||||||
| Breach | shouldve-paid-the-ransom-SYSCO-SHINYHUNTERS.zip id35f7b3e2b19d View details | — | leaked | |||
|
Sysco Corporation Over 61 million Salesforce records across several tables, some containing customer data/PII, employee data, and other internal corporate data was compromised. |
||||||
| Breach | moody.edu.tar.7z.001 idbec7cf19a056 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | moody.edu.tar.7z.002 id72c60ca8c330 View details | — | leaked | |||
|
moody.edu Over 23 gigabytes of Moody Bible Institute data (1,300+ files, tens of millions of records) was compromised across enrollment, donor relations, payroll, and communications systems (MBI, EDC/Salesforce leads, PeopleSoft PS_COMMUNICATION, Horizon SIS, WHPD donor database, and Cadence admissions), including 46 million communication records, 2.2 million enrollment lead records, 108,000 biodemographic master files with addresses and birthdates, 3.3 gigabytes of donor gift data, employee payroll XML with home addresses and earnings, 1,100+ admissions outreach files, and student housing assignment records. |
||||||
| Breach | marcusmillichap.7z.001 ide07e5944abd8 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | marcusmillichap.7z.002 idfc193674ff0a View details | — | leaked | |||
|
Marcus & Millichap, Inc. Lesk In April 2026, the commercial real estate brokerage firm Marcus & Millichap was named as one of multiple alleged victims of the ShinyHunters hacking and extortion group. Data alleged to have been obtained from the company was subsequently released publicly and included 1.8M unique email addresses, along with names, phone numbers and employment-related information including employer, job title and physical company address. In their disclosure notice, Marcus & Millichap advised that data which may have been accessed appeared limited to "company forms, templates, marketing materials, and general contact information". |
||||||
| Breach | shouldve_paid_the_ransom_UDEMY_SHINYHUNTERS.zip id498b80e181d7 View details | — | leaked | |||
|
In April 2026, online training company Udemy was the victim of a “pay or leak” extortion attempt perpetrated by the ShinyHunters group. The data was subsequently leaked publicly and contained 1.4M unique email addresses belonging to customers and instructors. The data also included names, physical addresses, phone numbers, employer information and instructor payout methods including PayPal, cheque and bank transfer. |
||||||
| Breach | shouldve_paid-the_ransom_aura-shinyhunters_.7z.001 id3135e1d58cfa View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid-the_ransom_aura-shinyhunters_.7z.002 id10fada1ef2c7 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid-the_ransom_aura-shinyhunters_.7z.003 id27e41b4070de View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid-the_ransom_aura-shinyhunters_.7z.004 id761d094dcc32 View details | — | leaked | |||
|
Name: Aura Date: March 2026 Records: ~900k Description: In March 2026, the online safety service Aura disclosed a data breach that exposed 900k unique email addresses. The data was primarily associated with a marketing tool from a previously acquired company, with fewer than 20k active Aura customers affected. Exposed data included names, phone numbers, physical and IP addresses, and customer service notes. Aura advised that no Social Security numbers, passwords or financial information were compromised. |
||||||
| Breach | DEFCON.sql id6f164d1e38db View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.001 id584ee06d61ff View details | — | leaked | |||
|
Name: Fluke Date: July 2026 Records: ~800k Description: In July 2026, electronic test and measurement equipment company Fluke was targeted in a ShinyHunters "pay or leak" extortion campaign. The group subsequently published more than 100GB of data allegedly taken from the company. The corpus contained largely corporate contact information, including over 800k unique email addresses, names, phone numbers and physical addresses. A large collection of support cases was also present. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.002 id413bb3a214d4 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.003 id789e1f5a28bc View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.004 id9f255e7e5a2d View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.005 id45618eff27ec View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.006 ida98cab4a9331 View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.007 id4665f16eebbc View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.008 id201f5cdfacab View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.009 id707df864a70d View details | — | leaked | |||
|
No additional victim description available. |
||||||
| Breach | shouldve_paid_the_ransom_fluke_shinyhunters.7z.010 id297241dd3add View details | — | leaked | |||
|
No additional victim description available. |
||||||