Dark Web Intel: 883 Business Records Leaked From IntBizTH Database
In November 2024, a database belonging to Intelligence Business (IntBizTH), a Thai business consulting and international trade services firm, was compromised and the contents surfaced on a dark web forum. The exposed dataset was small and precisely curated, affecting 883 records containing personally identifiable information. Though the record count is modest, the data types exposed make this breach particularly useful to threat actors targeting business professionals.
Why This Is Dangerous
Business consulting firms hold contact and identity data for professionals, executives, and corporate clients. When that data leaks, attackers gain verified identity intelligence they can use to craft convincing spear-phishing emails, impersonate staff, or access corporate systems. The combination of full name, email, phone, and username is exactly what social engineers need.
What Was Exposed
- Email addresses -- direct contact vectors for phishing and targeted outreach
- Phone numbers -- enables SMS phishing (smishing) and voice-based fraud
- Usernames -- reusable across platforms, fuels credential stuffing
- First and last names -- full identity anchors for impersonation and fraud
Why This Matters
Even without passwords, this data creates serious downstream risk:
- Targeted phishing: Attackers use real names and professional context to craft convincing business lures.
- Account takeover: Usernames combined with credentials from other breaches enable stuffing attacks across popular services.
- Identity theft: Name, email, and phone together are sufficient to open fraudulent accounts or bypass verification systems.
- Business email compromise (BEC): Consulting firms interact with high-value clients -- leaked contact data can be leveraged to impersonate staff and redirect payments.
How Database Breaches Work
Database breaches typically occur when an attacker exploits a vulnerability in a web application, an exposed database port, or misconfigured cloud storage. The attacker queries the database, exports the user table contents, and sells or publishes the dump on dark web forums. Smaller breaches like this one frequently go unreported in mainstream media, meaning affected individuals rarely learn their data was exposed.
Check If You Are Affected
If you have ever interacted with Intelligence Business (IntBizTH) or provided contact details to a Thai business consulting platform, your email, phone number, or name may be in this dataset. HEROIC monitors 400 billion+ compromised records -- run a free scan now to see if your information has appeared in this or any other breach.
Breach Breakdown
883 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds