DarkHive Breach Catalog

Ohara.RU
Breached Records: 21,831
In May 2024, Ohara, a Russian e-commerce platform specializing in outerwear, suffered a breach compromising approximately 22,000 records. Exposed data included email addresses, usernames, full names, phone numbers, birthdays, physical addresses, and passwords secured with SHA-512 hashing. Implementing advanced cybersecurity measures remains vital to safeguarding sensitive user data.
Leaked Data Types: Email Address, Phone Number, Password Hash, Username, First Name, Last Name, Birthday
Added on March 21, 2025

Rooftop Studios
Breached Records: 2,268
In July 2023, Rooftop Studios, a British dance and performing arts training studio, experienced a breach compromising approximately 155,000 records containing email addresses, usernames, and PHPass hashed passwords. The incident highlights vulnerabilities in organizations handling user communications and personal data. Robust cybersecurity measures remain essential to protect sensitive information from unauthorized access.
Leaked Data Types: Email Address, Password Hash, Username
Added on March 20, 2025

Telegram alien ULP P699 by alien
Breached Records: 12,362,857
On January 21, 2025, a stealer log titled TXTLOG_ALIEN - 699 was shared on a Telegram channel, containing approximately 52 million records. The stealer log exposed around 12 million unique email addresses, homepage URLs, and plaintext passwords. This breach highlights the pressing importance of robust cybersecurity practices to protect sensitive information from malicious actors.
Leaked Data Types: Email Address, Plaintext Password, HomePage URL
Added on March 20, 2025

Domaša City Dobrá
Breached Records: 1,119
In September 2023, the official website of Domaša City, which provides information about local municipalities, events, and attractions around the Veľká Domaša reservoir, experienced a data breach affecting nearly 1,400 users. The compromised data included email addresses, phone numbers, usernames, full names, plaintext passwords, and geographical locations. This breach underscores the importance of strong cybersecurity measures to safeguard user information and prevent unauthorized access.
Leaked Data Types: Email Address, Phone Number, Username, First Name, Last Name, Plaintext Password
Added on March 20, 2025

Dunavox
Breached Records: 94
In October 2023, Dunavox, a Russian e-commerce website specializing in Dunavox wine cabinets, suffered a data breach that exposed 31,000 rows of data. The compromised information included email addresses, phone numbers, full names, MD5 password hashes, IP addresses, and dates. This incident highlights the importance of implementing robust cybersecurity measures to protect sensitive user data and prevent potential misuse by malicious actors.
Leaked Data Types: Email Address, Phone Number, First Name, Last Name, IP Address, Password Hash
Added on March 20, 2025

iTeam Russia
Breached Records: 14,483
In October 2023, iTeam, a Russian business consulting and management website, experienced a data breach affecting 14.5k users. The exposed information included email addresses, usernames, dates, and password hashes stored using bcrypt. This incident highlights the critical need for robust cybersecurity measures to protect sensitive user data and prevent unauthorized access.
Leaked Data Types: Email Address, Username, Password Hash
Added on March 20, 2025

Ro'ya Home
Breached Records: 9,141
In December 2023, Ro'ya Home, an Egyptian furniture and home decoration store, experienced a breach exposing roughly 4 million lines of data and approximately 5,000 user records. Compromised information included email addresses, usernames, full names, and PHPass-hashed passwords. The incident underscores vulnerabilities in retail platforms managing customer credentials and transactional data. Robust cybersecurity measures remain critical to safeguarding sensitive user information.
Leaked Data Types: Email Address, Password Hash, Username, First Name, Last Name
Added on March 20, 2025

Uffa Italy
Breached Records: 497
Sometime in 2022, Uffa Italy, an Italian platform known for its humor and entertainment content, experienced a data breach that affected 502 users. The compromised data included email addresses, usernames, and MD5 password hashes. This incident underscores the importance of robust cybersecurity measures, such as using stronger encryption algorithms and implementing proactive security protocols, to safeguard user information against potential threats.
Leaked Data Types: Email Address, Username, Password Hash
Added on March 20, 2025

Orange
Breached Records: 333,557
In February 2025, the Romanian branch of the telecommunications company Orange suffered a data breach, with the stolen data later published on a popular hacking forum. The breach exposed 556,000 email addresses (many formatted as [phone number]@as1.romtelecom.net), phone numbers, subscription details, partial credit card data (including card type, last four digits, expiration date, and issuing bank), as well as a significant number of internal documents. This incident highlights the importance of robust cybersecurity measures, such as encrypting sensitive financial and personal data, implementing strict access controls, and conducting continuous security audits to prevent unauthorized access and mitigate potential risks.
Leaked Data Types: Email Address, Phone Number
Added on March 20, 2025

BreachForums alien ULP P851 by alien
Breached Records: 10,081,564
On March 16, 2025, a stealer log named 112.322.767 MILLION PRIVATE URL:LOGIN:PASS was posted on a widely known hacking forum. The second part of the stealer log contained approximately 57.1 million records. The log disclosed around 10.08 million unique email addresses, plaintext passwords, and homepage URLs. This incident serves as a reminder of the importance of robust cybersecurity measures to protect user credentials from unauthorized access and exploitation.
Leaked Data Types: Email Address, Plaintext Password, HomePage URL
Added on March 20, 2025

Siam Cement Group
Breached Records: 473
In August 2024, Siam Cement Group, a Thai conglomerate operating in cement, construction materials, chemicals, and packaging, suffered a breach compromising approximately 16,000 records. Exposed data included email addresses, phone numbers, and physical addresses. The incident highlights risks for industrial conglomerates managing sensitive corporate and client information, which could be exploited for phishing or corporate espionage. Robust cybersecurity practices are imperative to protect operational integrity and stakeholder trust in critical sectors.
Leaked Data Types: Email Address, Phone Number
Added on March 20, 2025

PharmaCosmetica
Breached Records: 820,459
In August 2024, PharmaCosmetica, a Russian online platform selling health and cosmetic products, suffered a breach compromising approximately 840,000 records. Exposed data included email addresses, full names, physical addresses, phone numbers, and passwords stored as MD5 hashes. The incident highlights risks to platforms handling sensitive customer data, particularly with outdated cryptographic practices. Robust cybersecurity measures remain critical to safeguarding user information.
Leaked Data Types: Email Address, Phone Number, Password Hash, First Name, Last Name, Birthday
Added on March 20, 2025

Fastfood Bulgaria
Breached Records: 1,906
In September 2022, Fastfood Bulgaria, an online food delivery platform, experienced a data breach that affected 2,000 users. The compromised information included email addresses, MD5 password hashes, full names, and dates. This breach underscores the importance of strong cybersecurity measures, such as secure password hashing algorithms and proactive threat monitoring, to safeguard user data from potential exploitation.
Leaked Data Types: Email Address, Password Hash, First Name, Last Name
Added on March 20, 2025

Telegram alien ULP P700 by alien
Breached Records: 13,771,372
On January 21, 2025, a stealer log titled TXTLOG_ALIEN - 700 was shared on a Telegram channel. The stealer log, containing approximately 58 million records, exposed around 14 million unique email addresses, homepage URLs, and passwords stored in plain text. This breach highlights the pressing importance of robust cybersecurity practices to protect sensitive information from malicious actors.
Leaked Data Types: Email Address, Plaintext Password, HomePage URL
Added on March 20, 2025

Telegram alien ULP P804 by alien
Breached Records: 9,622,274
On March 13, 2025, a stealer log titled TXTLOG_ALIEN - 804 was distributed via a Telegram channel, comprising approximately 58.5 million lines of data. The log exposed 9.62 million unique email addresses, plaintext passwords, and homepage URLs. This incident underscores the importance of robust cybersecurity practices to mitigate the risks associated with data breaches.
Leaked Data Types: Email Address, HomePage URL, Plaintext Password
Added on March 20, 2025

Nick's Chili Parlor
Breached Records: 2,324
In March 2025, Nick's Chili Parlor, a restaurant website based in the United States, experienced a data breach affecting nearly 2,400 users. The compromised data included email addresses and full names. This breach highlights the necessity of implementing strong cybersecurity measures, such as data encryption and regular security assessments, to protect sensitive customer information from unauthorized access.
Leaked Data Types: Email Address, First Name, Last Name
Added on March 20, 2025

Telegram alien ULP P803 by alien
Breached Records: 11,825,454
On March 13, 2025, a stealer log titled TXTLOG_ALIEN - 803 was distributed via a Telegram channel, comprising approximately 57.7 million lines of data. The log exposed 11.83 million unique email addresses, plaintext passwords, and homepage URLs. This incident underscores the importance of robust cybersecurity practices to mitigate the risks associated with data breaches.
Leaked Data Types: Email Address, HomePage URL, Plaintext Password
Added on March 20, 2025

BreachForums alien ULP P850 by alien
Breached Records: 11,991,783
On March 16, 2025, a stealer log named 112.322.767 MILLION PRIVATE URL:LOGIN:PASS was posted on a widely known hacking forum. The first part of the stealer log contained approximately 55.1 million records. The log disclosed around 11.99 million unique email addresses, plaintext passwords, and homepage URLs. This incident serves as a reminder of the importance of robust cybersecurity measures to protect user credentials from unauthorized access and exploitation.
Leaked Data Types: Email Address, Plaintext Password, Password Hash
Added on March 20, 2025

Patricia AI
Breached Records: 9,666
In May 2024, Patricia AI, an Israeli ecommerce platform for home remodeling and design, suffered a data breach affecting approximately 9,600 records. The compromised data included email addresses, full names, and phone numbers. This incident highlights the importance of cybersecurity in emerging tech industries to protect user privacy and sensitive information.
Leaked Data Types: Email Address, Phone Number, First Name, Last Name
Added on March 19, 2025

Telegram alien ULP P698 by alien
Breached Records: 12,706,378
On January 20, 2025, a stealer log titled TXTLOG_ALIEN - 698 was shared on a Telegram channel. The stealer log, containing approximately 48 million records, exposed around 12.7 million unique email addresses, homepage URLs, and passwords stored in plain text. This breach highlights the ongoing risks posed by credential-stealing malware and the necessity for organizations and individuals to prioritize cybersecurity to mitigate potential data exposure.
Leaked Data Types: Email Address, Plaintext Password, HomePage URL
Added on March 19, 2025