Incident tracker
Recent cyber attacks and data breaches
This view includes companies named on ransomware leak sites. Those are the gangs’ claims, not verified breaches.
| Disclosed | Company | What happened | Type | Records | Source |
|---|---|---|---|---|---|
| 2026-03-23 | RuneScape Boards | RuneScape Boards: a data breach In around 2011, the now defunct RuneScape Boards forum (also known as RSBoards) suffered a data breach that was later redistributed as part of a larger corpus of data . The vBulletin-based service exposed 223k unique email addresses along with usernames, IP addresses and salted MD5 password hashes. | Data breach | 222,762 | Have I Been Pwned ↗ |
| 2026-03-18 | Aura | Aura: a data breach In March 2026, the online safety service Aura disclosed a data breach that exposed 900k unique email addresses . The data was primarily associated with a marketing tool from a previously acquired company, with fewer than 20k active Aura customers affected. Exposed data included names, phone numbers, physical and IP addresses, and customer service notes. Aura advised that no Social Security numbers, passwords or financial information were compromised. | Data breach | 903,080 | Have I Been Pwned ↗ |
| 2026-03-15 | Divine Skins | Divine Skins: a data breach In March 2026, the League of Legends custom skins service Divine Skins suffered a data breach . The incident was disclosed via the service's Discord server, where Divine Skins stated that an unauthorised third party accessed part of its systems, deleted all skins from the database and exposed email addresses and usernames. The data also contained a history of purchases made by users. | Data breach | 105,814 | Have I Been Pwned ↗ |
| 2026-03-15 | Baydöner | Baydöner: a data breach In March 2026, the Turkish restaurant chain Baydöner suffered a data breach which was subsequently published to a public hacking forum . The incident exposed over 1.2M unique email addresses along with names, phone numbers, cities of residence and plaintext passwords. A small number of records also included Turkish national ID number and date of birth. In their disclosure notice , Baydöner stated that payment and financial data was not affected. | Data breach | 1,266,822 | Have I Been Pwned ↗ |
| 2026-03-03 | Provecho | Provecho: a data breach In early 2026, data purportedly sourced from the recipe and meal planning service Provecho was alleged to have been obtained in a breach. The exposed data included 713k unique email address along with username and the creator account holders followed. Provecho has been notified and is aware of the claims surrounding the incident. | Data breach | 712,904 | Have I Been Pwned ↗ |
| 2026-03-02 | Lovora | Lovora: a data breach In February 2026, the couples and relationship app Lovora allegedly suffered a data breach that exposed 496k unique email addresses. The data also included users’ display names and profile photos, along with other personal information collected through use of the app. The app’s maker, Plantake, did not respond to multiple attempts to contact them about the incident. | Data breach | 495,556 | Have I Been Pwned ↗ |
| 2026-03-02 | Quitbro | Quitbro: a data breach In February 2026, the porn addiction app Quitbro allegedly suffered a data breach that exposed 23k unique email addresses. The data also included users’ years of birth, responses to questions within the app and their last recorded relapse time. The app’s maker, Plantake, did not respond to multiple attempts to contact them about the incident. | Data breach | 22,874 | Have I Been Pwned ↗ |
| 2026-03-02 | KomikoAI | KomikoAI: a data breach In February, the AI-powered comic generation platform KomikoAI suffered a data breach . The incident exposed 1M unique email addresses along with names, user posts and the AI prompts used to generate content. The exposed data enables the mapping of individual AI prompts to specific email addresses. | Data breach | 1,060,191 | Have I Been Pwned ↗ |
| 2026-02-26 | Odido | Odido: a data breach In February 2026, Dutch telco Odido was the victim of a data breach and subsequent extortion attempt . Shortly after, a total of 6M unique email addresses were published across four separate data releases over consecutive days. The exposed data includes names, physical addresses, phone numbers, bank account numbers, dates of birth, customer service notes and passport, driver’s licence and European national ID numbers. Odido has published a disclosure notice including an FAQ to support affected customers. | Data breach | 6,077,025 | Have I Been Pwned ↗ |
| 2026-02-25 | Canadian Tire | Canadian Tire: a data breach In October 2025, retailer Canadian Tire was the victim of a data breach that exposed almost 42M records. The data contained 38M unique email addresses along with names, phone numbers and physical addresses. Passwords were stored as PBKDF2 hashes and for a subset of records, dates of birth and partial credit card data were also included (card type, expiry and masked card number). In its disclosure notice , Canadian Tire advised that the incident did not impact bank account information or loyalty program data. | Data breach | 38,306,562 | Have I Been Pwned ↗ |
About this tracker
- 435
- Incidents
- 295
- Ransomware gang claims
- 730
- Last 30 days
- 395
- Companies tracked
- 2,742,501,669
- Records disclosed