Independent Reporting · Not Legal or Security Advice · Verify With the Breached Company · Editorial Policy
Data Breach Radar

DataBreachRadar

Who was breached, what was exposed, and what to do about it.

🔑
Check now
Is my password exposed?

Hashed in your browser - only five characters of the hash are ever sent.

🔍
Look it up
Search the breach directory

1,000+ catalogued breaches: the date, the account count, and exactly what was exposed.

⚠️
First 72 hours
Build an action plan

Tick what was leaked and get the steps in order, each linked to the rule behind it.

💳
Lock it down
Credit freeze tracker

All three bureaus, plus the four registries a credit freeze does not cover.

Browse by topic

589 guides

Cybersecurity Tips

Tips to protect your data and privacy

Browse →
484 guides

Breach Alerts

Breaking news on recent data breaches

Browse →
287 guides

Data Breaches

All the latest and largest data breaches

Browse →
229 guides

Identity Theft

Identity theft prevention and news

Browse →
203 guides

Tech Company Breaches

Data breaches at technology companies

Browse →
139 guides

Retail Breaches

Data breaches affecting retail and e-commerce companies

Browse →
We report what the notice actually says.

We report what the notice actually says.

Breach coverage goes wrong in two directions: inflating an exposure into a certainty, or burying it. We publish the disclosed numbers, name the source, and mark clearly where an investigation is still open and the count may change.

  • We name the organization - no anonymous "a major retailer" claims
  • "Accessed" and "misused" are reported as the different findings they are
  • Figures that are still provisional are labelled as provisional
All breach coverage →
If your data is already out there.

If your data is already out there.

Most people find out from a letter weeks after the fact. These are the steps that still work at that point, in the order they should be done, with what each one does and does not protect.

  • Check which breach corpora already list your address
  • Freeze all three bureaus - free, and reversible in minutes
  • Know the signals that mean your SSN is already in use
Start with the identity theft guides →

Common questions

Where do your breach reports come from?

Primary sources: the breached organization's own notification letter, filings in state Attorney General breach databases, the U.S. Department of Health and Human Services breach portal for healthcare incidents, SEC filings, court records and regulator announcements. Where we cite a figure, that figure comes from one of those documents.

My data was in a breach. Does that mean it has been used?

Not necessarily, and the difference matters. Most notices state that an unauthorized party accessed or acquired data. That is a different finding from evidence that the data has been used for fraud. We report which one a given notice supports, and we do not fill the gap with speculation.

Do you tell me whether I am affected by a specific breach?

No. Only the organization that holds your records can confirm that, and it is required to notify you. What we can do is tell you what was disclosed, who the claims administrator or notification contact is, and what steps are worth taking while you wait.

Is anything here legal advice or security advice?

No. Data Breach Radar is independent reporting. Nothing on this site creates a professional relationship or substitutes for advice from a lawyer, a security professional or your bank. Always verify details against the notice you received.

How does Data Breach Radar make money?

The site is free to read and carries advertising. Some pages may contain affiliate links, which are disclosed on our Affiliate Disclosure page. Advertisers and affiliate partners have no input into what we cover or what we say about it, and we do not accept payment to include, exclude or soften a breach report.

You got something wrong. How do I get it corrected?

Email contact@databreachradar.com with the URL and what is inaccurate. Corrections to a published report are made on the page itself. Our approach to sourcing and corrections is set out in the Editorial Policy.

We use cookies to run this site, measure how it’s used, and show ads. Choose “Essentials only” to limit cookies to what the site needs to work. Privacy Policy. Cookie Policy.