Skip to content
Live · Updated every 6 hours
Track every US data breachBreached

Connect Gmail to find missed settlements, then check for scam lookalikes.

ClaimScan helps you scan read-only email for possible class-action settlement matches, breach notices, receipts, and suspicious sender patterns. Breached still tracks every US data breach from official sources in plain English.

Breaches tracked
53
Critical breaches
9
Email scan
ClaimScan
Updated
Every 6 hrs
Verified sources

Every breach links back to the official report — SEC filings, state attorneys general, news, and security researchers.

Inbox-first claim checks

ClaimScan looks for possible settlement matches, source records, deadlines, and evidence without treating a scan as legal advice.

Scam lookalike review

Suspicious settlement emails, sender domains, and claim links can be checked against verified notices before you act.

Featured breach
Pinned 1mo ago
I
Critical1mo ago

Instructure (Canvas)

TechCrunch reported that hackers stole student data during a breach at education technology company Instructure, which is widely known for its Canvas platform.

student data
techcrunch.comRead report

Latest breach

1d ago
Medium1d ago·haveibeenpwned.com

American Tower

American Tower had data on over 216,000 employees, contractors, customers, and leads exposed after a ShinyHunters extortion campaign in June 2026.

Email addressesNamesPhone numbersPhysical addressesJob titles
217K affected

Recent breaches

See all →
M
High3d ago

Madison Square Garden Sports

Madison Square Garden Sports had data on nearly 10 million accounts exposed after the ShinyHunters group carried out a pay-or-leak extortion campaign and published the stolen data online.

NamesEmail addressesPhone numbers+2 more
9.8M
J
Critical7d ago

JCPenney

JCPenney suffered a data breach in June 2026 when ShinyHunters exploited a zero-day vulnerability in Oracle PeopleSoft, exposing personal and HR data for approximately 368,000 current and former employees.

Dates of birthEmail addressesGovernment issued IDs+6 more
368K
R
Medium8d ago

Ralph Lauren

Ralph Lauren had data on approximately 140,000 individuals exposed after the ShinyHunters group claimed to have extracted records from the company's Salesforce instance and published them as part of an extortion campaign.

Email addressesNamesPhone numbers+2 more
140K
O
Medium8d ago

Operation Endgame 4.0 (SocGholish Malware Operation)

International law enforcement, coordinated through Europol and Eurojust, disrupted the SocGholish malware network on 18 June 2026, providing HIBP with approximately 154,000 affected email addresses and over 500,000 previously unseen passwords.

Email addressesPasswords
154K
C
Medium9d ago

CFGI

CFGI, a financial consulting and advisory firm, had data on approximately 248,000 individuals exposed after the ShinyHunters group conducted an extortion campaign and subsequently published corporate contact information.

Email addressesEmployersJob titles+3 more
248K
I
Medium12d ago

Infinite Campus

Infinite Campus, a student information system, had data on approximately 137,000 accounts stolen and published by the ShinyHunters group in March 2026 following an extortion campaign.

Email addressesEmployersJob titles+5 more
137K
B
Medium12d ago

Berkadia

Berkadia, a commercial real estate finance company, had data from its Salesforce instance published by the ShinyHunters group in March 2026, exposing over 300,000 individuals' contact and employer information.

Email addressesEmployersNames+2 more
305K
B
Medium20d ago

Baker Distributing Company

Baker Distributing Company had data on approximately 103,000 accounts exposed after the ShinyHunters extortion group published information allegedly taken from the company's SharePoint and Salesforce systems in May 2026.

Email addressesNamesPhone numbers+2 more
103K
B
Medium22d ago

BCD Travel

BCD Travel, a corporate travel management company, had data on approximately 396,000 individuals exposed after ShinyHunters claimed the company as a victim of an extortion campaign and published the data publicly in early June 2026.

Email addressesNamesPhone numbers+4 more
396K
D
Critical23d ago

DentaQuest

DentaQuest, a dental benefits administrator, had data on approximately 2.6 million individuals publicly leaked by the ShinyHunters group following an extortion campaign in May 2026.

Dates of birthEmail addressesGenders+5 more
2.6M
E
High26d ago

Edmunds

Edmunds, the automotive research and car-shopping platform, had data on approximately 178,000 accounts exposed after the ShinyHunters hacking group claimed a breach in January 2026.

Email addressesUsernamesPasswords+3 more
178K
Showing 11 of 53