Snorlax Data Pool is an infostealer-style dataset with 2,064,745 indexed records containing account and device data. The leak includes searchable emails, usernames, passwords, IP addresses, phone numbers, names, countries, and addresses, creating account-takeover and phishing risk for exposed users and organizations.
A Hitachi Vantara Salesforce CRM export indexed by leaksear.ch contains 2.3 million records tied to contacts, leads, users, cases and account-contact data. The dataset includes names, emails, phone numbers, addresses, usernames and CRM metadata, and is associated in metadata with the 2025 Salesforce customer data-theft and extortion wave.
A Gms-net leak indexed by leaksear.ch contains 31,249 Salesforce CRM records with contact and account-related fields. Public reporting ties the alleged Salesforce data theft to the ICARUS extortion group's June 2026 SaaS and CRM-focused activity.
A June 2026 American Tower leak indexed by leaksear.ch contains 212,642 records with names, emails, phone numbers, physical addresses and job titles. Public breach listings tie the incident to a ShinyHunters pay-or-leak campaign, while the initial access vector has not been publicly confirmed.
A Ralph Lauren dataset tied to a June 2026 ShinyHunters pay-or-leak incident contains 140,178 indexed records. Exposed data includes email addresses, names, phone numbers, country, gender, age group, and transaction or survey context.
Madison Square Garden Sports was hit in a June 2026 ShinyHunters extortion campaign, with leaksear.ch indexing 9,796,326 records. The data includes names, email addresses, phone numbers, physical addresses, dates of birth, usernames, and CRM or support details tied to customers and staff.
A Pathstone leak indexed by leaksear.ch contains about 70,000 records tied to client CRM data and document-inventory metadata. Public reports attributed the incident claim to ShinyHunters, while the indexed fields include contact data, dates of birth, addresses and sensitive financial-document context.
A ShinyHunters-linked European Commission leak indexed by leaksear.ch contains 1,798 DIGIT SSO user records. The data includes names, email addresses, usernames, and user IDs, creating phishing and account-enumeration risk for affected users.
A Vodafone-labeled dataset indexed by leaksear.ch contains 1,000 records with email, password and username fields. The breach date is not supplied, and public reporting does not confirm whether this is a subset of earlier Vodafone incidents.