BreachHistory Platform — Data Breach Intelligence & Monitoring
BreachHistory is a breach intelligence platform for searching disclosed cybersecurity incidents, analyzing company breach history, monitoring vendors, and integrating structured metadata into security workflows.
Platform overview
The BreachHistory platform catalogs thousands of organizations and disclosed data breaches worldwide—from ransomware and phishing incidents to misconfigured cloud storage and supply-chain compromises. Every record ties back to sources where possible, with dates, affected record estimates, data types, and root-cause narratives designed for both technical and non-technical readers.
Core capabilities
Company breach search & timelines
Search any company in our database to view a chronological breach history: incident titles, disclosure dates, records exposed, root causes, and links to regulatory filings or company notices. Ideal for vendor reviews, board briefings, and classroom case studies.
Breach detail pages
Each incident has a dedicated URL under /company-slug/breach-id with technical writeups, share-ready summaries, and structured metadata for crawlers—supporting long-tail search queries like specific ransomware events or notification years.
Interactive dashboard
The breach dashboard aggregates statistics by year, country, and industry so you can study macro trends—records leaked per year, sector concentration, and geographic patterns in public disclosures.
BH Monitor — company watchlists
BH Monitor lets authenticated users follow companies and receive email alerts when new breaches are added to the database—useful for third-party risk programs and portfolio oversight.
Supply-chain incident tracking
Developers and security engineers can review npm and software supply-chain compromises—malicious package publishes, maintainer takeovers, and manifest details—through our supply-chain workspace (login required).
REST API for integrations
Approved integrators use the BreachHistory API to pull company and breach JSON into GRC platforms, spreadsheets, SOAR playbooks, and internal research tools. Tiered access applies; see documentation for authentication and rate limits.
Security blog & newsletters
The BreachHistory blog publishes analysis of major 2026 incidents—Canvas LMS, telecom breaches, healthcare notifications, and ransomware waves—with canonical links to our database entries.
Use cases by role
- Third-party risk management — benchmark suppliers against disclosed incident history before onboarding or renewal.
- Incident response & threat intel — quickly gather context on an actor’s prior victims and disclosure timelines.
- Compliance & audit — document due diligence with dated references to public notifications.
- Education & awareness — teach realistic breach impact using aggregated, cited data.
- Media & OSINT — jump from headline to structured timeline without losing source provenance.
Data sourcing & quality
We ingest regulatory breach lists (for example U.S. state attorney general notifications), company press releases, security journalism, and curated OSINT with clear labeling when confirmation is pending. Community submissions via Report a breach are reviewed before publication.
AI Breach Risk score
Company profiles may display an AI Breach Risk score derived from structural factors—incident count, recency, severity proxies, and sector context. It is a comparative signal for research, not a prediction of future compromise or a credit rating.
Get started
Search a company from the homepage, open the dashboard for trends, enable monitoring for alerts, or request API access for programmatic use. Learn why we built BreachHistory or contact the team for partnerships and corrections.