This page documents a data breach listing tracked by Breach House. It summarizes the
publicly advertised leak attributed to Anonymous Russia БД,
including the affected entity, origin and the date the listing was first indexed.
Breach Overview
В открытый доступ сразу на нескольких форумах были выложены дампы двух MongoDB-серверов с данными клиентов туристических сервисов онлайн-бронирования «5 туристов.ру» (5turistov.ru) и «Отдых.на Кубани.ру» (otdih.nakubani.ru). У обоих сервисов один адрес офиса и единый телефон, но сервера с общедоступными MongoDB располагались на разных хостинговых площадках. На форумах распространяются такие данные из этих баз, как: 👇 🌵 зарегистрированные пользователи (254,025 записей) – ФИО, пол, адрес эл. почты, телефон, логин, дата регистрации (самая последняя - 27.03.2020), хешированный (MD5 с солью) пароль, идентификаторы социальных сетей и других сервисов аутентификации (ВКонтакте, Яндекс, Facebook, Google). 🌵 журнал входа пользователей в систему (225,375 записей) – логин (адрес эл. почты), IP-адрес, дата/время (самая последнее – 28.03.2020 в 13:56:38), статус операции (успешно или ошибка). 🌵 клиенты, оставлявшие заявки на бронировавшие отелей (485,204 записи) – ФИО, адрес эл. почты, телефон, регион, дата/время.
Dark Web Exposure
Findings for nakubani.ru
— indexed by HaveIBeenRansom.
2
found in Infostealer logs
62+
found in Traditional breaches
0+
found in Ransomware leaks
Cit0day [cit0day.in] breaches.csv
LKnet reserve chat · breach
••• emails
cdek_2.zip.001
⚡️𝙎𝙏𝙊𝙍𝙈 Чат | База Данных · breach
••• emails
CDEK_BF.7z
B F R e p o V 3 F i l e s · breach
••• emails
Кордон РФ 2023 part2 (1).zip
Database World ROC · breach
••• emails
B F R e p o V 3 F i l e s · breach
••• emails
⚡️𝙎𝙏𝙊𝙍𝙈 Dаtа Ваsе · breach
••• emails
+ 15 more leak sources locked
Leak volumes are locked
Sign in to reveal how many records each source exposed and the remaining 18 sources.
Legal Disclaimer:
This breach record is compiled from publicly advertised leak listings.
Breach.house only records what the operators themselves publish in the
open. We take screenshots of their public pages and keep the proof
material they post there, so that a listing can be verified and its status
tracked over time. We do not purchase data, we do not solicit or encourage
its publication, we do not access any private system, and we do not alter
anything we record. Nothing is offered for download here, and detailed
content is not published on this page or anywhere else on the public site:
access to it is restricted to vetted customers under contract, for
incident response, due diligence and cyber-resilience work.
Breach.house is not affiliated with, and does not act on behalf of, the
operators who publish this material. If you represent an organisation or
individual named here and want a record reviewed or removed, contact us
and we will act on it.