Home All Breaches shouldve_paid_the_ransom_bumble-shinyhunters_.7z.008

shouldve_paid_the_ransom_bumble-shinyhunters_.7z.008

Database World ROC

This page documents a data breach listing tracked by Breach House. It summarizes the publicly advertised leak attributed to Database World ROC, including the affected entity, origin and the date the listing was first indexed.

Country
Discovered
2026-08-08
Breach ID
807595b16ada

Breach Overview

Data attributed to the Council of Europe, an international organisation based in Strasbourg, was published by the ShinyHunters group on June 18, 2026, after a ransom deadline passed without payment. The leak totals about 295GB across roughly 430,000 files, obtained via an Oracle PeopleSoft zero-day (CVE-2026-35273), and includes about 409,000 pay slips for over 10,000 current/former employees (2011-2026), 14,000 CVs, 3,700 internal HR documents, banking statements/account numbers, and tax records, spanning HR, the General Secretariat, PACE, and EDQM departments

Dark Web Exposure

Cross-referenced against HaveIBeenRansom's dark-web index of ransomware leaks, breaches & infostealer logs.
0
found in Infostealer logs
0
found in Traditional breaches
0
found in Ransomware leaks
Emails exposed
••••
Internal
•••
External
•••
Distinct leaks
••
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
••••••••••••••••••••••••
•••••••••• · ••••••
••• emails
Full exposure is locked
See every breached email, the internal-vs-external split and each leak source behind this breach.
Want the complete picture — passwords, machines, full leak files? It's all searchable on HaveIBeenRansom.
Search this breach →
Original Post View Group: Database World ROC
Legal Disclaimer: This breach record is compiled from publicly advertised leak listings. Breach.house only records what the operators themselves publish in the open. We take screenshots of their public pages and keep the proof material they post there, so that a listing can be verified and its status tracked over time. We do not purchase data, we do not solicit or encourage its publication, we do not access any private system, and we do not alter anything we record. Nothing is offered for download here, and detailed content is not published on this page or anywhere else on the public site: access to it is restricted to vetted customers under contract, for incident response, due diligence and cyber-resilience work. Breach.house is not affiliated with, and does not act on behalf of, the operators who publish this material. If you represent an organisation or individual named here and want a record reviewed or removed, contact us and we will act on it.