Search
Find records matching an investigation's starting point.
Matching records to inspect
Global Data Intelligence Platform
Search 20B+ exposed records, inspect matching fields, and follow connections. For government agencies, intelligence teams, and authorized cybersecurity firms.
A connection to review, not proof of attribution.
Illustrative search · fictional data
Search records / Review context / Follow connections.
By SecurityDiscovery ↗
Search across source records, inspect matching fields, and follow shared attributes. Select a sample result below to explore its context.
Search exposed recordsemailFind records matching an investigation's starting point.
Matching records to inspect
Inspect matching fields and source context for each result.
Context for every match
Follow shared attributes to related records and assess their relevance.
Connections to review, not conclusions
More than 20 billion records across the source categories below. Coverage varies by dataset.
Credentials, session data, browser data, and system information collected from malware logs. Families such as RedLine, Raccoon, and Vidar appear when those datasets are present.
Credentials / Session data / Browser data / System information
Corporate, organizational, and personal records from published breaches and leak collections, including Chinese-language leak corpora when those sources are present.
Corporate records / Personal information / Communication records / Leak corpora
Indexed snapshots and queries from publicly exposed Elasticsearch, MongoDB, and SQL databases.
Elasticsearch / MongoDB / SQL databases
Presence of a category does not mean complete coverage or guaranteed freshness.
Before you request access
It helps authorized investigation teams search exposed data, inspect records, and explore connections suggested by shared attributes. Search results require independent assessment.
Government agencies, intelligence teams, and authorized cybersecurity firms. Requests are reviewed. Submitting a request does not create an account or guarantee access.
More than 20 billion records across stealer-log datasets, breach and leak collections, and exposed databases. Coverage varies by dataset and is not a complete or continuously current view of every source.
Shared attributes, such as an email address appearing in more than one record, suggest a connection to review. They do not establish attribution. Investigators still need to assess relevance and provenance themselves.
Use the form below if you want access. Mention Intelligence Platform, your organization, and your investigation use case. Submitting a request does not create an account or guarantee access.