Skip to content

Data breaches and breach records

Back to tools

Find public records of known data breaches.

Search breaches

Search breaches

Find recorded data breaches by company or website name, matching breach titles and website domains. Results are ordered by breach date, newest first; email-address checks are not included.

Your information

Company or website to search for, for example Adobe or adobe.com.

More options

Most breaches to return, for example 20 (maximum 100).

1 credit per completed run

The same inputs also work from your code or an AI assistant. See For developers.

Example results

Recorded breaches

  • Adobe

    Oct 4, 2013, adobe.com

    Accounts affected152.4M
    yes

Choose an action

About the Have I Been Pwned tool

Have I Been Pwned (HIBP) searches recorded breaches by company or website name, matching breach titles and website domains.

Search breaches takes a company or website name and can take a maximum number of results; it returns matches ordered newest first.

Built from haveibeenpwned.com. Last checked Sep 29, 2026.

Actions

Search breaches

1 credit

Find recorded data breaches by company or website name, matching breach titles and website domains. Results are ordered by breach date, newest first; email-address checks are not included.

What you provide

FieldTypeRequiredDescription
CompanycompanyTextRequiredCompany or website to search for, for example Adobe or adobe.com.Example: Adobe
Max Resultsmax_resultsNumberOptionalMost breaches to return, for example 20 (maximum 100).Example: 1

What you get

FieldTypeDescription
BreachesbreachesListMatching breaches, newest first.
Websitebreaches[].websiteTextAffected website domain.Example: adobe.com
Verifiedbreaches[].verifiedTextWhether the breach was verified.Example: Yes
Date Addedbreaches[].date_addedDateDate the breach was added.Example: 2013-12-04
Breach Datebreaches[].breach_dateDateDate of the breach.Example: 2013-10-04
Breach Namebreaches[].breach_nameTextName of the breach.Example: Adobe
Descriptionbreaches[].descriptionTextPlain-text summary of the breach.Example: In October 2013, 153 million Adobe accounts were breached with each containing…
Data Exposedbreaches[].data_exposedTextKinds of personal data exposed.Example: Email addresses, Password hints, Passwords, Usernames
Breach Page Linkbreaches[].breach_page_linkLinkBreach page on Have I Been Pwned.Example: https://haveibeenpwned.com/Breach/Adobe
Accounts Affectedbreaches[].accounts_affectedNumberNumber of accounts affected.Example: 152445165

Example result

For Company: Adobe

JSON
{
  "breaches": [
    {
      "website": "adobe.com",
      "verified": "yes",
      "date_added": "2013-12-04",
      "breach_date": "2013-10-04",
      "breach_name": "Adobe",
      "description": "In October 2013, 153 million Adobe accounts were breached with each containing an internal ID, username, email, encrypted password and a password hint in plain text. The password cryptography was poor…",
      "data_exposed": "Email addresses, Password hints, Passwords, Usernames",
      "breach_page_link": "https://haveibeenpwned.com/Breach/Adobe",
      "accounts_affected": 152445165
    }
  ]
}

For developers

Call it from your code with one request. Change the values in input to run it on new data. To get an API key, open Developers at the bottom of Studio, turn on Developer mode and go to API keys.

cURL
curl 'https://api.fous.com/v1/query' \
  --fail-with-body --silent --show-error --max-time 180 \
  -H "Authorization: Bearer YOUR_API_KEY" \
  -H 'Content-Type: application/json' \
  --data-raw '{
  "api": "@have-i-been-pwned",
  "visibility": "public",
  "operation": "search_breaches",
  "version": 1,
  "input": {
    "company": "Adobe"
  },
  "response": {
    "format": "json"
  }
}'

What you can do with it

  • Find recorded breaches associated with a company or website.
  • Review breach dates and affected website domains.
  • See what kinds of personal data a breach exposed.
  • Check whether a breach was verified.
  • Compare the number of accounts affected by matching breaches.

Questions about Have I Been Pwned

Can I run it with my own inputs?

Yes. Change the inputs in Studio and press Run, or send new inputs from your code, or ask a connected AI assistant.

Can I call this Have I Been Pwned tool as an API?

Yes. Send a POST request to /v1/query with your Fous API key and the inputs, and get JSON back.

How much does it cost?

Each completed run costs 1 credit. Failed runs without a completed receipt are free; completed work can remain charged if delivery is interrupted. With pay as you go, a credit costs 1¢. Monthly plans cost less per credit.

Do I need a Have I Been Pwned account?

No. You only need a Fous account.

How current is the data?

Fous gets the data from haveibeenpwned.com when you run it. Some results are reused for up to 24 hours, and results that use your account or key are never reused. It was last verified on Sep 29, 2026.

Which breaches are associated with a company or website?

Search breaches finds recorded breaches matching the company or website name and returns them newest first.

What personal data did a breach expose?

Search breaches returns the kinds of personal data exposed for each matching breach.

How many accounts were affected by a breach?

Search breaches returns the number of accounts affected for each matching breach.

All Security toolsBrowse all tools