A meta-database collecting resources that compile lists of (security) incidents.
Academic survey mapping AI-specific attacks and defensive best practices.
Community-curated list of real-world exploits against agentic AI systems.
SEC-disclosed incidents tagged with an AI breach taxonomy and business-impact context.
13,000+ filterable entries tracking GenAI and agentic AI security incidents by severity.
Curated collection of breaches caused by misconfigured or exploited caching layers.
Public-cloud customer breach write-ups with root-cause analysis and timeline reconstruction.
Open database of cloud-provider vulnerabilities and security issues across major platforms.
Open-source index of publicly documented AWS customer security incidents.
Chronological catalog of publicly exposed S3 buckets and resulting data leaks.
Memorial for cryptocurrencies and exchanges killed by hacks, thefts, and security failures.
Community-maintained tracker of blockchain and smart-contract security incidents.
Running tally of DeFi hacks with amounts stolen, vectors, and protocol post-mortems.
Spreadsheet tracking companies that shut down following a security incident.
Catalog of real-world identity-based attacks against SaaS and cloud environments.
Live tracker of ransomware incidents with timeline and threat-actor attribution.
Documented cases of steganography used in malware delivery and covert communication.
CNCF-curated catalog of open-source supply chain attacks and compromises.
Spreadsheet dataset of supply chain security incidents with structured metadata.
Research compendium mapping open-source software supply chain attack patterns.
Adversarial machine learning threat matrix with documented real-world case studies.
Database of industrial control system and critical infrastructure security incidents.
Early web application security incident archive predating modern breach disclosure.
~37 incidents since 2012. High threshold—national impact or critical infrastructure.
14,119+ incidents. Separates confirmed filings from ransomware claims. Very low threshold.
Hundreds of incidents. Three-tier severity. Very low threshold—includes 3-record breaches.
Labels incidents Confirmée vs Revendiquée. Lists exposed data types. Includes attempted attacks.
Indexes publicly visible threat-actor posts. Does not acquire or host stolen data.
Research-grade. Tracks EU Cyber Diplomacy Toolbox. High selectivity. Static dataset versions.
Crowdsourced chronological list of major data breaches with impact figures.
Broad historical index of notable security hacking incidents.
Searchable index of breached sites with user count and data classes exposed.
Airtable-based gallery and grid of security incidents, breaches, and vulnerability disclosures.
Academic research dataset of data breaches with structured metadata and analysis.
Long-running consumer advocacy database of U.S. data breaches, downloadable in multiple formats.
Policy-focused tracker of geopolitically significant cyber incidents.
Dashboard of 600+ cyber incidents with victim, threat actor, and country breakdowns.
Tracker of cybersecurity incidents from SEC filings, state AGs, and news sources.
Weekly-updated open database of reported breaches with organization and threat actor details.
Deep-dive analysis of California breach notifications from a single reporting year.
Curated anthology of write-ups and post-mortems from notable security incidents.
h/t Shellsharks, which I’ve aggregated in