> ## Content Index
> Fetch the complete content index at: https://darkwebinformer.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Horizane Santé Breach Claim Includes 8,864 Customer Records
- URL: https://darkwebinformer.com/horizane-sante-breach-claim-includes-8-864-customer-records/
- Published: 2026-09-24T15:49:58.000Z
- Updated: 2026-09-24T15:49:58.000Z
- Author: Dark Web Informer
- Tags: Data Breaches

Data Exposure Report France Customer Records Employee Data Admin Access Claim Unverified 

## Horizane Santé Breach Claim Includes 8,864 Customer Records

Claimed customer records8,864

Claimed employee records12

Claimed password hashingbcrypt

Access claimed in titleAdmin

Severity HIGH 

### Overview

An actor using the handle **"Jaded"** claims to have breached **Horizane Santé** and exposed records relating to **8,864 active customers**, alongside **12 employee records**. The post describes the organization as a French health, wellness and parapharmacy company. Its title also claims **admin access**.

The actor claims the customer data includes **bcrypt password hashes**. A visible sample shows customer names, email addresses, account identifiers, active-status fields, creation timestamps and default-group identifiers. The screenshot also lists employee-data field names and a download area hidden behind a forum points unlock. **The breach, record counts, password-hash exposure and admin access have not been independently verified.**

### Post details

OrganizationHorizane Santé

Country France

SectorHealth, wellness and parapharmacy

Actor"Jaded"

Customer records8,864 active customers, claimed

Employee records12, claimed

Download visibilityHidden behind a forum points unlock

Post date shownSep 24, 2026

### What the post claims

- Breach of Horizane Santé claimed
- 8,864 active customer records claimed
- 12 employee records claimed
- bcrypt password hashes claimed for customer accounts
- Admin access claimed in the post title
- Customer sample includes names and email addresses
- Customer sample includes IDs, active status and creation dates
- Customer sample includes default-group identifiers
- Employee fields include profile IDs and last\_passwd\_gen

Sponsored

[ ![WhiteIntel, dark web exposure monitoring](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/2026/08/whiteintel_io_banner.jpg) ](https://whiteintel.io/?utm%5Fsource=darkwebinformer.com&utm%5Fmedium=referral&utm%5Fcampaign=whiteintel)

### Screenshots

[Screenshot 1Source screenshot![Post claiming a Horizane Santé breach affecting 8,864 customer records and 12 employee records, with a customer sample and hidden download area](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/size/w1304/format/webp/2026/09/3237895692876359876235897235698762369875982.png) ](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/size/w1304/format/webp/2026/09/3237895692876359876235897235698762369875982.png) 

Supplied screenshot showing the breach and admin access claims, claimed record counts, employee field names and a customer-data sample. The download destination is not visible.

### IOCs & contact identifiers

Identifier visible in the source material. The actor handle supports correlation and does not, on its own, establish compromise.

| Type         | Identifier | Source       |
| ------------ | ---------- | ------------ |
| Actor handle | Jaded      | Screenshot 1 |

No Telegram handle, Tox ID, Session ID, malware hash or attacker-controlled IP address is visible. Customer names and email addresses shown in the purported evidence are not included in this table. The download destination is hidden in the supplied screenshot. URLs to any data will always be blurred out, but are available to subscribers on the threat feed or ransomware feed.

### Mapped techniques

No MITRE ATT&CK technique is assigned from this screenshot alone. The post claims a breach and admin access but does not show how access was obtained, how data was collected or how it was exfiltrated. The claim of bcrypt password-hash exposure does not establish a password-cracking attempt, and the admin access claim does not identify an authentication method.

### Potential impact

If authentic, exposure of **customer names, email addresses and account metadata** could support targeted phishing, impersonation and other account-focused abuse. Claimed password-hash exposure could create additional account risk if passwords are recovered and reused elsewhere. **Employee-data exposure and genuine admin access** could broaden the potential impact, but the screenshot does not demonstrate administrative control or its scope. It does not establish exposure of payment-card details, medical records or health information.

### Status Unverified

Dark Web Informer has **not independently verified** the alleged breach, the actor's access, the record counts or the origin and completeness of the dataset. The visible customer sample does not display password hashes, so the bcrypt claim is not corroborated by that sample. The employee section shows field names rather than employee records, and no admin panel or authenticated session is demonstrated. Dates shown in sample records do not establish when the alleged breach occurred. No company confirmation is included in the supplied material.

Want everything on this threat? **Paid subscribers** get the full unredacted claim details and more. After subscribing, check out the [threat feed](https://darkwebinformer.com/threat-feed/?utm%5Fsource=alert&utm%5Fmedium=card&utm%5Fcampaign=horizane-sante-breach-claim-2026-09-24&utm%5Fcontent=threat-feed) and search there for this alert.

[View pricing →](https://darkwebinformer.com/pricing?utm%5Fsource=alert&utm%5Fmedium=card&utm%5Fcampaign=horizane-sante-breach-claim-2026-09-24&utm%5Fcontent=pricing-button) 

[Dark Web Informer](https://darkwebinformer.com/?utm%5Fsource=alert&utm%5Fmedium=card&utm%5Fcampaign=horizane-sante-breach-claim-2026-09-24&utm%5Fcontent=footer)