While the exact contents can vary based on the specific version of the dump, similar datasets under this name typically include: Email addresses and usernames.
In some variations, this may include names or phone numbers associated with Italian domains (e.g., @libero.it, @virgilio.it).
Hackers use automated bots to test the leaked email/password pairs on other Italian websites, such as banking portals or government services.
The inclusion of ID scans in recent Italian leaks makes affected individuals highly vulnerable to fraudulent loan applications or account takeovers.