I found this tool on github:
https://github.com/hmaverickadams/breach-parse
and there is also h8mai, but just wondering if there are any other places I could go to download more dbs for offline research? I am willing to pay a small fee, but I want a site that isn’t shady and is legitimate for research.
So “technically” I don’t think downloading breach data would be legal in the U.S. at all. It’s essentially possession of stolen property.
I’m not a lawyer, but trafficking in stolen account dumps just doesn’t seem like something “reputable” sites want to do, which is why you’re normally stuck with the shady stuff.
Caveat: I could be entirely wrong about this.
There have been several sites in the past that allowed you to download confirmed breached dbs and not sites like raidforums.
There is a list of laws here: https://www.ncsl.org/technology-and-communication/security-breach-notification-laws
Great info! Thank you. :)