{
  "query": {
    "page": "15"
  },
  "count": 20,
  "total": 1018,
  "page": 15,
  "limit": 20,
  "updated": {
    "cves": "2026-10-06T08:45:32.201Z",
    "kev": "2026-10-06T09:44:34.321Z",
    "epss": "2026-10-06T06:57:27.860Z",
    "breaches": "2026-10-06T06:45:27.314Z",
    "posts": "2026-10-06T09:45:34.451Z"
  },
  "links": {
    "web": "https://spydr.io/breaches?page=15"
  },
  "warnings": [],
  "results": [
    {
      "name": "GSMHosting",
      "title": "GSM Hosting",
      "domain": "gsmhosting.com",
      "breach_date": "2016-08-01",
      "added": "2024-03-27T06:23:58.000Z",
      "accounts": 2607440,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2016, breached data from the vBulletin forum for GSM-Hosting appeared for sale alongside dozens of other hacked services. The breach impacted 2.6M users of the service and included email and IP addresses, usernames and salted MD5 password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#GSMHosting"
    },
    {
      "name": "SwordFantasy",
      "title": "SwordFantasy",
      "domain": "swordfantasy.com",
      "breach_date": "2017-01-20",
      "added": "2024-03-26T08:31:58.000Z",
      "accounts": 2690657,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In January 2019, the now defunct MMO and RPG game SwordFantasy suffered a data breach that exposed 2.7M unique email addresses. Other impacted data included username, IP address and salted MD5 password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#SwordFantasy"
    },
    {
      "name": "MediaWorks",
      "title": "MediaWorks",
      "domain": "mediaworks.co.nz",
      "breach_date": "2023-03-15",
      "added": "2024-03-22T06:43:09.000Z",
      "accounts": 162710,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Genders",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In March 2024, millions of rows of data from the New Zealand media company MediaWorks was publicly posted to a popular hacking forum. The incident exposed 163k unique email addresses provided by visitors who filled out online competitions and included names, physical addresses, phone numbers, dates of birth, genders and the responses to questions in the competition. Some victims of the breach subsequently received ransom demands requesting payment to have their data deleted.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#MediaWorks"
    },
    {
      "name": "AllegedATT",
      "title": "AT&T",
      "domain": null,
      "breach_date": "2021-08-20",
      "added": "2024-03-19T06:30:49.000Z",
      "accounts": 49102176,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Government issued IDs",
        "Names",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In March 2024, tens of millions of records allegedly breached from AT&T were posted to a popular hacking forum. Dating back to August 2021, the data was originally posted for sale before later being freely released. At the time, AT&T maintained that there had not been a breach of their systems and that the data originated from elsewhere. 12 days later, AT&T acknowledged that data fields specific to them were in the breach and that it was not yet known whether the breach occurred at their end or that of a vendor. AT&T also proceeded to reset customer account passcodes, an indicator that there was sufficient belief passcodes had been compromised. The incident exposed names, email and physical addresses, dates of birth, phone numbers and US social security numbers.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#AllegedATT"
    },
    {
      "name": "ClickASnap",
      "title": "ClickASnap",
      "domain": "clickasnap.com",
      "breach_date": "2022-09-24",
      "added": "2024-03-13T03:47:22.000Z",
      "accounts": 3262980,
      "data_classes": [
        "Email addresses",
        "Names",
        "Passwords",
        "Physical addresses",
        "Purchases",
        "Social media profiles",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In September 2022, the online photo sharing platform ClickASnap suffered a data breach. The incident exposed almost 3.3M personal records including email addresses, usernames and passwords stored as SHA-512 hashes. Further, a collection of paid subscriptions were also included and contained names, physical addresses and amounts paid.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#ClickASnap"
    },
    {
      "name": "Flipkart",
      "title": "Misattributed Flipkart Data",
      "domain": null,
      "breach_date": "2022-09-02",
      "added": "2024-03-12T05:09:11.000Z",
      "accounts": 552094,
      "data_classes": [
        "Email addresses",
        "Geographic locations",
        "Latitude and longitude pairs",
        "Names",
        "Phone numbers"
      ],
      "verified": false,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In September 2022, over 500k customer records alleged to have been sourced from the Indian e-commerce service Flipkart appeared on a popular hacking forum. Flipkart subsequently reviewed the data and concluded there was minimal overlap with their subscriber base and was not sourced from their services. The data included email addresses, latitudes and longitudes, names and phone numbers.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Flipkart"
    },
    {
      "name": "Habibs",
      "title": "Misattributed Habib's Data",
      "domain": "habibs.com.br",
      "breach_date": "2021-08-05",
      "added": "2024-03-10T03:31:15.000Z",
      "accounts": 3517679,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "IP addresses",
        "Names",
        "Phone numbers",
        "Social media profiles"
      ],
      "verified": false,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2021, an allegation was made that the Brazilian fast food company \"Habib's\" had suffered a data breach that was later redistributed as part of a larger corpus of data. Upon thorough investigation, parent company Gennius concluded that the information in the breach was not related to any databases that hold their customers' personal information and had been misattributed to Habib's. The corpus of data contained 3.5M unique email addresses along with IP addresses, names, phone numbers, dates of birth and links to social media profiles.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Habibs"
    },
    {
      "name": "APKTW",
      "title": "APK.TW",
      "domain": "apk.tw",
      "breach_date": "2022-09-03",
      "added": "2024-03-09T00:17:54.000Z",
      "accounts": 2451197,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In September 2022, the Taiwanese Android forum APK.TW suffered a data breach that was later redistributed as part of a larger corpus of data. The breach exposed 2.5M unique email addresses along with IP addresses, usernames and salted MD5 password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#APKTW"
    },
    {
      "name": "OnlineTrade",
      "title": "Online Trade (Онлайн Трейд)",
      "domain": "onlinetrade.ru",
      "breach_date": "2022-09-19",
      "added": "2024-03-07T06:51:12.000Z",
      "accounts": 3805265,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "IP addresses",
        "Names",
        "Passwords",
        "Phone numbers"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In September 2022, the Russian e-commerce website Online Trade (Онлайн Трейд) suffered a data breach that exposed 3.8M customer records. The data included email and IP addresses, names, phone numbers, dates of birth and MD5 password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#OnlineTrade"
    },
    {
      "name": "WoTLabs",
      "title": "WoTLabs",
      "domain": "wotlabs.net",
      "breach_date": "2024-03-03",
      "added": "2024-03-07T03:32:45.000Z",
      "accounts": 21994,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "IP addresses",
        "Time zones",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In March 2024, WoTLabs (World of Tanks Statistics and Resources) suffered a data breach and website defacement attributed to \"chromebook breachers\". The breach exposed 22k forum members' personal data including email and IP addresses, usernames, dates of birth and time zones.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#WoTLabs"
    },
    {
      "name": "MrGreenGaming",
      "title": "Mr. Green Gaming",
      "domain": "mrgreengaming.com",
      "breach_date": "2024-03-01",
      "added": "2024-03-03T06:28:42.000Z",
      "accounts": 27123,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Geographic locations",
        "IP addresses",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In March 2024, the online games community Mr. Green Gaming suffered a data breach that exposed 27k user records. Acknowledged on their Discord server, the incident exposed email and IP addresses, usernames, geographic locations and dates of birth.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#MrGreenGaming"
    },
    {
      "name": "CutoutPro",
      "title": "Cutout.Pro",
      "domain": "cutout.pro",
      "breach_date": "2024-02-26",
      "added": "2024-02-28T22:16:27.000Z",
      "accounts": 19972829,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Names",
        "Passwords"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In February 2024, the AI-powered visual design platform Cutout.Pro suffered a data breach that exposed 20M records. The data included email and IP addresses, names and salted MD5 password hashes which were subsequently broadly distributed on a popular hacking forum and Telegram channels.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#CutoutPro"
    },
    {
      "name": "Tangerine",
      "title": "Tangerine",
      "domain": "tangerinetelecom.com.au",
      "breach_date": "2024-02-18",
      "added": "2024-02-28T01:42:43.000Z",
      "accounts": 243462,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Physical addresses",
        "Salutations"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In February 2024, the Australian Telco Tangerine suffered a data breach that exposed over 200k customer records. Attributed to a legacy customer database, the data included physical and email addresses, names, phone numbers and dates of birth. Whilst the Tangerine login process involves sending a one-time password after entering an email address and phone number, it previously used a traditional password which was also exposed as a bcrypt hash.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Tangerine"
    },
    {
      "name": "FacebookMarketplace",
      "title": "Facebook Marketplace",
      "domain": "facebook.com",
      "breach_date": "2023-10-01",
      "added": "2024-02-22T00:53:37.000Z",
      "accounts": 77267,
      "data_classes": [
        "Email addresses",
        "Geographic locations",
        "Names",
        "Passwords",
        "Phone numbers",
        "Social media profiles"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In February 2024, 200k Facebook Marketplace records allegedly obtained from a Meta contractor in October 2023 were posted to a popular hacking forum. The data contained 77k unique email addresses alongside names, phone numbers, Facebook profile IDs and geographic locations. The data also contained bcrypt password hashes, although there is no indication these belong to the corresponding Facebook accounts.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#FacebookMarketplace"
    },
    {
      "name": "Spoutible",
      "title": "Spoutible",
      "domain": "spoutible.com",
      "breach_date": "2024-01-31",
      "added": "2024-02-05T07:33:00.000Z",
      "accounts": 207114,
      "data_classes": [
        "Email addresses",
        "Genders",
        "IP addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In January 2024, Spoutible had 207k records scraped from a misconfigured API that inadvertently returned excessive personal information. The data included names, usernames, email and IP addresses, phone numbers (where provided to the platform), genders and bcrypt password hashes. The incident also exposed 2FA secrets and backup codes along with password reset tokens.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Spoutible"
    },
    {
      "name": "MyPertamina",
      "title": "MyPertamina",
      "domain": "mypertamina.id",
      "breach_date": "2022-11-01",
      "added": "2024-01-27T05:19:27.000Z",
      "accounts": 5970416,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Genders",
        "Names",
        "Phone numbers",
        "Physical addresses",
        "Purchases"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In November 2022, the Indonesian oil and gas company Pertamina suffered a data breach of their MyPertamina service. The incident exposed 44M records with 6M unique email addresses along with names, dates of birth, genders, physical addresses and purchases.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#MyPertamina"
    },
    {
      "name": "Trello",
      "title": "Trello",
      "domain": "trello.com",
      "breach_date": "2024-01-16",
      "added": "2024-01-22T19:41:05.000Z",
      "accounts": 15111945,
      "data_classes": [
        "Email addresses",
        "Names",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In January 2024, data was scraped from Trello and posted for sale on a popular hacking forum. Containing over 15M email addresses, names and usernames, the data was obtained by enumerating a publicly accessible resource using email addresses from previous breach corpuses. Trello advised that no unauthorised access had occurred.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Trello"
    },
    {
      "name": "NazApi",
      "title": "Naz.API",
      "domain": null,
      "breach_date": "2023-09-20",
      "added": "2024-01-17T13:24:27.000Z",
      "accounts": 70840771,
      "data_classes": [
        "Email addresses",
        "Passwords"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In September 2023, over 100GB of stealer logs and credential stuffing lists titled \"Naz.API\" was posted to a popular hacking forum. The incident contained a combination of email address and plain text password pairs alongside the service they were entered into, and standalone credential pairs obtained from unnamed sources. In total, the corpus of data included 71M unique email addresses and 100M unique passwords.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#NazApi"
    },
    {
      "name": "Hathway",
      "title": "Hathway",
      "domain": "hathway.com",
      "breach_date": "2023-12-17",
      "added": "2024-01-12T09:34:25.000Z",
      "accounts": 4670080,
      "data_classes": [
        "Device information",
        "Email addresses",
        "IP addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Physical addresses",
        "Salutations",
        "Support tickets"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In December 2023, hundreds of gigabytes of data allegedly taken from Indian ISP and digital TV provider Hathway appeared on a popular hacking website. The incident exposed extensive personal information including 4.7M unique email addresses along with names, physical and IP addresses, phone numbers, password hashes and support ticket logs.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Hathway"
    },
    {
      "name": "LegendasTV",
      "title": "Legendas.TV",
      "domain": "legendas.tv",
      "breach_date": "2017-10-01",
      "added": "2024-01-04T17:10:04.000Z",
      "accounts": 3869181,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Names",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In October 2017, the now defunct Brazilian service for retrieving subtitles in Portuguese Legendas.TV suffered a data breach that exposed nearly 4M customer records. The impacted data included names, usernames, email and IP addresses and unsalted SHA-1 hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#LegendasTV"
    }
  ],
  "attribution": [
    {
      "source": "Have I Been Pwned",
      "url": "https://haveibeenpwned.com",
      "notice": "Breach data from Have I Been Pwned (haveibeenpwned.com), licensed under CC BY 4.0."
    }
  ]
}
