{
  "query": {
    "page": "18"
  },
  "count": 20,
  "total": 1018,
  "page": 18,
  "limit": 20,
  "updated": {
    "cves": "2026-10-06T12:45:42.157Z",
    "kev": "2026-10-06T12:44:41.793Z",
    "epss": "2026-10-06T12:57:42.533Z",
    "breaches": "2026-10-06T12:45:41.825Z",
    "posts": "2026-10-06T12:45:42.157Z"
  },
  "links": {
    "web": "https://spydr.io/breaches?page=18"
  },
  "warnings": [],
  "results": [
    {
      "name": "Duolingo",
      "title": "Duolingo",
      "domain": "duolingo.com",
      "breach_date": "2023-01-24",
      "added": "2023-08-23T04:31:08.000Z",
      "accounts": 2676696,
      "data_classes": [
        "Email addresses",
        "Names",
        "Spoken languages",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2023, 2.6M records of data scraped from Duolingo were broadly distributed on a popular hacking forum. Obtained by enumerating a vulnerable API, the data had earlier appeared for sale in January 2023 and contained email addresses, names, the languages being learned, XP (experience points), and other data related to learning progress on Duolingo. Whilst some of the data attributes are intentionally public, the ability to map private email addresses to them presents an ongoing risk to user privacy.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Duolingo"
    },
    {
      "name": "Atmeltomo",
      "title": "Atmeltomo",
      "domain": "atmeltomo.com",
      "breach_date": "2021-04-16",
      "added": "2023-08-22T01:29:29.000Z",
      "accounts": 580177,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In April 2021, \"Japan's largest e-mail friend search site\" Atmeltomo suffered a data breach that was later sold on a popular hacking forum. The breach exposed 1.3M records with 580k unique email addresses along with usernames, IP addresses and unsalted MD5 password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Atmeltomo"
    },
    {
      "name": "ECCIE",
      "title": "ECCIE",
      "domain": "eccie.net",
      "breach_date": "2021-07-01",
      "added": "2023-08-21T23:19:18.000Z",
      "accounts": 536923,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": true,
      "malware": false,
      "stealer_log": false,
      "description": "In January 2021, the adult escort forum ECCIE suffered a data breach which was later posted to a popular hacking forum. The data included 536k user records with email and IP addresses, usernames, dates of birth and salted MD5 password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#ECCIE"
    },
    {
      "name": "iMenu360",
      "title": "iMenu360",
      "domain": "imenu360.com",
      "breach_date": "2022-08-11",
      "added": "2023-08-17T20:55:07.000Z",
      "accounts": 3425860,
      "data_classes": [
        "Email addresses",
        "Latitude and longitude pairs",
        "Names",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In approximately late 2022, 3.4M customer records from iMenu360 (\"The world's #1 most trusted online ordering platform\") were exposed. The data appeared to be from ordering systems using the platform and contained email and physical addresses, latitudes and longitudes, names and phone numbers. Numerous attempts were made to contact iMenu360 about the incident between April and August 2023, but no response was received.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#iMenu360"
    },
    {
      "name": "Jobzone",
      "title": "Jobzone",
      "domain": "jobzone.co.il",
      "breach_date": "2023-04-15",
      "added": "2023-08-15T02:43:10.000Z",
      "accounts": 29708,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Family members' names",
        "Genders",
        "Government issued IDs",
        "Names",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In April 2023, data from the Israeli jobs website Jobzone was posted online. The data included 30k records of email addresses, names, social security numbers, genders, dates of birth, fathers' names and physical addresses.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Jobzone"
    },
    {
      "name": "Rightbiz",
      "title": "Rightbiz",
      "domain": "rightdev.co.uk",
      "breach_date": "2023-07-09",
      "added": "2023-08-10T22:11:35.000Z",
      "accounts": 65376,
      "data_classes": [
        "Email addresses",
        "Names",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In June 2023, data belonging to the \"UK's No.1 Business Marketplace\" Rightbiz appeared on a popular hacking forum. Comprising of more than 18M rows of data, the breach included 65k unique email addresses along with names, phone numbers and physical address. Rightbiz didn't respond to mulitple attempts to disclose the incident./a>.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Rightbiz"
    },
    {
      "name": "CraftRise",
      "title": "CraftRise",
      "domain": "craftrise.com.tr",
      "breach_date": "2022-03-05",
      "added": "2023-08-08T07:57:30.000Z",
      "accounts": 2532527,
      "data_classes": [
        "Email addresses",
        "Geographic locations",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In May 2023, news broke of a data breach of the Turkish Minecraft server known as CraftRise. The data of over 2.5M users was subsequently shared on a popular hacking forum and included email addresses, usernames, geographic locations and plain text passwords. The newest records indicate the data was obtained in March 2022.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#CraftRise"
    },
    {
      "name": "MagicDuel",
      "title": "MagicDuel",
      "domain": "magicduel.com",
      "breach_date": "2023-08-02",
      "added": "2023-08-02T23:22:58.000Z",
      "accounts": 138443,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Nicknames",
        "Passwords"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2023, the MagicDuel Adventure website suffered a data breach that exposed 138k user records. The data included player names, email and IP addresses and bcrypt password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#MagicDuel"
    },
    {
      "name": "BreachForums",
      "title": "BreachForums",
      "domain": "breached.vc",
      "breach_date": "2022-11-29",
      "added": "2023-07-26T21:08:55.000Z",
      "accounts": 212156,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Private messages",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In November 2022, the well-known hacking forum \"BreachForums\" was itself, breached. Later the following year, the operator of the website was arrested and the site seized by law enforcement agencies. The breach exposed 212k records including usernames, IP and email addresses, private messages between site members and passwords stored as argon2 hashes./a>.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#BreachForums"
    },
    {
      "name": "BookCrossing",
      "title": "BookCrossing",
      "domain": "bookcrossing.com",
      "breach_date": "2012-11-05",
      "added": "2023-07-25T02:24:52.000Z",
      "accounts": 1582323,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Geographic locations",
        "IP addresses",
        "Names",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2022, the book social networking site BookCrossing disclosed a data breach that dated back to a database backup from November 2012. The incident exposed almost 1.6M records including names, usernames, email and IP addresses, dates of birth and plain text passwords.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#BookCrossing"
    },
    {
      "name": "Tigo",
      "title": "Tigo",
      "domain": "tigo.chat",
      "breach_date": "2023-03-31",
      "added": "2023-07-24T23:25:32.000Z",
      "accounts": 700394,
      "data_classes": [
        "Device information",
        "Email addresses",
        "Genders",
        "Geographic locations",
        "IP addresses",
        "Names",
        "Private messages",
        "Profile photos",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In Mid-2023, 300GB of data containing over 100M records from the Chinese video chat platform \"Tigo\" dating back to March that year was discovered. The data contained over 700k unique names, usernames, email and IP addresses, genders, profile photos and private messages. Tigo did not respond to multiple attempts to disclose the incident.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Tigo"
    },
    {
      "name": "Roblox",
      "title": "Roblox",
      "domain": "roblox.com",
      "breach_date": "2016-07-31",
      "added": "2023-07-23T03:51:55.000Z",
      "accounts": 52458,
      "data_classes": [
        "Account balances",
        "Email addresses",
        "IP addresses",
        "Purchases",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2016, Roblox disclosed a data breach that affected over 50k users. The security incident impacted email and IP addresses, usernames, purchases and Robux balances which were left exposed on a test server.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Roblox"
    },
    {
      "name": "RobloxDeveloperConference",
      "title": "Roblox Developer Conference (2023)",
      "domain": "rdcglobal.com",
      "breach_date": "2020-12-18",
      "added": "2023-07-18T21:06:48.000Z",
      "accounts": 3943,
      "data_classes": [
        "Clothing sizes",
        "Dates of birth",
        "Email addresses",
        "IP addresses",
        "Names",
        "Phone numbers",
        "Physical addresses",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In July 2023, a list of alleged attendees from the 2017-2020 Roblox Developers Conferences was circulated on a forum. The data contained 4k unique email addresses along with names, usernames, dates of birth, phone numbers, physical and IP addresses and T-shirt sizes",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#RobloxDeveloperConference"
    },
    {
      "name": "Vermillion",
      "title": "Vermillion",
      "domain": "v3rmillion.net",
      "breach_date": "2014-08-30",
      "added": "2023-07-11T08:14:42.000Z",
      "accounts": 8106,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2014, the Roblox hacking forum Vermillion suffered a data breach that exposed over 8k subscriber records. The breach of the MyBB forum exposed email and IP addresses, usernames, dates of birth and salted password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Vermillion"
    },
    {
      "name": "Locally",
      "title": "Locally",
      "domain": "locally.com",
      "breach_date": "2022-10-01",
      "added": "2023-07-10T11:09:43.000Z",
      "accounts": 362619,
      "data_classes": [
        "Email addresses",
        "Partial credit card data",
        "Passwords",
        "Phone numbers",
        "Physical addresses",
        "Purchases"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In October 2022, \"The Industry's Leading Online-to-Offline Shopping Solution\" Locally suffered a data breach. Whilst Locally acknowledged the breach privately, it's unknown whether impacted customers were subsequently notified of the incident which exposed over 362k names, phone numbers, email and physical addresses, purchases, credit card type and last four digits and bcrypt password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Locally"
    },
    {
      "name": "BreachForumsClone",
      "title": "BreachForums Clone",
      "domain": "breachforums.vc",
      "breach_date": "2023-06-17",
      "added": "2023-06-25T05:47:36.000Z",
      "accounts": 4204,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In June 2023, a clone of the previously shuttered popular hacking forum \"BreachForums\" suffered a data breach that exposed over 4k records. The breach was due to an exposed backup of the MyBB database which included email and IP addresses, usernames and Argon2 password hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#BreachForumsClone"
    },
    {
      "name": "Zacks",
      "title": "Zacks",
      "domain": "zacks.com",
      "breach_date": "2020-05-10",
      "added": "2023-06-10T23:10:02.000Z",
      "accounts": 8929503,
      "data_classes": [
        "Email addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Physical addresses",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In December 2022, the investment research company Zacks announced a data breach. The following month, reports emerged of the incident impacting 820k customers. However, in June 2023, a corpus of data with almost 9M Zacks customers appeared before being broadly circulated on a popular hacking forum. The most recent data was dated May 2020 and included names, usernames, email and physical addresses, phone numbers and passwords stored as unsalted SHA-256 hashes. On disclosure of the larger breach, Zacks advised that in addition to their original report \"the unauthorised third parties also gained access to encrypted [sic] passwords of zacks.com customers, but only in the encrypted [sic] format\".",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Zacks"
    },
    {
      "name": "JDGroup",
      "title": "JD Group",
      "domain": "jdgroup.co.za",
      "breach_date": "2023-05-31",
      "added": "2023-06-05T19:47:51.000Z",
      "accounts": 521878,
      "data_classes": [
        "Email addresses",
        "Government issued IDs",
        "Names",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In May 2023, the South African retailer JD Group announced a data breach affecting a number of their online assets including Bradlows, Everyshop, HiFi Corp, Incredible (Connection), Rochester, Russells, and Sleepmasters. The breach exposed over 520k unique customer records including names, email and physical addresses, phone numbers and South African ID numbers.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#JDGroup"
    },
    {
      "name": "RaidForums",
      "title": "RaidForums",
      "domain": "raidforums.com",
      "breach_date": "2020-09-24",
      "added": "2023-05-31T01:43:34.000Z",
      "accounts": 478604,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In May 2023, 478k user records from the now defunct hacking forum known as \"RaidForums\" was posted to another hacking forum. The data dated back to September 2020 and included email addresses, usernames, dates of birth, IP addresses and passwords stored as Argon2 hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#RaidForums"
    },
    {
      "name": "PolishCredentials",
      "title": "Polish Credentials",
      "domain": null,
      "breach_date": "2023-05-29",
      "added": "2023-05-30T23:13:32.000Z",
      "accounts": 1204870,
      "data_classes": [
        "Email addresses",
        "Passwords"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In May 2023, a credential stuffing list of 6.3M Polish email address and password pairs appeared on a local forum. Likely obtained by malware running on victims' machines, each record included an email address and plain text password alongside the website the credentials were used on. The data included 1.2M unique email addresses.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#PolishCredentials"
    }
  ],
  "attribution": [
    {
      "source": "Have I Been Pwned",
      "url": "https://haveibeenpwned.com",
      "notice": "Breach data from Have I Been Pwned (haveibeenpwned.com), licensed under CC BY 4.0."
    }
  ]
}
