{
  "query": {
    "page": "28"
  },
  "count": 20,
  "total": 1018,
  "page": 28,
  "limit": 20,
  "updated": {
    "cves": "2026-10-07T00:46:23.556Z",
    "kev": "2026-10-07T00:45:23.006Z",
    "epss": "2026-10-07T00:58:23.423Z",
    "breaches": "2026-10-07T00:46:23.055Z",
    "posts": "2026-10-07T00:46:23.555Z"
  },
  "links": {
    "web": "https://spydr.io/breaches?page=28"
  },
  "warnings": [],
  "results": [
    {
      "name": "Cit0day",
      "title": "Cit0day",
      "domain": "cit0day.in",
      "breach_date": "2020-11-04",
      "added": "2020-11-19T08:07:33.000Z",
      "accounts": 226883414,
      "data_classes": [
        "Email addresses",
        "Passwords"
      ],
      "verified": false,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In November 2020, a collection of more than 23,000 allegedly breached websites known as Cit0day were made available for download on several hacking forums. The data consisted of 226M unique email address alongside password pairs, often represented as both password hashes and the cracked, plain text versions. Independent verification of the data established it contains many legitimate, previously undisclosed breaches. The data was provided to HIBP by dehashed.com.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Cit0day"
    },
    {
      "name": "123RF",
      "title": "123RF",
      "domain": "123rf.com",
      "breach_date": "2020-03-22",
      "added": "2020-11-15T00:59:50.000Z",
      "accounts": 8661578,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Physical addresses",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In March 2020, the stock photo site 123RF suffered a data breach which impacted over 8 million subscribers and was subsequently sold online. The breach included email, IP and physical addresses, names, phone numbers and passwords stored as MD5 hashes. The data was provided to HIBP by dehashed.com.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#123RF"
    },
    {
      "name": "HomeChef",
      "title": "Home Chef",
      "domain": "homechef.com",
      "breach_date": "2020-02-10",
      "added": "2020-11-13T03:41:24.000Z",
      "accounts": 8815692,
      "data_classes": [
        "Email addresses",
        "Geographic locations",
        "IP addresses",
        "Names",
        "Partial credit card data",
        "Passwords",
        "Phone numbers"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In early 2020, the food delivery service Home Chef suffered a data breach which was subsequently sold online. The breach exposed the personal information of almost 9 million customers including names, IP addresses, post codes, the last 4 digits of credit card numbers and passwords stored as bcrypt hashes. The data was provided to HIBP by dehashed.com.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#HomeChef"
    },
    {
      "name": "AnimalJam",
      "title": "Animal Jam",
      "domain": "animaljam.com",
      "breach_date": "2020-10-12",
      "added": "2020-11-12T01:18:50.000Z",
      "accounts": 7104998,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Genders",
        "IP addresses",
        "Names",
        "Passwords",
        "Physical addresses",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In October 2020, the online game for kids Animal Jam suffered a data breach which was subsequently shared through online hacking communities the following month. The data contained 46 million user accounts with over 7 million unique email addresses. Impacted data also included usernames, IP addresses and for some records, dates of birth (sometimes in partial form), physical addresses, parent names and passwords stored as PBKDF2 hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#AnimalJam"
    },
    {
      "name": "Mashable",
      "title": "Mashable",
      "domain": "mashable.com",
      "breach_date": "2020-06-01",
      "added": "2020-11-10T04:33:56.000Z",
      "accounts": 1414677,
      "data_classes": [
        "Auth tokens",
        "Email addresses",
        "Genders",
        "Geographic locations",
        "IP addresses",
        "Names",
        "Partial dates of birth",
        "Social media profiles"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In approximately mid-2020, Mashable suffered a data breach that subsequently turned up publicly in November 2020. The data included 1.4 million unique email addresses along with names, genders, expired auth tokens, physical locations, links to social media profiles and days and months of birth. The data was provided to HIBP by dehashed.com.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Mashable"
    },
    {
      "name": "Lazada",
      "title": "Lazada RedMart",
      "domain": "redmart.lazada.sg",
      "breach_date": "2020-07-30",
      "added": "2020-11-10T00:58:49.000Z",
      "accounts": 1107789,
      "data_classes": [
        "Email addresses",
        "Names",
        "Partial credit card data",
        "Passwords",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In October 2020, news broke of Lazada RedMart data breach containing records as recent as July 2020 and being sold via an online marketplace. In all, the data contained 1.1 million customer email addresses alongside names, phone numbers, physical addresses, partial credit card numbers and passwords stored as SHA-1 hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Lazada"
    },
    {
      "name": "James",
      "title": "James",
      "domain": "jamesdelivery.com.br",
      "breach_date": "2020-03-25",
      "added": "2020-11-05T04:34:51.000Z",
      "accounts": 1541284,
      "data_classes": [
        "Email addresses",
        "Geographic locations",
        "Latitude and longitude pairs",
        "Passwords"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In June 2020, 14 previously undisclosed data breaches appeared for sale including the Brazilian delivery service, \"James\". The breach occurred in March 2020 and exposed 1.5M unique email addresses, customer locations expressed in longitude and latitude and passwords stored as bcrypt hashes. The data was provided to HIBP by dehashed.com.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#James"
    },
    {
      "name": "Wongnai",
      "title": "Wongnai",
      "domain": "wongnai.com",
      "breach_date": "2020-10-28",
      "added": "2020-11-04T21:14:50.000Z",
      "accounts": 3924454,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Geographic locations",
        "IP addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Social media profiles"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In October 2020, 17 previously undisclosed data breaches appeared for sale including the Thai restaurant, hotel and attraction finding service, Wongnai. The breach exposed almost 4M unique customer records from some time during 2020 along with names, phone numbers, links to social media profiles and passwords stored as MD5 hashes. The data was self-submitted to HIBP by Wongnai.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Wongnai"
    },
    {
      "name": "Minted",
      "title": "Minted",
      "domain": "minted.com",
      "breach_date": "2020-05-06",
      "added": "2020-11-03T06:21:01.000Z",
      "accounts": 4418182,
      "data_classes": [
        "Email addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In May 2020, the online marketplace for independent artists Minted suffered a data breach that exposed 4.4M unique customer records subsequently sold on a dark web marketplace. Exposed data also included names, physical addresses, phone numbers and passwords stored as bcrypt hashes. The data was provided to HIBP by dehashed.com.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Minted"
    },
    {
      "name": "Promofarma",
      "title": "Promofarma",
      "domain": "promofarma.com",
      "breach_date": "2019-08-03",
      "added": "2020-11-01T07:11:46.000Z",
      "accounts": 1277761,
      "data_classes": [
        "Email addresses",
        "Names"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2019, a data breach from the Spanish online pharmacy Promofarma appeared for sale on a dark web marketplace. The breach exposed over 2.7M records and contained almost 1.3M unique customer email addresses. The data also included customer names and was provided to HIBP by dehashed.com.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Promofarma"
    },
    {
      "name": "StarTribune",
      "title": "StarTribune",
      "domain": "startribune.com",
      "breach_date": "2019-10-10",
      "added": "2020-10-30T23:30:39.000Z",
      "accounts": 2192857,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "Genders",
        "Names",
        "Passwords",
        "Physical addresses",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In October 2019, the Minnesota-based news service StarTribune suffered a data breach which was subsequently sold on the dark web. The breach exposed over 2 million unique email addresses alongside names, usernames, physical addresses, dates of birth, genders and passwords stored as bcrypt hashes. The data was provided to HIBP by dehashed.com.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#StarTribune"
    },
    {
      "name": "Reincubate",
      "title": "Reincubate",
      "domain": "reincubate.com",
      "breach_date": "2017-05-11",
      "added": "2020-10-29T06:01:21.000Z",
      "accounts": 616146,
      "data_classes": [
        "Email addresses",
        "Names",
        "Passwords"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In October 2020, the app data company Reincubate suffered a data breach which exposed a backup from November 2017 (the newest record in the data appeared several months earlier). The data included over 616k unique email addresses, names and passwords stored as PBKDF2 hashes.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Reincubate"
    },
    {
      "name": "Chowbus",
      "title": "Chowbus",
      "domain": "chowbus.com",
      "breach_date": "2020-10-05",
      "added": "2020-10-06T06:07:45.000Z",
      "accounts": 444224,
      "data_classes": [
        "Email addresses",
        "Names",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In October 2020, the Asian food delivery app Chowbus suffered a data breach which led to over 800,000 records being emailed to customers. The email contained a link to a CSV file with customer data including physical addresses, names, phone numbers and over 444,000 unique email addresses.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Chowbus"
    },
    {
      "name": "WiziShop",
      "title": "WiziShop",
      "domain": "wizishop.fr",
      "breach_date": "2020-07-14",
      "added": "2020-10-05T03:42:29.000Z",
      "accounts": 2856769,
      "data_classes": [
        "Dates of birth",
        "Email addresses",
        "IP addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Physical addresses"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In July 2020, the French e-commerce platform WiziShop suffered a data breach. The breach exposed 18GB worth of data including names, phone numbers, dates of birth, physical and IP addresses, SHA-1 password hashes and almost 3 million unique email addresses.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#WiziShop"
    },
    {
      "name": "Experian2020",
      "title": "Experian (South Africa)",
      "domain": null,
      "breach_date": "2020-08-19",
      "added": "2020-09-01T23:39:52.000Z",
      "accounts": 1284637,
      "data_classes": [
        "Email addresses",
        "Employers",
        "Government issued IDs",
        "Names",
        "Occupations",
        "Phone numbers"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2020, Experian South Africa suffered a data breach which exposed the personal information of tens of millions of individuals. Only 1.3M of the records contained email addresses, whilst most contained government issued identity numbers, names, addresses, occupations and employers, amongst other person information.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Experian2020"
    },
    {
      "name": "LiveAuctioneers",
      "title": "LiveAuctioneers",
      "domain": "liveauctioneers.com",
      "breach_date": "2020-06-19",
      "added": "2020-08-22T04:38:40.000Z",
      "accounts": 3385862,
      "data_classes": [
        "Email addresses",
        "IP addresses",
        "Names",
        "Passwords",
        "Phone numbers",
        "Physical addresses",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In June 2020, the online antiques marketplace LiveAuctioneers suffered a data breach which was subsequently sold online then extensively redistributed in the hacking community. The data contained 3.4 million records including names, email and IP addresses, physical addresses, phones numbers and passwords stored as unsalted MD5 hashes. The data was provided to HIBP by breachbase.pw.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#LiveAuctioneers"
    },
    {
      "name": "UnicoCampania",
      "title": "Unico Campania",
      "domain": "unicocampania.it",
      "breach_date": "2020-08-19",
      "added": "2020-08-19T23:29:21.000Z",
      "accounts": 166031,
      "data_classes": [
        "Email addresses",
        "Passwords"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In August 2020, the Neapolitan public transport website Unico Campania was hacked and the data extensively circulated. The breach contained 166k user records with email addresses and plain text passwords.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#UnicoCampania"
    },
    {
      "name": "UtahGunExchange",
      "title": "Utah Gun Exchange",
      "domain": "utahgunexchange.com",
      "breach_date": "2020-07-17",
      "added": "2020-08-19T07:56:09.000Z",
      "accounts": 235233,
      "data_classes": [
        "Email addresses",
        "Genders",
        "IP addresses",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In July 2020, the Utah Gun Exchange website suffered a data breach which included several other associated websites. In total, 235k unique email addresses were exposed before being traded online alongside names, usernames, genders, IP addresses and password hashes. The data was provided to HIBP by breachbase.pw.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#UtahGunExchange"
    },
    {
      "name": "Catho",
      "title": "Catho",
      "domain": "catho.com.br",
      "breach_date": "2020-03-01",
      "added": "2020-08-18T22:52:39.000Z",
      "accounts": 1173012,
      "data_classes": [
        "Email addresses",
        "Names",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In approximately March 2020, the Brazilian recruitment website Catho was compromised and subsequently appeared alongside 20 other breached websites listed for sale on a dark web marketplace. The breach included almost 11 million records with 1.2 million unique email addresses. Names, usernames and plain text passwords were also exposed. The data was provided to HIBP by breachbase.pw.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Catho"
    },
    {
      "name": "Sonicbids",
      "title": "Sonicbids",
      "domain": "sonicbids.com",
      "breach_date": "2019-12-30",
      "added": "2020-08-18T07:39:37.000Z",
      "accounts": 751700,
      "data_classes": [
        "Email addresses",
        "Names",
        "Passwords",
        "Usernames"
      ],
      "verified": true,
      "sensitive": false,
      "malware": false,
      "stealer_log": false,
      "description": "In December 2019, the booking website Sonicbids suffered a data breach which they attributed to \"a data privacy event involving our third-party cloud hosting services\". The breach contained 752k user records including names and usernames, email addresses and passwords stored as PBKDF2 hashes. The data was provided to HIBP by breachbase.pw.",
      "source": "Have I Been Pwned (haveibeenpwned.com), CC BY 4.0",
      "source_url": "https://haveibeenpwned.com/PwnedWebsites#Sonicbids"
    }
  ],
  "attribution": [
    {
      "source": "Have I Been Pwned",
      "url": "https://haveibeenpwned.com",
      "notice": "Breach data from Have I Been Pwned (haveibeenpwned.com), licensed under CC BY 4.0."
    }
  ]
}
