Breaches

Data breaches as they’re disclosed and verified, newest additions first — who was breached, how many accounts, and what was exposed.

1,020 breaches · updated 3 hours ago · data from Have I Been Pwned (CC BY 4.0)

1,020 breaches · page 50 of 51 Fabricated, spam-list and retired breaches are left out.
  • Quantum Booter 49K accounts
    Added 4 Apr 2015 breached 18 Mar 2014 quantumbooter.net

    In March 2014, the booter service Quantum Booter (also referred to as Quantum Stresser) suffered a breach which lead to the disclosure of their internal database. The leaked data included private discussions relating to malicious activity Quantum Booter users were performing against online adversaries, including the IP addresses of those using the service to mount DDoS attacks.

    Email addresses · IP addresses · Passwords · Private messages · Usernames · Website activity

  • ThisHabbo Forum 612K accounts
    Added 28 Mar 2015 breached 1 Jan 2014 thishabboforum.com

    In 2014, the ThisHabbo forum (a fan site for Habbo.com, a Finnish social networking site) appeared among a list of compromised sites which has subsequently been removed from the internet. Whilst the actual date of the exploit is not clear, the breached data includes usernames, email addresses, IP addresses and salted hashes of passwords. A further 584k records were added from a more comprehensive breach file provided in October 2016.

    Email addresses · IP addresses · Passwords · Usernames

  • Flashback 40K accounts
    Added 12 Feb 2015 breached 11 Feb 2015 flashback.se

    In February 2015, the Swedish forum known as Flashback had sensitive internal data on 40k members published via the tabloid newspaper Aftonbladet. The data was allegedly sold to them via Researchgruppen (The Research Group) who have a history of exposing otherwise anonymous users, primarily those who they believe participate in "troll like" behaviour. The compromised data includes social security numbers, home and email addresses.

    Email addresses · Government issued IDs · Physical addresses

  • Crack Community 19K accounts
    Added 3 Feb 2015 breached 9 Sept 2013 crackcommunity.com

    In late 2013, the Crack Community forum specialising in cracks for games was compromised and over 19k accounts published online. Built on the MyBB forum platform, the compromised data included email addresses, IP addresses and salted MD5 passwords.

    Email addresses · IP addresses · Passwords · Usernames · Website activity

  • Lizard Squad 13K accounts
    Added 18 Jan 2015 breached 16 Jan 2015 lizardstresser.su

    In January 2015, the hacker collective known as "Lizard Squad" created a DDoS service by the name of "Lizard Stresser" which could be procured to mount attacks against online targets. Shortly thereafter, the service suffered a data breach which resulted in the public disclosure of over 13k user accounts including passwords stored in plain text.

    Email addresses · Passwords · Usernames

  • Domino's 648K accounts
    Added 4 Jan 2015 breached 13 Jun 2014 pizza.dominos.be

    In June 2014, Domino's Pizza in France and Belgium was hacked by a group going by the name "Rex Mundi" and their customer data held to ransom. Domino's refused to pay the ransom and six months later, the attackers released the data along with troves of other hacked accounts. Amongst the customer data was passwords stored with a weak MD5 hashing algorithm and no salt.

    Email addresses · Names · Passwords · Phone numbers · Physical addresses

  • AhaShare.com 180K accounts
    Added 6 Nov 2014 breached 30 May 2013 ahashare.com

    In May 2013, the torrent site AhaShare.com suffered a breach which resulted in more than 180k user accounts being published publicly. The breach included a raft of personal information on registered users plus despite assertions of not distributing personally identifiable information, the site also leaked the IP addresses used by the registered identities.

    Email addresses · Genders · Geographic locations · IP addresses · Partial dates of birth · Passwords · Usernames · Website activity

  • Yandex Dump 1.2M accounts
    Added 12 Sept 2014 breached 7 Sept 2014 forum.btcsec.com

    In September 2014, news broke of a massive leak of accounts from Yandex, the Russian search engine giants who also provides email services. The purported million "breached" accounts were disclosed at the same time as nearly 5M mail.ru accounts with both companies claiming the credentials were acquired via phishing scams rather than being obtained as a result of direct attacks against their services.

    Email addresses · Passwords

  • mail.ru Dump 16.6M accounts
    Added 12 Sept 2014 breached 10 Sept 2014 mail.ru unverified

    In September 2014, several large dumps of user accounts appeared on the Russian Bitcoin Security Forum including one with nearly 5M email addresses and passwords, predominantly on the mail.ru domain. Whilst unlikely to be the result of a direct attack against mail.ru, the credentials were confirmed by many as legitimate for other services they had subscribed to. Further data allegedly valid for mail.ru and containing email addresses and plain text passwords was added in January 2018 bringing to total to more than 16M records. The incident was also then flagged as "unverified", a concept that was introduced after the initial data load in 2014.

    Email addresses · Passwords

  • Added 10 Sept 2014 breached 9 Jan 2014 forum.btcsec.com

    In September 2014, a large dump of nearly 5M usernames and passwords was posted to a Russian Bitcoin forum. Whilst commonly reported as 5M "Gmail passwords", the dump also contained 123k yandex.ru addresses. Whilst the origin of the breach remains unclear, the breached credentials were confirmed by multiple source as correct, albeit a number of years old.

    Email addresses · Passwords

  • Pokémon Creed 116K accounts
    Added 10 Aug 2014 breached 8 Aug 2014 pokemoncreed.net

    In August 2014, the Pokémon RPG website Pokémon Creed was hacked after a dispute with rival site, Pokémon Dusk. In a post on Facebook, "Cruz Dusk" announced the hack then pasted the dumped MySQL database on pkmndusk.in. The breached data included over 116k usernames, email addresses and plain text passwords.

    Email addresses · Genders · IP addresses · Passwords · Usernames · Website activity

  • Insanelyi 104K accounts
    Added 22 Jul 2014 breached 22 Jul 2014 insanelyi.com

    In July 2014, the iOS forum Insanelyi was hacked by an attacker known as Kim Jong-Cracks. A popular source of information for users of jailbroken iOS devices running Cydia, the Insanelyi breach disclosed over 104k users' emails addresses, user names and weakly hashed passwords (salted MD5).

    Email addresses · Passwords · Usernames · Website activity

  • Lounge Board 45K accounts
    Added 6 Jul 2014 breached 1 Aug 2013 loungeboard.net

    At some point in 2013, 45k accounts were breached from the Lounge Board "General Discussion Forum" and then dumped publicly. Lounge Board was a MyBB forum launched in 2012 and discontinued in mid 2013 (the last activity in the logs was from August 2013).

    Email addresses · IP addresses · Names · Passwords · Private messages · Usernames · Website activity

  • Verified 17K accounts
    Added 6 Jul 2014 breached 10 Jan 2014 verified.cm

    In January 2014, one of the largest communities of Eastern Europe cybercriminals known as "Verified" was hacked. The breach exposed nearly 17k users of the vBulletin forum including their personal messages and other potentially personally identifiable information.

    Email addresses · Historical passwords · IP addresses · Passwords · Private messages · Usernames · Website activity

  • Astropid 6K accounts
    Added 6 Jul 2014 breached 19 Dec 2013 astropid.com

    In December 2013, the vBulletin forum for the social engineering site known as "AstroPID" was breached and leaked publicly. The site provided tips on fraudulently obtaining goods and services, often by providing a legitimate "PID" or Product Information Description. The breach resulted in nearly 6k user accounts and over 220k private messages between forum members being exposed.

    Email addresses · Instant messenger identities · IP addresses · Names · Passwords · Private messages · Usernames · Website activity

  • Manga Traders 855K accounts
    Added 10 Jun 2014 breached 9 Jun 2014 mangatraders.com

    In June 2014, the Manga trading website Mangatraders.com had the usernames and passwords of over 900k users leaked on the internet (approximately 855k of the emails were unique). The passwords were weakly hashed with a single iteration of MD5 leaving them vulnerable to being easily cracked.

    Email addresses · Passwords

  • Win7Vista Forum 203K accounts
    Added 1 Jun 2014 breached 3 Sept 2013 win7vista.com

    In September 2013, the Win7Vista Windows forum (since renamed to the "Beyond Windows 9" forum) was hacked and later had its internal database dumped. The dump included over 200k members’ personal information and other internal data extracted from the forum.

    Email addresses · Instant messenger identities · IP addresses · Names · Passwords · Private messages · Usernames · Website activity

  • Cannabis.com 228K accounts
    Added 1 Jun 2014 breached 5 Feb 2014 cannabis.com

    In February 2014, the vBulletin forum for the Marijuana site cannabis.com was breached and leaked publicly. Whilst there has been no public attribution of the breach, the leaked data included over 227k accounts and nearly 10k private messages between users of the forum.

    Dates of birth · Email addresses · Geographic locations · Historical passwords · Instant messenger identities · IP addresses · Passwords · Private messages · Usernames · Website activity

  • hackforums.net 192K accounts
    Added 11 May 2014 breached 25 Jun 2011 hackforums.net

    In June 2011, the hacktivist group known as "LulzSec" leaked one final large data breach they titled "50 days of lulz". The compromised data came from sources such as AT&T, Battlefield Heroes and the hackforums.net website. The leaked Hack Forums data included credentials and personal information of nearly 200,000 registered forum users.

    Dates of birth · Email addresses · Instant messenger identities · IP addresses · Passwords · Social connections · Spoken languages · Time zones · User website URLs · Usernames · Website activity

  • Added 11 May 2014 breached 25 Apr 2014 businessacumen.biz

    In April 2014, the Australian "Business Acumen Magazine" website was hacked by an attacker known as 1337MiR. The breach resulted in over 26,000 accounts being exposed including usernames, email addresses and password stored with a weak cryptographic hashing algorithm (MD5 with no salt).

    Email addresses · Names · Passwords · Usernames · Website activity