Aha! Data Breach Exposes Over 26,000 Customers: Here’s What We Know
Breach Date: October 1, 2024 Publish Date: March 1, 2025 Industry: eCommerce, IT Services...
Verticalscope.com and all of their domains were hacked in February of 2016
Preface Verticalscope.com and all of their domains were hacked in February of 2016....
Socialblade.com was hacked in August of 2016
Table of Contents Summary Passwords Leafyishere sub botting controversy Summary Socialblade.com...
WebHostingTalk.com, Mac-Forums.com, DbForums.com and ABestWeb.com all owned by Penton were hacked on July 4th, 2016
Preface WebHostingTalk.com, Mac-Forums.com, DbForums.com and ABestWeb.com all owned by Penton...
Shadi.com another dating site was hacked around July 10th, 2016
Preface Shortly after the hack of MuslimMatch.com, Shadi.com another dating site was hacked...
Dota2 official forums was hacked on July 10th, 2016
Table of Contents Summary Passwords Emails Summary Dota2 official forums was hacked on July...
Twitter credentials are being traded in the tens of millions on the dark web
Preface Twitter credentials are being traded in the tens of millions on the dark web....
Subdomains belonging to mail.ru were hacked in August of 2016
Table of Contents About Us Summary Passwords About us LeakedSource is already the best data...
LinkedIn.com was hacked in June 2012 and a copy of data for 167,370,910 accounts has been obtained by LeakedSource
Preface LinkedIn.com was hacked in June 2012 and a copy of data for 167,370,910 accounts has...
Two Bitcoin related websites were hacked, namely Btc-E.com and Bitcointalk.org
Summary Two Bitcoin related websites were hacked, namely Btc-E.com (a Bitcoin exchange acting...
Ohara.RU
In May 2024, Ohara, a Russian e-commerce platform specializing in outerwear, suffered a breach compromising approximately 22,000 records. Exposed data included email addresses, usernames, full names, phone numbers, birthdays, physical addresses, and passwords secured with SHA-512 hashing. Implementing advanced cybersecurity measures remains vital to safeguarding sensitive user data.
Rooftop Studios
In July 2023, Rooftop Studios, a British dance and performing arts training studio, experienced a breach compromising approximately 155,000 records containing email addresses, usernames, and PHPass hashed passwords. The incident highlights vulnerabilities in organizations handling user communications and personal data. Robust cybersecurity measures remain essential to protect sensitive information from unauthorized access.
Telegram alien ULP P699 by alien
On January 21, 2025, a stealer log titled TXTLOG_ALIEN - 699 was shared on a Telegram channel, containing approximately 52 million records. The stealer log exposed around 12 million unique email addresses, homepage URLs, and plaintext passwords. This breach highlights the pressing importance of robust cybersecurity practices to protect sensitive information from malicious actors.
Domaša City Dobrá
In September 2023, the official website of Domaša City, which provides information about local municipalities, events, and attractions around the Veľká Domaša reservoir, experienced a data breach affecting nearly 1,400 users. The compromised data included email addresses, phone numbers, usernames, full names, plaintext passwords, and geographical locations. This breach underscores the importance of strong cybersecurity measures to safeguard user information and prevent unauthorized access.
Dunavox
In October 2023, Dunavox, a Russian e-commerce website specializing in Dunavox wine cabinets, suffered a data breach that exposed 31,000 rows of data. The compromised information included email addresses, phone numbers, full names, MD5 password hashes, IP addresses, and dates. This incident highlights the importance of implementing robust cybersecurity measures to protect sensitive user data and prevent potential misuse by malicious actors.
iTeam Russia
In October 2023, iTeam, a Russian business consulting and management website, experienced a data breach affecting 14.5k users. The exposed information included email addresses, usernames, dates, and password hashes stored using bcrypt. This incident highlights the critical need for robust cybersecurity measures to protect sensitive user data and prevent unauthorized access.
Ro'ya Home
In December 2023, Ro'ya Home, an Egyptian furniture and home decoration store, experienced a breach exposing roughly 4 million lines of data and approximately 5,000 user records. Compromised information included email addresses, usernames, full names, and PHPass-hashed passwords. The incident underscores vulnerabilities in retail platforms managing customer credentials and transactional data. Robust cybersecurity measures remain critical to safeguarding sensitive user information.
Uffa Italy
Sometime in 2022, Uffa Italy, an Italian platform known for its humor and entertainment content, experienced a data breach that affected 502 users. The compromised data included email addresses, usernames, and MD5 password hashes. This incident underscores the importance of robust cybersecurity measures, such as using stronger encryption algorithms and implementing proactive security protocols, to safeguard user information against potential threats.
Orange
In February 2025, the Romanian branch of the telecommunications company Orange suffered a data breach, with the stolen data later published on a popular hacking forum. The breach exposed 556,000 email addresses (many formatted as [phone number]@as1.romtelecom.net), phone numbers, subscription details, partial credit card data (including card type, last four digits, expiration date, and issuing bank), as well as a significant number of internal documents. This incident highlights the importance of robust cybersecurity measures, such as encrypting sensitive financial and personal data, implementing strict access controls, and conducting continuous security audits to prevent unauthorized access and mitigate potential risks.
BreachForums alien ULP P851 by alien
On March 16, 2025, a stealer log named 112.322.767 MILLION PRIVATE URL:LOGIN:PASS was posted on a widely known hacking forum. The second part of the stealer log contained approximately 57.1 million records. The log disclosed around 10.08 million unique email addresses, plaintext passwords, and homepage URLs. This incident serves as a reminder of the importance of robust cybersecurity measures to protect user credentials from unauthorized access and exploitation.
Siam Cement Group
In August 2024, Siam Cement Group, a Thai conglomerate operating in cement, construction materials, chemicals, and packaging, suffered a breach compromising approximately 16,000 records. Exposed data included email addresses, phone numbers, and physical addresses. The incident highlights risks for industrial conglomerates managing sensitive corporate and client information, which could be exploited for phishing or corporate espionage. Robust cybersecurity practices are imperative to protect operational integrity and stakeholder trust in critical sectors.
PharmaCosmetica
In August 2024, PharmaCosmetica, a Russian online platform selling health and cosmetic products, suffered a breach compromising approximately 840,000 records. Exposed data included email addresses, full names, physical addresses, phone numbers, and passwords stored as MD5 hashes. The incident highlights risks to platforms handling sensitive customer data, particularly with outdated cryptographic practices. Robust cybersecurity measures remain critical to safeguarding user information.
Fastfood Bulgaria
In September 2022, Fastfood Bulgaria, an online food delivery platform, experienced a data breach that affected 2,000 users. The compromised information included email addresses, MD5 password hashes, full names, and dates. This breach underscores the importance of strong cybersecurity measures, such as secure password hashing algorithms and proactive threat monitoring, to safeguard user data from potential exploitation.
Telegram alien ULP P700 by alien
On January 21, 2025, a stealer log titled TXTLOG_ALIEN - 700 was shared on a Telegram channel. The stealer log, containing approximately 58 million records, exposed around 14 million unique email addresses, homepage URLs, and passwords stored in plain text. This breach highlights the pressing importance of robust cybersecurity practices to protect sensitive information from malicious actors.
Telegram alien ULP P804 by alien
On March 13, 2025, a stealer log titled TXTLOG_ALIEN - 804 was distributed via a Telegram channel, comprising approximately 58.5 million lines of data. The log exposed 9.62 million unique email addresses, plaintext passwords, and homepage URLs. This incident underscores the importance of robust cybersecurity practices to mitigate the risks associated with data breaches.
Nick's Chili Parlor
In March 2025, Nick's Chili Parlor, a restaurant website based in the United States, experienced a data breach affecting nearly 2,400 users. The compromised data included email addresses and full names. This breach highlights the necessity of implementing strong cybersecurity measures, such as data encryption and regular security assessments, to protect sensitive customer information from unauthorized access.
Telegram alien ULP P803 by alien
On March 13, 2025, a stealer log titled TXTLOG_ALIEN - 803 was distributed via a Telegram channel, comprising approximately 57.7 million lines of data. The log exposed 11.83 million unique email addresses, plaintext passwords, and homepage URLs. This incident underscores the importance of robust cybersecurity practices to mitigate the risks associated with data breaches.
BreachForums alien ULP P850 by alien
On March 16, 2025, a stealer log named 112.322.767 MILLION PRIVATE URL:LOGIN:PASS was posted on a widely known hacking forum. The first part of the stealer log contained approximately 55.1 million records. The log disclosed around 11.99 million unique email addresses, plaintext passwords, and homepage URLs. This incident serves as a reminder of the importance of robust cybersecurity measures to protect user credentials from unauthorized access and exploitation.
Patricia AI
In May 2024, Patricia AI, an Israeli ecommerce platform for home remodeling and design, suffered a data breach affecting approximately 9,600 records. The compromised data included email addresses, full names, and phone numbers. This incident highlights the importance of cybersecurity in emerging tech industries to protect user privacy and sensitive information.
Telegram alien ULP P698 by alien
On January 20, 2025, a stealer log titled TXTLOG_ALIEN - 698 was shared on a Telegram channel. The stealer log, containing approximately 48 million records, exposed around 12.7 million unique email addresses, homepage URLs, and passwords stored in plain text. This breach highlights the ongoing risks posed by credential-stealing malware and the necessity for organizations and individuals to prioritize cybersecurity to mitigate potential data exposure.