Badoo.com was hacked
Preface Badoo.com was hacked. LeakedSource has obtained and added a copy of this data to its...
VK.com was hacked
Preface VK.com was hacked. LeakedSource has obtained and added a copy of this data to its...
Gaming company Evony was hacked for a total of 33,407,472 users from its main game database in June of 2016
Table of Contents Summary Passwords Emails More databases Summary Gaming company Evony was...
Nearly 100 million records have been leaked online in yet another “mega breach”, this time from the website Rambler.ru
Table of Contents Summary Passwords Misc Summary Nearly 100 million records have been leaked...
Well known San-Francisco based “drag-n-drop” website creator Weebly.com had information on 43,430,316 users leaked from its main database in February of 2016
Table of Contents Important Updates Summary Passwords Emails More databases Important Updates...
Mate1.com was hacked on October 17th, 2015 and a copy of profile data for 27,403,958 accounts has been obtained by LeakedSource.
Preface Mate1.com was hacked on October 17th, 2015 and a copy of profile data for 27,403,958...
Sexual secrets for hundreds of millions exposed in largest hack of 2016
Friend Finder Network Inc is a company that operates a wide range of 18+ services and was hacked in October of 2016 for over 400 million accounts representing 20 years of customer data which makes it by far the largest breach we have ever seen -- MySpace gets 2nd place at 360 million. This event also marks the second time Friend Finder has been breached in two years, the first being around May of 2015.
iMesh.com (now defunct) was hacked on September 22nd, 2013
Preface iMesh.com (now defunct) was hacked on September 22nd, 2013. LeakedSource has obtained...
MySpace.com was hacked on June 11th, 2013
Preface MySpace.com was hacked on June 11th, 2013. LeakedSource has obtained and added a copy...
LeakBase ChronosCloud ULP 09/07/24 by uniqum
On September 12, 2024, a stealer log titled ULP 09/07/24 was posted on a popular hacking forum. The log, which contained 500 thousand records, exposed around 230 thousand unique email addresses, homepage URLs, and passwords stored in plain text. This breach highlights the ongoing risks posed by credential-stealing malware and the necessity for organizations and individuals to prioritize cybersecurity to mitigate potential data exposure.
LeakBase StarLinkClouds 45M ULP by VitVit
On December 22, 2024, a stealer log titled 45M ULP was posted on a popular hacking forum, containing approximately 47 million records. The stealer log exposed around 10.6 million unique email addresses, homepage URLs, and passwords stored in plain text. This breach highlights the persistent threat posed by stealer malware and emphasizes the need for heightened cybersecurity measures to protect sensitive user data.
Los Angeles High School Alumni Association
In January 2025, the Los Angeles High School Alumni Association experienced a data breach affecting approximately 18,000 records. The compromised data included email addresses, full names, genders, and passwords hashed with MD5. This breach emphasizes the importance of transitioning to stronger password hashing algorithms and enhancing overall cybersecurity measures to safeguard sensitive information.
NextCash
In July 2022, NextCash, a financial platform that rewards users for referrals and task completions, suffered a data breach exposing approximately 4.7 million records. The compromised data included email addresses, full names, usernames, IP addresses, and plaintext passwords. This incident underscores the ongoing importance of robust cybersecurity practices to protect sensitive user information.
LeakBase 50Kk ULP by perjudica
On December 21, 2024, a stealer log titled 5Kk ULPÂ was posted on a popular hacking forum. The log, which contained 50 million records, exposed around 12.6 million unique email addresses, plaintext passwords, and homepage URLs. This breach highlights the persistent threat posed by stealer malware and emphasizes the need for heightened cybersecurity measures to protect sensitive user data.
Cryptobox
In May 2022, Cryptobox, a platform dealing with cryptocurrency, suffered a data breach that impacted approximately 1000 records. The compromised information included email addresses, usernames, and passwords hashed with bcrypt. This incident highlights the ongoing need for robust cybersecurity measures to protect sensitive user data in the cryptocurrency sector.
Ingrosso Regalistica
Sometime in 2022, Ingrosso Regalistica, an Italian platform specializing in party supplies, gift packaging, and decorations, suffered a data breach affecting nearly 6,000 records. The compromised data included email addresses, full names, and passwords hashed and salted using SHA-256. This breach highlights the critical need for robust cybersecurity measures to protect user data against unauthorized access.
GlobalCrypto-Exchange
Sometime in 2021, GlobalCrypto-Exchange, a cryptocurrency trading platform, suffered a data breach affecting approximately 10,000 records. The compromised data included email addresses, usernames, full names, genders, birthdays, and hashed passwords. This incident highlights the importance of stringent cybersecurity practices, particularly for platforms handling sensitive financial information.
LeakBase ChronosCloud ULP 09/08/24 by uniqum
On September 12, 2024, a stealer log titled ULP 09/08/24 was posted on a popular hacking forum, containing 500 thousand records. The log revealed around 230 thousand unique email addresses, homepage URLs, and passwords stored in plain text. This breach highlights the ongoing risks posed by credential-stealing malware and the necessity for organizations and individuals to prioritize cybersecurity to mitigate potential data exposure.
Adinath Equipments Pvt. Ltd.
In October 2024, Adinath Equipments Pvt. Ltd., an Indian company specializing in the manufacturing and distribution of industrial equipment and safety products, experienced a data breach affecting nearly 1,000 users. The compromised data included email addresses, phone numbers, full names, and company names. This incident highlights the importance of implementing strong cybersecurity measures to safeguard business and customer information from unauthorized access.
Sejahtera Auctioneers
In December 2024, Sejahtera Auctioneers, a full-time auction service company based in Kuala Lumpur, Malaysia, experienced a data breach affecting nearly 1,000 users. The exposed data included email addresses, usernames, IP addresses, phone numbers, passwords hashed with the weak MD5 algorithm, and dates. This incident highlights the importance of strong cybersecurity measures, such as using secure password hashing methods, encrypting sensitive data, and implementing strict access controls to protect user information from unauthorized access and potential misuse.
Job.sy
In July 2023, Job.sy, a Syrian job portal offering employment opportunities and recruitment services, experienced a data breach affecting 79,000 users. The exposed data included email addresses, full names, usernames, phone numbers, addresses, and passwords stored as MD5 hashes. This incident emphasizes the importance of robust cybersecurity measures, including the use of strong encryption algorithms and secure password storage methods, to protect sensitive user information from unauthorized access and potential exploitation.
Telegram alien ULP P672 by alien
On January 7, 2025, a stealer log titled TXTLOG_ALIEN - 672 was distributed via a Telegram channel, comprising approximately 46.1 million lines of data. The log exposed 11.33 million unique email addresses, plaintext passwords, and homepage URLs. This incident underscores the importance of robust cybersecurity practices to mitigate the risks associated with data breaches.
Telegram alien ULP P673 by alien
On January 8, 2025, a stealer log titled TXTLOG_ALIEN - 673 was distributed via a Telegram channel, comprising approximately 44.2 million lines of data. The log exposed 9.83 million unique email addresses, plaintext passwords, and homepage URLs. This incident underscores the importance of robust cybersecurity practices to mitigate the risks associated with data breaches.
Zaymer
In March 2024, the Russian online microfinance service Zaymer.ru, which specializes in short-term loans, experienced a data breach impacting 16.8 million users. The compromised data included names, genders, birthdates, phone numbers, and locations. This incident highlights the critical importance of robust cybersecurity measures, particularly for financial services handling sensitive personal information. Protecting such data with advanced security protocols and regular system audits is essential to maintain user privacy and prevent unauthorized access.
Xbox-Scene
In or around February 2015, the Xbox-Scene forum, a community dedicated to Xbox discussions, suffered a data breach that exposed over 432,000 user accounts. The IP.Board-based forum stored IP addresses, usernames, and passwords as salted hashes, but due to a weak hashing implementation, many of these passwords were quickly cracked. This incident highlights the importance of implementing strong cybersecurity measures, such as robust encryption and secure password storage, to protect user data from unauthorized access.
Goodmoodplay
On March 2, 2024, the Curaçao-based online gaming and entertainment platform Goodmoodplay experienced a data breach affecting 1.6 million users. The compromised information included email addresses, names, and passwords. This incident highlights the importance of robust cybersecurity measures, particularly for platforms managing sensitive user data. Implementing strong encryption and proactive security protocols is essential to safeguard user information and maintain trust.
Zacks (2024)
In June 2024, the investment research company Zacks was allegedly breached, with the stolen data later appearing on a popular hacking forum. This incident followed a separate Zacks data breach confirmed by the organization in 2023, with the latest breach exposing millions of additional records encompassing data from the previous incident. The 2024 breach compromised 12 million unique email addresses, along with IP and physical addresses, names, usernames, phone numbers, and unsalted SHA-256 password hashes. Despite multiple attempts to contact Zacks regarding the breach, the company did not respond. This incident underscores the critical need for robust cybersecurity measures, including secure password hashing practices and timely incident response, to protect sensitive user data.
Quentin Tarantino Fan Club
In December 2024, the Quentin Tarantino Fan Club, a website dedicated to the renowned American filmmaker, experienced a data breach affecting 8,000 users. The exposed data included email addresses, full names, phone numbers, bcrypt-hashed passwords, physical addresses, and geographical locations. This breach highlights the critical need for strong cybersecurity measures, such as data encryption, secure storage practices, and proactive threat monitoring, to safeguard user privacy and prevent unauthorized access.
Telegram alien ULP P744 by alien
On February 12, 2025, a stealer log titled TXTLOG_ALIEN - 744 was distributed via a Telegram channel, comprising approximately 56.2 million lines of data. The log exposed 10 million unique email addresses, plaintext passwords, and homepage URLs. This incident underscores the importance of robust cybersecurity practices to mitigate the risks associated with data breaches.