Search Your Email: The AquariaClub Breach Exposed 6,099 Accounts
HEROIC analysts identified a resurfacing credential dataset tied to AquariaClub, a Russian-language forum for aquarium hobbyists, that was originally leaked on August 26, 2018. The dataset contains 6,099 records, made up of email addresses and password hashes secured with the outdated MD5 and MD5(phpBB3) algorithms. Although the breach is several years old, the data continues to circulate on dark web marketplaces and hacking forums, where it gets folded into newer combolists used for automated login attacks.
Why the AquariaClub Password Hashes Are Still Dangerous
MD5 and MD5(phpBB3) are decades old hashing methods that modern hardware can crack in bulk using rainbow tables and brute force tools. That means the password hashes in this breach are not a locked box, they are closer to a lightly disguised list of the original passwords. Anyone who downloads this dataset can recover a large share of the real passwords and pair them with the matching email addresses, giving them a ready made list of working logins to test against other services.
What Was Exposed in the AquariaClub Breach
- Email addresses
- Password hashes (MD5 and MD5(phpBB3))
Why This Matters for Anyone Who Used AquariaClub
People frequently reuse the same email and password combination across multiple sites. Once a password from this breach is cracked, attackers run it against banking portals, email providers, and social media accounts in a technique known as credential stuffing. A successful match can lead to account takeover, identity theft, or financial fraud, especially since the original account holders may have registered on AquariaClub with the same credentials they use elsewhere.
How Database and Combolist Breaches Like This One Work
This incident is classified as a database breach that fed into broader combolists. A database breach happens when attackers gain direct access to a website's backend, in this case a forum database, and extract stored user records in bulk. That raw data is then cleaned, merged with other stolen datasets, and repackaged into combolists, simple text files pairing emails with passwords, which are sold or traded on hacking forums and used to power automated attack tools.
Check If Your Email Was Exposed in the AquariaClub Leak
If you ever created an account on AquariaClub or reused that password elsewhere, it is worth finding out now rather than after an account is compromised. HEROIC's free breach scanner checks your email address against a database of more than 400 billion leaked records, including this breach, and shows you exactly what has been exposed so you can change any reused passwords before an attacker gets there first.
Breach Breakdown
6,099 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds