Bgpochivka Data Breach Exposes 20K Bulgarian Platform User Credentials
DarkHive discovered a data breach affecting Bgpochivka, a Bulgarian online platform operating in the general business sector. The breach exposed 20,647 records including email addresses and phpBB password hashes, with data leaked in August 2018. Bgpochivka served Bulgarian users who registered on the platform for business and community purposes. The phpBB hash format used to store passwords is considered weak by modern standards and susceptible to specialized cracking tools that can recover the original plaintext passwords.
Why This Is Dangerous
phpBB MD5-based password hashes are among the most widely cracked hash formats in underground markets. Specialized tools and precomputed tables target phpBB hashes specifically, making recovery of original plaintext passwords significantly faster than with modern hashing algorithms. The 20,647 email and password hash pairs from Bgpochivka entered combolist distribution networks where attackers applied phpBB cracking tools to recover plaintext credentials. Bulgarian users who registered on this platform and reused thier password on banking portals, email accounts, and e-commerce platforms on seperate services remain at ongoing risk from credential stuffing attacks.
What Was Exposed
- Email Address
- Password Hash (phpBB MD5)
Why This Matters
phpBB hash format breaches are particularly damaging because the algorithm was designed for speed rather than security, making GPU-accelerated cracking highly effective at recovering plaintext passwords from the hash values. The 20,647 recovered credentials from Bgpochivka entered combolist networks where they continue to fuel automated credential stuffing campaigns against active Bulgarian and European platforms years after the original breach occured. Users who have not changed passwords originally used on Bgpochivka remain vulnerable even if they no longer use the platform, because recovered credentials circulate indefinitely in underground credential markets.
How Database Breach Works
A database breach occured when attackers exploited vulnerabilities in Bgpochivka's platform infrastructure and extracted the full user credential database. The phpBB MD5 hash format provided minimal protection, as specialized cracking tools recover phpBB passwords at high speed using GPU acceleration and precomputed lookup tables. The resulting plaintext credentials entered combolist distribution networks where they were bundled with other Bulgarian and Eastern European platform breaches and traded on dark web forums for use in automated credential stuffing attacks against active regional platforms.
Check If You Are Affected
HEROIC offers a free identity scanner that checks your email address against thousands of known data breaches including the Bgpochivka breach. Visit heroic.com to run a free scan and find out if your credentials were exposed. If you registered on Bgpochivka or bgpochivka.eu, check whether you are using the same password on any current accounts and change those passwords immediately. A password manager helps you generate and store unique passwords for each service, preventing a single breach from compromising multiple accounts.
Breach Breakdown
20,647 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds