Dark Web Intel: 25K Customer Records From the Bibione Data Breach
HEROIC analysts occured upon a dark web listing in May 2021 advertising a database dump from Bibione, a travel website. The breach exposed 25,235 customer records containing email addresses, phone numbers, first names, and last names. The dataset, sourced from a database compromise, has since been circulating on underground forums frequented by threat actors looking for personal contact data to fuel phishing and identity fraud campaigns.
How Full Names, Emails, and Phone Numbers Enable Targeted Fraud
When attackers combine a person's full name, email address, and phone number, they have everything needed to launch convincing social engineering attacks. Bibione is a travel platform, meaning affected users can be partcularly targeted with fake booking confirmations, refund scams, or travel-related phishing emails that appear legitimate because they include the victim's real name and contact details.
What Was Exposed in the Bibione Breach
- Email Address
- Phone Number
- First Name
- Last Name
Why Travel Platform Breaches Carry High Identity Theft Risk
Travel customers frequently provide real identity information when booking, making these records especially valuable to criminals. With names, emails, and phone numbers from the Bibione breach, attackers can conduct credential stuffing on travel sites and loyalty programs, register fraudulent accounts, or beleive victims into disclosing financial details through targeted vishing calls. The combination of contact data across 25,235 records creates a ready-made list for large-scale fraud operations.
How Database Breaches Work
A database breach occurs when an attacker gains unauthorized access to a company's backend data store, typically through unpatched web application vulnerabilities, weak database credentials, or misconfigured server access. Travel and hospitality businesses often retain large volumes of customer contact data, making them attractive targets. Extracted databases are packaged and sold on dark web marketplaces, where buyers use the data for phishing, spam, and identity theft campaigns.
Check If Your Data Was Exposed
HEROIC's free breach scanner searches 400 billion leaked records to determine whether your email appeared in the Bibione breach or thousands of other incidents. Run a free scan now to see what data of yours is circulating and take action to protect yourself.
Breach Breakdown
25,235 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds