Dive Computer Training Data Breach Exposes 94,137 Scuba Education Accounts
HEROIC's DarkHive intelligence system discovered the Dive Computer Training data breach, exposing 94,137 records in August 2018. Dive Computer Training is a U.S.-based online educational platform providing certification courses and training resources for scuba diving professionals and enthusiasts. The compromised data included email addresses and password hashes using pHpass and MD5 algorithms, putting registered students and instructors at risk of credential-based attacks.
Why This Is Dangerous
Online education platforms for specialized professional certifications often attract instructors, training facility operators, and dive professionals who use these accounts to manage certifications and student records. MD5 password hashes provide minimal real-world protection and can be cracked quickly using modern tools, while pHpass offers more resistance but remains vulnerable to targeted attacks. Dive professionals who reused their Dive Computer Training credentials on other platforms face account compromise risks across email, professional certification databases, and dive organization portals.
What Was Exposed
- Email Address
- Password Hash (pHpass)
- Password Hash (MD5)
Why This Matters
With over 94,000 records exposed, the Dive Computer Training breach represents a significant leak affecting the scuba diving education community in the United States. The inclusion of both weak MD5 and moderately stronger pHpass hashes in the same breach suggests inconsistent security practices that left many users with easily crackable passwords. Affected users face credential stuffing risks across email accounts, financial platforms, and any other services where the same password was reused.
How Database Breaches Work
A database breach occurs when attackers exploit security vulnerabilities in website code, server configurations, or outdated educational platform software to gain unauthorized access to stored user data. Niche educational platforms for professional certifications often operate with limited cybersecurity resources and may use older content management systems containing unpatched vulnerabilities. Once attackers gain database access, they export user credential tables and distribute the data through underground forums and dark web marketplaces where it circulates for years.
Check If You Are Affected
HEROIC offers a free identity scanner searching over 400 billion records including data from the Dive Computer Training breach. Visit heroic.com to check if your information was exposed.
Breach Breakdown
94,137 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds