DW infoServer Data Breach Exposes 47,650 Australian Portal Accounts
HEROIC's DarkHive intelligence system discovered the DW infoServer data breach, exposing 47,650 records in August 2018. DW infoServer was an Australian mixed-content online portal featuring stock information, online chat, forums, and virtual services, serving a diverse English-speaking community. The compromised data included email addresses and plaintext passwords, putting registered users at immediate risk of credential-based attacks.
Why This Is Dangerous
Online portal and forum platforms store user credentials that members often reuse across multiple platforms, including banking, email, and e-commerce sites. Plaintext passwords extracted from DW infoServer require no cracking or decryption, giving attackers immediate access to working credential pairs. Australian internet users affected by this breach face targeted account takeover attempts across financial institutions, social networks, and productivity platforms where the same passwords were reused.
What Was Exposed
- Email Address
- Plaintext Password
Why This Matters
With nearly 48,000 records exposed in plaintext format, the DW infoServer breach provides attackers with an immediately usable credential dataset for large-scale credential stuffing operations. The diverse nature of this portal's user base means the compromised accounts span a wide range of demographics and online behaviors, making the data valuable for targeted phishing and social engineering campaigns. Plaintext password exposure is among the most severe security failures a platform can experience.
How Database Breaches Work
A database breach occurs when attackers exploit vulnerabilities in website code, server configurations, or outdated software to gain unauthorized access to the backend database. Community portals and forum platforms frequently rely on older content management systems that may harbor unpatched security vulnerabilities. Storing passwords in plaintext rather than using cryptographic hashing functions means there is no additional barrier protecting user credentials once the database is accessed. Attackers export the user table and distribute the data across dark web marketplaces and hacking forums.
Check If You Are Affected
HEROIC offers a free identity scanner searching over 400 billion records including data from the DW infoServer breach. Visit heroic.com to check if your information was exposed.
Breach Breakdown
47,650 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds