Chinese Online Shoppers Beware: The Epean Breach Exposed 138,883 Customer Accounts
In December 2024, a database from Epean, a Shanghai-based e-commerce platform, was exfiltrated and the records were published on underground forums. Our analysts confirmed 138,883 unique customer records in the dataset. The breach exposed a direct customer profile for each affected individual, combining contact and identity information in a format that is immediately useful for phishing, fraud, and identity theft operations. For the customers of Epean, a platform operating primarily in the Chinese e-commerce market, this exposure creates real and ongoing risk.
Why the Epean Breach Is Dangerous for Shoppers
E-commerce customers are among the most targeted victims of data breaches because their accounts are directly connected to payment methods and shipping addresses. When a breach exposes the combination of email, phone number, and full name, attackers can launch highly personalized fraud campaigns. They can impersonate the platform through phishing emails, fraudulent order notifications, or fake customer service calls. The goal is always to get the victim to hand over a password, a verification code, or payment details.
What Was Exposed
- Email address
- Phone number
- First name
- Last name
Why This Matters
The combination of email address, phone number, and full name is the standard starter kit for credential stuffing attacks, account takeover, and identity fraud. Attackers test exposed emails against other services using automated tools, looking for password reuse. Phone numbers enable SMS phishing and account recovery bypasses, since many platforms send verification codes by text. Together, these four fields give criminals enough context to target victims across multiple platforms and attack surfaces. With 138,883 records, this breach is large enough to be commercially valuable on dark web markets.
How E-Commerce Breaches Like Epean Happen
Database breaches at e-commerce platforms are typically caused by unauthenticated or poorly secured database access points, vulnerable web application code, or compromised administrator credentials. Misconfigured cloud infrastructure is another common cause, where storage buckets or databases are accidentally left publicly accessible. Once attackers gain access, they copy the entire customer table and distribute it through dark web forums or encrypted messaging channels. The Chinese e-commerce sector is a frequent target given the large volume of consumer data these platforms hold and the value of that data to international criminal networks.
Check If You Are Affected
HEROIC continuously monitors more than 400 billion exposed records, including breach data from e-commerce platforms across Asia, Europe, and the Americas. If your email address or phone number appeared in the Epean breach or any related leak, our platform will alert you before attackers can act on the data. Run a free scan at HEROIC.com to check your exposure today.
Breach Breakdown
138,883 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds