Breach Intelligence Report 03 Apr 2025

The eStoreKo Dump: 14,799 Plaintext Passwords and Emails Hit the Dark Web

HEROIC
HEROIC Threat Intelligence Team
Email Address Plaintext Password
Your email may be in this breach. Check in 5 seconds — free, no signup required.
Scan Email →
Records Exposed 14,799
Source Type Database
Origin Darkweb
Password Type Plaintext

HEROIC analysts identified a database breach affecting eStoreKo, an e-commerce platform based in the Philippines. The breach, dated June 2021, exposed 14,799 user records. The dataset is particularly alarming because passwords were stored in plaintext, meaning they were never hashed or encrypted at all. Every user who recieved this exposure had their actual login credentials sitting in the open, ready for immediate use by any attacker who accessable the dump.


Why Plaintext Passwords in the eStoreKo Breach Are Immediately Dangerous

Unlike breaches where passwords are protected by hashing, plaintext storage means zero cracking is required. An attacker who obtained this database could begin testing credentials against other platforms, including email providers, online banking, and social media, within minutes. Because eStoreKo is an e-commerce platform, exposed users may have reused the same password on accounts that store payment information or shipping addresses, creating direct financial risk.


What Was Exposed in the eStoreKo Breach

  • Email Address
  • Plaintext Password

Why Even a Small Breach Creates Outsized Credential Stuffing Risk

Although 14,799 records is a smaller breach by volume, the data quality is seperate from scale in terms of risk. Every single credential pair is immediately usable, making this a high-yield dataset for credential stuffing attacks. Attackers prioritize plaintext dumps because they eliminate the bottleneck of cracking, allowing for faster, more scalable account takeover campaigns across banking, email, and retail platforms where password reuse is common. Victims face risks of identity theft and financial fraud.


How a Database Breach Works

A database breach occured when an attacker gains unauthorized access to a web application's backend data store, often through SQL injection, server misconfigurations, or compromised credentials. Once access is obtained, user records can be exported in bulk within seconds. The stolen data is then posted or sold in underground markets, where other criminals use it immediately for account takeover and fraud campaigns.


Check If Your Data Was Exposed

HEROIC's free breach scanner checks more than 400 billion records, including the eStoreKo dataset, to tell you instantly whether your email address or passwords appeared in this or any other known breach. Run a free check at HEROIC now and find out exactly what information of yours is circulating online.

Breach Breakdown

Domain N/A
Leaked Data Email Address, Plaintext Password
Password Types Plaintext
Date Leaked 03 Apr 2025
Check in 5 seconds

14,799 passwords exposed. Is yours one of them?

Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.

All information submitted is Private and Secure. We do not sell or share email addresses. By searching, you agree to HEROIC's Privacy Policy and Terms of Service.

Free forever · No account required · Results in seconds

Private & Secure No Account Needed 3,360 scanned today
Breach Rank #N/A by affected users
Impact Score
1
sensitivity + scale + recency
Est. Financial Impact $107.1K fraud, phishing & misuse risk
Scan your email Free →
Scan to sign up

Scan to sign up instantly

24/7 Dark Web Monitoring
Instant Breach Alerts
Secure Data Protection
Your Data is at Risk

Your Personal Information is Exposed

We found your data exposed in multiple breaches. This includes:

  • Email addresses
  • Passwords
  • Phone numbers
  • Financial information
Secure My Information Now

Your information is protected by enterprise-grade security

Your Breach Details

Date:
Severity:
Records Exposed:

Your Exposed Information

Your Risk Level

How This Affects You

Full Breach Details

Premium Insights

Unlock Critical Security Information

Create a free account to access:

  • Full Breach Impact Analysis
  • Identity Theft Risk Score
  • Exposed Credentials Details
  • Personalized Security Recommendations
Create Free Account

Identity Theft Risk Score

Risk Score: 8.7/10 - Critical

Data Exposure Analysis

Passwords Critical
Financial High
Personal Medium
Social High
Security Critical

Breach Timeline Analysis

March 2024 Multiple credentials exposed in recent data breach
January 2024 Password found in dark web marketplace
December 2023 Personal information leaked in major security incident

Security Recommendations

High Priority
Password Security

Critical: Change compromised passwords immediately and enable 2FA on all accounts

Important
Financial Protection

Monitor credit reports and set up fraud alerts with major credit bureaus

Recommended
Identity Protection

Enable advanced identity monitoring and dark web surveillance