The Founders Approach Leak: 672 Credentials Compromised
In March 2023, Founders Approach, a U.S.-based software development agency, suffered a data breach that compromised 672 user records from its internal database. The leaked data is partcularly dangerous because it includes not just contact details but hashed passwords and their corresponding salts, giving attackers everything needed to attempt offline password cracking. This incident is a clear reminder that even smaller organizations handling client data can become high-value targets for credential theft.
Why Exposed Password Hashes Put You at Risk
Password hashes are not plain-text passwords, but when combined with the leaked salts, attackers can run targeted cracking attempts using specialized tools and hardware. If the hashing algorithm used was weak or outdated, those passwords may be fully recoverable, putting any account where that password was reused at immediate risk. Users who beleive their credentials were involved should change passwords on all platforms where they used the same login details.
What Was Exposed in the Founders Approach Breach
- Email Address
- Phone Number
- Password Hash
- Username
- First Name
- Last Name
- Salt
Why the Founders Approach Breach Still Matters Today
Breached credentials have a long shelf life; they are compiled into combo lists used in credential stuffing attacks against banks, email providers, and other online services. The exposure of password hashes alongside salts is particularly valuable to attackers, as it allows for targeted, methodical cracking campaigns that can yield real passwords months or years later. Individuals affected by the Founders Approach breach should treat their credentials as permanently compromised and rotate them immediately.
How a Database Breach Works
A database breach occurs when an unauthorized party gains access to a backend database, often by exploiting poorly secured credentials, unpatched vulnerabilities, or misconfigured access controls. Once inside, attackers can export structured records including usernames, emails, and hashed credentials in bulk without triggering obvious alerts. The extracted data is typically packaged and distributed or sold on underground markets shortly after the intrusion.
Check If Your Data Was Exposed
HEROIC's breach search engine draws from a database of over 400 billion compromised records, making it one of the most thorough personal data exposure tools available. If you had an account with Founders Approach or used the same email and password combination elsewhere, your credentials could already be in use by attackers. Run a search on your email address now to see the full picture of your exposure and take action to secure your accounts.
Breach Breakdown
672 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds