iGigz
We noticed a recent resurgence of interest around a dataset first appearing in August 2018, originating from the now-defunct freelancing platform, iGigz. This particular breach, while not the largest in terms of volume, stands out due to the plaintext nature of the exposed passwords. The dataset, comprising 7,549 unique records, was disseminated on a well-known hacking forum, indicating a deliberate effort to monetize or distribute compromised credentials. The simplicity of the exposed data types—email addresses and their corresponding plaintext passwords—suggests a straightforward database compromise rather than a sophisticated multi-stage attack.
The iGigz breach, discovered on 21-Aug-2018, involved a direct database exfiltration. The primary threat theme here is credential stuffing and account takeover, amplified by the fact that the passwords were not hashed or encrypted. With 7,549 records exposed, containing email addresses and plaintext passwords, this data is a prime candidate for inclusion in credential stuffing lists. The source structure appears to be a direct dump from a user authentication database, likely exploitable via SQL injection or compromised administrative credentials. The leak location was a prominent hacking forum, a common distribution point for such compromised data, suggesting it was intended for widespread use by malicious actors.
While iGigz is no longer operational, the implications of this 2018 breach persist. Archived discussions on cybersecurity forums and dark web marketplaces occasionally reference this dataset, particularly when users inquire about older, potentially reused credentials. The plaintext password exposure makes it a valuable asset for attackers conducting reconnaissance or attempting to gain access to other services where users may have reused their iGigz credentials. This incident serves as a stark reminder of the long-term risks associated with inadequate password security practices and the enduring utility of historical data breaches in ongoing cybercrime operations.
Breach Breakdown
7,549 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds