Infoduka
We noticed a concerning aggregation of credentials surfacing on a prominent cybercrime forum, originating from a source identified as "Infoduka." This discovery, dating back to August 26, 2018, immediately raised a red flag due to the nature of the exposed data and the platform where it was disseminated. What struck us was the straightforward plaintext storage of sensitive authentication details, a practice that significantly amplifies the risk to affected individuals. The sheer volume, while not record-breaking, is substantial enough to warrant immediate attention, especially considering the potential for credential stuffing attacks against other services.
The Infoduka breach, which occurred in August 2018, involved a database compromise that resulted in the exposure of approximately 25,477 unique records. The leaked data primarily consisted of email addresses and their corresponding plaintext passwords. Analysis of the leaked data indicates it was likely sourced directly from the Infoduka portal's user database. The compromised information was subsequently posted on a well-known cybercrime forum, making it readily accessible to malicious actors. The threat theme here is clear: the creation of potent combolists, enabling widespread credential stuffing campaigns against other online platforms where users may have reused their Infoduka credentials. The fact that Infoduka is now defunct does not diminish the ongoing risk to individuals whose data was compromised.
While this specific breach did not generate widespread mainstream news coverage at the time, its inclusion in large-scale credential dumps on cybercrime forums means it has likely been incorporated into numerous automated attack tools. Open-source intelligence (OSINT) searches reveal that Infoduka was a Malaysian portal dedicated to hosting eulogies. The nature of such a site might suggest a user base with less technical sophistication, potentially making them more vulnerable to phishing or social engineering attacks leveraging the exposed email addresses. Researchers have consistently highlighted the persistent threat posed by plaintext password storage and the downstream impact of such breaches on the broader digital ecosystem.
Our attention was drawn to a significant data leak attributed to "Infoduka," discovered on August 26, 2018. This incident stands out due to the direct exposure of user credentials in an unencrypted format, a practice that fundamentally undermines user security. The discovery on a public cybercrime forum immediately signaled a high probability of exploitation. The immediate concern is the potential for immediate and widespread misuse of these credentials, particularly in the context of credential stuffing attacks.
The Infoduka breach, a database compromise from August 2018, yielded a dataset containing 25,477 records. The core of the compromise lies in the exposure of email addresses and plaintext passwords. This suggests a direct exfiltration from Infoduka's backend systems. The data was subsequently made available on a prominent cybercrime forum, transforming it into a valuable resource for threat actors. The primary threat vector here is the construction of combolists, enabling attackers to systematically test these credentials against other services, exploiting password reuse. The fact that Infoduka is no longer operational does not mitigate the risk; rather, it suggests a potentially unaddressed vulnerability that may have existed for an extended period.
While Infoduka's 2018 breach did not achieve significant media traction, its data has undoubtedly been integrated into numerous attack frameworks. OSINT indicates Infoduka was a Malaysian-based portal for memorial tributes. The inherent sensitivity of the content hosted could potentially be leveraged in targeted social engineering campaigns against individuals whose email addresses were exposed. Security research consistently underscores the critical importance of robust password hashing and salting, and this incident serves as a stark reminder of the consequences of failing to implement such fundamental security measures.
A recent analysis of leaked credential sets brought to our attention a substantial exposure originating from "Infoduka," dated August 26, 2018. What is particularly striking about this incident is the direct presentation of user credentials in plaintext, a critical security oversight. The discovery on a well-trafficked cybercrime forum immediately elevates the urgency, as it signifies immediate availability to a wide range of malicious actors. The sheer volume of compromised accounts, while not unprecedented, is sufficient to fuel significant credential stuffing operations.
The Infoduka breach, which occurred in August 2018, involved a database compromise that resulted in the exposure of approximately 25,477 records. The leaked data consists of email addresses and plaintext passwords, indicating a direct dump from Infoduka's user data store. This compromised information was subsequently disseminated on a prominent cybercrime forum, effectively creating a potent combolist. The threat theme is the enablement of large-scale credential stuffing attacks, targeting other online services where users may have reused their Infoduka credentials. The defunct status of Infoduka does not diminish the ongoing risk, as the exposed data remains a valuable asset for attackers.
Publicly available information suggests that Infoduka was a Malaysian portal for sharing eulogies. While this specific breach did not garner extensive mainstream media attention, its inclusion in larger credential dumps means it has likely been weaponized in numerous automated attacks. OSINT analysis points to the potential for targeted social engineering campaigns leveraging the exposed email addresses, particularly given the sensitive nature of the site's content. Industry research consistently highlights the severe implications of plaintext password storage, and this incident serves as a concrete example of its detrimental impact.
Breach Breakdown
25,477 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds