Breach Intelligence Report 13 Sep 2025

International Journal of Computer Science Breach: 11,768 Records (2018)

HEROIC
HEROIC Threat Intelligence Team
Email Address Password Hash
Your email may be in this breach. Check in 5 seconds — free, no signup required.
Scan Email →
Records Exposed 11,768
Source Type Database,Combolist
Origin Exploit
Password Type MD5

A Computer Science Journal Breached Through an Outdated CMS

There's a particular irony when a computer science publication gets breached through a known-vulnerable CMS. The International Journal of Computer Science (IJCS) published peer-reviewed research on computing topics -- including, almost certainly, papers on cybersecurity and secure system design. Yet in August 2018, its website running Drupal 7 became the source of an 11,768-record database dump that appeared on underground hacking forums. The credentials of researchers, academics, and IT professionals who submitted to or read the journal ended up in combolist pipelines that these same communities study and document.


International Journal of Computer Science (August 2018): Breach Summary

  • Records Exposed: 11,768
  • Data Types: Email addresses, Drupal 7 password hashes
  • Breach Type: Database dump / Combolist
  • Country Affected: India / Tanzania
  • Date Leaked: August 24, 2018

Drupal 7: A Known Risk by 2018

Drupal 7 uses a salted MD5-based hashing implimentation (specifically, a portable PHP password hashing scheme with a configurable iteration count). While salted MD5 is more resistant than raw MD5, it's still considered weak by modern standards -- significantly less secure than bcrypt, scrypt, or Argon2. Drupal 7 itself reached end-of-life in November 2022, but by 2018, the security community had already been recommending migration for years. Running an academic publication on an aging CMS with known vulnerabilities is a recurring pattern in educational institution breaches. The IJCS breach appeared on August 24, 2018 -- two days before the main August 26 cluster -- suggesting it was part of the broader wave of 2018 database accumulation and release activity.


Researcher Email Addresses as Pivot Points

Academic researchers who publish in computer science journals use institutional email addresses -- the same addresses that connect to university VPNs, academic databases, research collaboration platforms, and grant management systems. When those email addresses appear in a combolist with associated password hashes, they become targets for credential stuffing across every platform where the researchers are registered. The IJCS resercher community spans multiple countries and institutions, meaning the downstream attack surface extends well beyond any single university or organization. A compromised institutional email account can provide access to research data, unpublished papers, and collaborative project files.


Part of the Broader August 2018 Combolist Wave

While the IJCS breach appeared on August 24, 2018 -- two days before the main August 26 cluster -- it's part of the same broader wave of database accumulation and release activity that characterized August 2018 across multiple underground forums. The pattern of academic and scientific institutions appearing alongside e-commerce platforms, sports clubs, and consumer services in these releases reflects the indiscriminate, opportunistic nature of the accumulation: any web-accessible database was a potential target regardless of the organization's mission or prestige.


Check If Your Credentials Were Exposed

HEROIC's free breach scanner searches across more than 400 billion exposed records -- including academic journal databases like IJCS. If you've submitted to or accessed Indian computer science publications, your institutional email and associated password may be in circulation. A scan takes seconds and can flag exposure before it's exploited against the institutional systems your email address connects to.

Breach Breakdown

Domain N/A
Leaked Data Email Address,Password Hash
Password Types MD5
Date Leaked 13 Sep 2025
Check in 5 seconds

11,768 passwords exposed. Is yours one of them?

Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.

All information submitted is Private and Secure. We do not sell or share email addresses. By searching, you agree to HEROIC's Privacy Policy and Terms of Service.

Free forever · No account required · Results in seconds

Private & Secure No Account Needed 3,039 scanned today
Breach Rank #11,710 by affected users
Impact Score
0
sensitivity + scale + recency
Est. Financial Impact $85.2K fraud, phishing & misuse risk
Scan your email Free →
Scan to sign up

Scan to sign up instantly

24/7 Dark Web Monitoring
Instant Breach Alerts
Secure Data Protection
Your Data is at Risk

Your Personal Information is Exposed

We found your data exposed in multiple breaches. This includes:

  • Email addresses
  • Passwords
  • Phone numbers
  • Financial information
Secure My Information Now

Your information is protected by enterprise-grade security

Your Breach Details

Date:
Severity:
Records Exposed:

Your Exposed Information

Your Risk Level

How This Affects You

Full Breach Details

Premium Insights

Unlock Critical Security Information

Create a free account to access:

  • Full Breach Impact Analysis
  • Identity Theft Risk Score
  • Exposed Credentials Details
  • Personalized Security Recommendations
Create Free Account

Identity Theft Risk Score

Risk Score: 8.7/10 - Critical

Data Exposure Analysis

Passwords Critical
Financial High
Personal Medium
Social High
Security Critical

Breach Timeline Analysis

March 2024 Multiple credentials exposed in recent data breach
January 2024 Password found in dark web marketplace
December 2023 Personal information leaked in major security incident

Security Recommendations

High Priority
Password Security

Critical: Change compromised passwords immediately and enable 2FA on all accounts

Important
Financial Protection

Monitor credit reports and set up fraud alerts with major credit bureaus

Recommended
Identity Protection

Enable advanced identity monitoring and dark web surveillance