International Journal of Computer Science Breach: 11,768 Records (2018)
A Computer Science Journal Breached Through an Outdated CMS
There's a particular irony when a computer science publication gets breached through a known-vulnerable CMS. The International Journal of Computer Science (IJCS) published peer-reviewed research on computing topics -- including, almost certainly, papers on cybersecurity and secure system design. Yet in August 2018, its website running Drupal 7 became the source of an 11,768-record database dump that appeared on underground hacking forums. The credentials of researchers, academics, and IT professionals who submitted to or read the journal ended up in combolist pipelines that these same communities study and document.
International Journal of Computer Science (August 2018): Breach Summary
- Records Exposed: 11,768
- Data Types: Email addresses, Drupal 7 password hashes
- Breach Type: Database dump / Combolist
- Country Affected: India / Tanzania
- Date Leaked: August 24, 2018
Drupal 7: A Known Risk by 2018
Drupal 7 uses a salted MD5-based hashing implimentation (specifically, a portable PHP password hashing scheme with a configurable iteration count). While salted MD5 is more resistant than raw MD5, it's still considered weak by modern standards -- significantly less secure than bcrypt, scrypt, or Argon2. Drupal 7 itself reached end-of-life in November 2022, but by 2018, the security community had already been recommending migration for years. Running an academic publication on an aging CMS with known vulnerabilities is a recurring pattern in educational institution breaches. The IJCS breach appeared on August 24, 2018 -- two days before the main August 26 cluster -- suggesting it was part of the broader wave of 2018 database accumulation and release activity.
Researcher Email Addresses as Pivot Points
Academic researchers who publish in computer science journals use institutional email addresses -- the same addresses that connect to university VPNs, academic databases, research collaboration platforms, and grant management systems. When those email addresses appear in a combolist with associated password hashes, they become targets for credential stuffing across every platform where the researchers are registered. The IJCS resercher community spans multiple countries and institutions, meaning the downstream attack surface extends well beyond any single university or organization. A compromised institutional email account can provide access to research data, unpublished papers, and collaborative project files.
Part of the Broader August 2018 Combolist Wave
While the IJCS breach appeared on August 24, 2018 -- two days before the main August 26 cluster -- it's part of the same broader wave of database accumulation and release activity that characterized August 2018 across multiple underground forums. The pattern of academic and scientific institutions appearing alongside e-commerce platforms, sports clubs, and consumer services in these releases reflects the indiscriminate, opportunistic nature of the accumulation: any web-accessible database was a potential target regardless of the organization's mission or prestige.
Check If Your Credentials Were Exposed
HEROIC's free breach scanner searches across more than 400 billion exposed records -- including academic journal databases like IJCS. If you've submitted to or accessed Indian computer science publications, your institutional email and associated password may be in circulation. A scan takes seconds and can flag exposure before it's exploited against the institutional systems your email address connects to.
Breach Breakdown
11,768 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds