InterTopSpinTour
We noticed a concerning resurfacing of credentials associated with the defunct virtual tennis community, InterTopSpinTour. This particular dataset, initially leaked on August 26, 2018, has reappeared, indicating a potential for renewed exploitation. What struck us immediately was the persistence of this older breach data, suggesting that attackers may be leveraging it against users who have reused credentials across multiple platforms. The relatively small pwned count of 7,659 users, while not massive in absolute terms, still represents a significant risk for individuals who may have forgotten about their involvement with this niche online community.
The breach, originating from a database compromise on InterTopSpinTour, exposed 7,659 user records. The core of the compromised information includes email addresses and MD5 password hashes. The use of MD5, a notoriously weak hashing algorithm, means that these password hashes are highly susceptible to brute-force attacks and rainbow table lookups, effectively rendering them as plain text for determined attackers. This type of data is commonly found in credential stuffing attacks, where threat actors attempt to log into other services using these compromised email/password combinations. The source structure appears to be a direct database dump, likely exfiltrated through a SQL injection vulnerability or similar database access exploit. The leak locations were initially identified on a prominent hacking forum.
While specific news coverage for this particular InterTopSpinTour breach in 2018 was limited due to its niche audience and the nature of the data, it aligns with a broader trend of gaming-related communities and forums being targeted. Such platforms often attract dedicated user bases, making them attractive targets for credential harvesting. The reappearance of this data is not an isolated incident; similar datasets from older, less secure online services frequently resurface on dark web marketplaces and forums, fueling ongoing credential stuffing campaigns. Research into past breaches of online gaming communities consistently highlights the reuse of credentials as a primary vector for follow-on compromises.
Breach Breakdown
7,659 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds