JerryFX
We noticed the reappearance of a dataset on a well-known underground forum, initially surfaced in August 2018. This particular leak, attributed to JerryFX, a U.S.-based entity operating in the forex trading and signal-sharing space, impacts a relatively contained user base of 4,714 individuals. What struck us was the consistent presence of this dataset in various aggregation efforts, suggesting its continued utility for malicious actors. The presence of both email addresses and password hashes, even if MD5, remains a significant concern for credential stuffing and further social engineering attempts.
The breach breakdown reveals a database compromise that exposed 4,714 records. The primary data types affected are email addresses and password hashes, specifically utilizing the MD5 hashing algorithm. The source structure indicates a direct extraction from a user database, a common target for credential harvesting. The leak locations, as observed, are primarily within established hacking forums and marketplaces, where such data is frequently consolidated into larger combolists. The use of MD5, while considered weak by modern standards, is still prevalent enough in older systems or poorly managed databases to pose a risk, especially when paired with email addresses that can be cross-referenced with other publicly available information.
While this specific JerryFX breach occurred in 2018 and did not generate significant mainstream news coverage at the time, its continued circulation highlights a persistent threat vector. The methodology aligns with common tactics observed in credential stuffing campaigns, where compromised email-password pairs are tested against numerous online services. Research from organizations like Troy Hunt's "Have I Been Pwned" consistently demonstrates the longevity and impact of such breaches, even those from years past. The fact that this dataset remains accessible and is likely incorporated into larger, more comprehensive combolists underscores the importance of proactive credential management and the ongoing need for robust password policies, including the deprecation of outdated hashing algorithms.
Breach Breakdown
4,714 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds