KabarIndonesia Data Breach: 16,089 Indonesian News Portal Accounts Exposed (2018)
Another Indonesian News Portal, Another Credential List
KabarIndonesia was an Indonesian online news platform -- a citizen journalism and news aggregation site covering Indonesian current events. When its database surfaced on August 24, 2018, it exposed 16,089 accounts with MD5-hashed passwords. The KabarIndonesia breach arrived two days before SuaraSurabaya's exposure in the August 26 cluster -- both Indonesian news portals, both leaked within the same 48-hour window, suggesting coordinated activity targeting Indonesian media infrastructure.
KabarIndonesia (August 2018): Breach Summary
- Records Exposed: 16,089
- Data Types: Usernames, email addresses, MD5-hashed passwords
- Breach Type: Database breach
- Password Hash Type: MD5 (rainbow-table vulnerable)
- Country Affected: Indonesia
- Date Leaked: August 24, 2018
MD5 and the Indonesian Digital Community
MD5 hashing without salting is vulnerable to rainbow table attacks -- precomputed databases mapping common passwords to their MD5 hash values. For 16,089 KabarIndonesia accounts, any password that appears in standard wordlists or common password databases was recoverable near-instantly. Indonesian digital users frequently maintain accounts across a shared ecosystem: social media platforms like Facebook and Instagram, local e-commerce sites like Tokopedia and Shopee, messaging apps, and banking portals. A cracked KabarIndonesia credential could cascade across this ecosystem if passwords were reused -- a common pratice among users who registered on smaller regional news platforms.
Two Indonesian News Portals in One Disclosure Window
KabarIndonesia's August 24 leak was followed two days later by SuaraSurabaya's appearance in the August 26 coordinated disclosure. The close timing of two Indonesian news portal breaches -- different sites, different records, same two-day window -- is noteworthy. It may reflect an attack campaign specifically targeting Indonesian media platforms, opportunistic collection of Indonesian content sites, or a single threat actor who acquired multiple Indonesian databases and staged their release. For affected users, the overlap means Indonesian news readers may have appeared in multiple breach databases simultaneously, amplifying exposure risk.
The August 2018 Indonesian Media Exposure Pattern
The combined exposure of KabarIndonesia and SuaraSurabaya in August 2018 placed a significant portion of Indonesia's engaged online news readership at credential risk. News portal users are valuable targets not only for credential stuffing but for demographic profiling: a confirmed Indonesian news reader is a confirmed active internet user with identifiable political and civic interests. The twin exposures in the same week created a larger combined credential pool than either breach would represent individually.
Check If Your Data Was Exposed
HEROIC's free breach scanner searches across more than 400 billion exposed records to tell you whether your email address or credentials appear in known breach databases. If you registered on KabarIndonesia, SuaraSurabaya, or other Indonesian news platforms before 2019, check your exposure and update any reused passwords now.
Breach Breakdown
16,089 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds