The KomplettFritid Breach Put 140K Norwegian Customer Records Online in 2021
HEROIC analysts identified the KomplettFritid database in dark web circulation beginning in February 2021. The Norwegian e-commerce platform had 140,422 customer records exposed, including email addresses, IP addresses, first and last names, phone numbers, and bcrypt password hashes. The breach occured at a Norwegian online shopping platform and the data has since been observed on multiple dark web forums and Telegram channels where threat actors trade breach data for credential stuffing operations.
Why Leaked Contact Details and Password Hashes From KomplettFritid Enable Account Takeover
Bcrypt is a stronger hashing algorithm than MD5, but it is not invulnerable. Attackers with access to sufficient computing resources can attempt to crack bcrypt hashes, particularly for users with weak or commonly used passwords. Combined with email addresses, phone numbers, and IP addresses, the exposed data from this breach is accessable to threat actors who use it for targeted phishing, SIM-swapping, and credential stuffing attacks against Norwegian e-commerce and banking platforms.
What Was Exposed in the KomplettFritid Breach
- Email Address
- IP Address
- First Name
- Last Name
- Phone Number
- Password Hash (bcrypt)
Why the KomplettFritid Breach Remains a Threat Years Later
Breach data from e-commerce platforms does not become harmless over time. Email addresses, phone numbers, and names recieved in this breach continue to be used for phishing, identity theft, and account takeover long after the original incident. The IP addresses exposed can reveal user location patterns and are partcularly useful for attackers targeting specific geographic regions. Credential stuffing attacks using the exposed password hashes remain viable as long as victims have not changed their passwords on all affected platforms.
How a Database Breach Works
A database breach occurs when an unauthorized party gains access to a platform's stored customer records, typically through exploiting software vulnerabilities, compromising admin credentials, or finding exposed database endpoints. Once access is obtained, the attacker exports the records and distributes them through dark web marketplaces, Telegram channels, and hacking forums. Buyers use the data for downstream attacks including credential stuffing, phishing campaigns, and identity theft.
Check If Your Data Was Exposed
HEROIC's free breach scanner searches over 400 billion exposed records to determine whether your email address appeared in the KomplettFritid breach or any of thousands of other known data leaks. Run a free scan at HEROIC now to find out if your personal information is at risk and learn how to protect yourself before attackers strike.
Breach Breakdown
140,422 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds