Dark Web Intel: 86,162 Los Angeles Times Logins Exposed
Dark Web Intel: 86,162 Los Angeles Times Logins Exposed
HEROIC analysts have identified a data breach connected to the Los Angeles Times that exposed 86,162 user records. The breach dates back to July 2015, and the compromised data includes first names, last names, email addresses, usernames, and passwords. Our records indicate some of those passwords were stored in plaintext, while other accounts in the breach had no password field at all.
Why a Full Name and Email Combination Is More Dangerous Than It Sounds
Unlike breaches that expose only a username and a hash, this one includes real first and last names alongside email addresses. That combination lets an attacker impersonate a real person convincingly, whether in a phishing email, a fraudulent account recovery request, or a scam that references personal details to seem legitimate. For accounts where the password was stored in plaintext, there is nothing to crack at all, the password is simply readable.
What Was Exposed
- First names
- Last names
- Email addresses
- Usernames
- Passwords (stored in plaintext for some accounts)
Why This Matters
A plaintext password is immediately usable by anyone who has the data, no cracking required. If that password was reused on another account, such as email or online banking, an attacker can log in right away. Combined with a real name and email address, this data also supports identity theft and highly targeted phishing attempts that are harder to spot than generic scam emails.
How a Database Breach Like This Happens
This incident is classified as a database breach, meaning attackers accessed the underlying user database directly rather than intercepting individual logins. These breaches commonly stem from unpatched software, exposed admin access, or weak server security. Once inside, an attacker can extract full user records, including names, emails, usernames, and passwords, in a single action.
Check If You Are Affected
If you ever created an account with the Los Angeles Times, it is worth checking your exposure, particularly given that some passwords in this breach were never even hashed. HEROIC's free breach scanner checks your email against more than 400 billion breached records, including this one, so you can find out and update any passwords you may have reused elsewhere.
Breach Breakdown
86,162 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds