Breach Intelligence Report 25 Jul 2022

Dark Web Intel: 86,162 Los Angeles Times Logins Exposed

HEROIC
HEROIC Threat Intelligence Team
First Name Last Email Address Username Passwords
Your email may be in this breach. Check in 5 seconds — free, no signup required.
Scan Email →
Records Exposed 86,162
Source Type Database
Origin Darkweb
Password Type plaintext & no passwords

Dark Web Intel: 86,162 Los Angeles Times Logins Exposed

HEROIC analysts have identified a data breach connected to the Los Angeles Times that exposed 86,162 user records. The breach dates back to July 2015, and the compromised data includes first names, last names, email addresses, usernames, and passwords. Our records indicate some of those passwords were stored in plaintext, while other accounts in the breach had no password field at all.


Why a Full Name and Email Combination Is More Dangerous Than It Sounds

Unlike breaches that expose only a username and a hash, this one includes real first and last names alongside email addresses. That combination lets an attacker impersonate a real person convincingly, whether in a phishing email, a fraudulent account recovery request, or a scam that references personal details to seem legitimate. For accounts where the password was stored in plaintext, there is nothing to crack at all, the password is simply readable.

What Was Exposed

  • First names
  • Last names
  • Email addresses
  • Usernames
  • Passwords (stored in plaintext for some accounts)

Why This Matters

A plaintext password is immediately usable by anyone who has the data, no cracking required. If that password was reused on another account, such as email or online banking, an attacker can log in right away. Combined with a real name and email address, this data also supports identity theft and highly targeted phishing attempts that are harder to spot than generic scam emails.

How a Database Breach Like This Happens

This incident is classified as a database breach, meaning attackers accessed the underlying user database directly rather than intercepting individual logins. These breaches commonly stem from unpatched software, exposed admin access, or weak server security. Once inside, an attacker can extract full user records, including names, emails, usernames, and passwords, in a single action.


Check If You Are Affected

If you ever created an account with the Los Angeles Times, it is worth checking your exposure, particularly given that some passwords in this breach were never even hashed. HEROIC's free breach scanner checks your email against more than 400 billion breached records, including this one, so you can find out and update any passwords you may have reused elsewhere.

Breach Breakdown

Domain N/A
Leaked Data First Name, Last Name, Email Address, Username, Passwords
Password Types plaintext & no passwords
Date Leaked 25 Jul 2022
Check in 5 seconds

86,162 passwords exposed. Is yours one of them?

Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.

All information submitted is Private and Secure. We do not sell or share email addresses. By searching, you agree to HEROIC's Privacy Policy and Terms of Service.

Free forever · No account required · Results in seconds

Private & Secure No Account Needed 3,580 scanned today
Breach Rank #N/A by affected users
Impact Score
3
sensitivity + scale + recency
Est. Financial Impact $623.5K fraud, phishing & misuse risk
Scan your email Free →
Scan to sign up

Scan to sign up instantly

24/7 Dark Web Monitoring
Instant Breach Alerts
Secure Data Protection
Your Data is at Risk

Your Personal Information is Exposed

We found your data exposed in multiple breaches. This includes:

  • Email addresses
  • Passwords
  • Phone numbers
  • Financial information
Secure My Information Now

Your information is protected by enterprise-grade security

Your Breach Details

Date:
Severity:
Records Exposed:

Your Exposed Information

Your Risk Level

How This Affects You

Full Breach Details

Premium Insights

Unlock Critical Security Information

Create a free account to access:

  • Full Breach Impact Analysis
  • Identity Theft Risk Score
  • Exposed Credentials Details
  • Personalized Security Recommendations
Create Free Account

Identity Theft Risk Score

Risk Score: 8.7/10 - Critical

Data Exposure Analysis

Passwords Critical
Financial High
Personal Medium
Social High
Security Critical

Breach Timeline Analysis

March 2024 Multiple credentials exposed in recent data breach
January 2024 Password found in dark web marketplace
December 2023 Personal information leaked in major security incident

Security Recommendations

High Priority
Password Security

Critical: Change compromised passwords immediately and enable 2FA on all accounts

Important
Financial Protection

Monitor credit reports and set up fraud alerts with major credit bureaus

Recommended
Identity Protection

Enable advanced identity monitoring and dark web surveillance