Palmeiras Every Day
We've been tracking a steady stream of older database breaches resurfacing on various dark web forums, often repackaged and sold as "new" datasets. What caught our attention with the **Palmeiras Every Day** breach wasn't the size – just over **2,800** records – but the targeted nature of the site and the persistence of the data after nearly a decade. It highlights how seemingly small, older breaches can still pose a risk when credentials are reused across different platforms or when the hashed passwords are now more easily cracked with modern tools. The leak serves as a reminder of the long tail of data breaches and the need for continuous monitoring, even for older incidents.
The Brazilian Football Forum Breach with Lingering Impact
The breach involved the website Palmeiras Every Day, a forum dedicated to fans of the Brazilian football club Palmeiras. The data, which surfaced on February 12, 2016, included 2,802 records. The data had been quietly circulating, but we noticed it being promoted on a smaller, less-trafficked breach forum this week, packaged with other older breaches. This re-emergence prompted a deeper look.
The compromised data includes:
- Total records exposed: 2,802
- Types of data included: Email addresses, usernames, passwords (hashed)
- Sensitive content types: User credentials
- Source structure: Database
- Leak location(s): Breach forums
- Date of first appearance: February 12, 2016
The breach matters to enterprises now because it underscores the risk of credential reuse. Even if the original website is defunct or users have moved on, those same credentials may be in use on other, more sensitive platforms. The incident also illustrates the long shelf life of breached data; old breaches can be resurrected and exploited years later. The type of hash used was not specified in the leak details, but given the age of the breach, it is likely vulnerable to modern cracking techniques.
External Context & Supporting Evidence
While this particular breach didn't receive widespread media attention at the time, the phenomenon of older breaches resurfacing is a known trend. Security researcher Troy Hunt maintains the "Have I Been Pwned?" database, which tracks data breaches and allows users to check if their email address has been compromised. The re-emergence of this data highlights the importance of using unique passwords for each online account and employing password managers to mitigate the risk of credential reuse. It also underscores the need for organizations to monitor for compromised credentials associated with their domains, even from seemingly insignificant sources.
Breach Breakdown
2,802 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds