PhenoPlasm Research Database Breach & Analysis
We noticed a recent aggregation of user credentials surfacing on a well-established dark web marketplace, linked to a scientific data repository. What struck us was the relatively small scale of this particular leak, yet its potential impact on a niche, research-focused organization. The dataset, originating from PhenoPlasm, a U.S.-based entity specializing in Plasmodium gene disruption phenotype data, contained a specific set of user credentials. The discovery on October 16, 2018, points to a retrospective exposure of sensitive information, emphasizing the persistent threat of older, potentially unpatched vulnerabilities or compromised credentials being leveraged long after the initial incident.
The breach, identified on October 16, 2018, involved a dataset containing 2,806 user records from PhenoPlasm. Analysis reveals the compromised data primarily consists of email addresses and phpass password hashes. This type of credential stuffing vulnerability is particularly concerning as phpass hashes, while not plaintext, can be susceptible to offline brute-force attacks, especially if weak passwords were used. The source structure suggests a direct database exfiltration or a sophisticated injection attack targeting user authentication tables. The leak locations were primarily identified on prominent hacking forums, indicating a deliberate effort to monetize or distribute the compromised credentials.
While this specific PhenoPlasm breach did not garner widespread media attention at the time of its discovery, similar incidents involving scientific databases highlight the growing threat landscape for research institutions. OSINT investigations into PhenoPlasm's operational security practices prior to 2018 are limited, but general industry trends indicate a rise in targeted attacks against organizations holding valuable intellectual property or sensitive research data. Researchers at universities and private institutions often reuse credentials, making breaches like this a potential gateway to more significant compromises within interconnected research networks.
Breach Breakdown
2,806 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds