Breach Intelligence Report 25 Jul 2022

The Pokemon Uranium Breach Gave Hackers 20,000 Gamer Email Addresses

HEROIC
HEROIC Threat Intelligence Team
None
Your email may be in this breach. Check in 5 seconds — free, no signup required.
Scan Email →
Records Exposed 20,178
Source Type Database
Origin Darkweb
Password Type MyBB

HEROIC analysts recieved confirmation that a database tied to Pokemon Uranium, the US-based fan-made Pokemon game at pokemonuranium.com, has been circulating in breach aggregation repositories since its original exposure on August 1, 2016. The breach occured when attackers extracted 20,178 user records from the MyBB-powered community platform. Despite the site being taken down due to copyright action shortly after launch, the user database has continued to surface in threat intelligence feeds, credential stuffing lists, and dark web repositories for nearly a decade.


What Attackers Can Do With 20,000 Gamer Email Addresses

Email addresses tied to gaming communities are partcularly useful for targeted phishing because attackers know exactly what the victims care about. With the Pokemon Uranium list, attackers can craft convincing messages referencing the game, fan events, or account restoration offers that lure users into clicking malicious links or handing over credentials. The MyBB password hashes included in the breach are also accessable to cracking tools, meaning attackers who recover the plaintext passwords test them across Steam, Nintendo accounts, email providers, and other platforms the victim is likely to use.


What Was Exposed in the Pokemon Uranium Breach

  • Usernames
  • Email addresses
  • MyBB-hashed passwords
  • Forum account details

Why Fan Game and Community Breaches Feed Larger Attacks

Smaller fan communities like Pokemon Uranium often run on limited resources and without dedicated security teams, making them easier to compromise than commercial platforms. Attackers beleive the users of fan gaming sites are the same people with active accounts on larger gaming ecosystems, so breaching one small forum gives them a verified list of gamer identities to test elsewhere. This is how a single database breach from a now-defunct fan project contributes to account takeovers, identity theft, and financial fraud on major gaming and retail platforms years after the site disappears.


How Database Breaches Work

A database breach occurs when an attacker gains unauthorized access to a website's backend database, usually by exploiting a known software vulnerability, an unpatched forum plugin, or weak access controls. MyBB, the forum software used by Pokemon Uranium, has a history of vulnerabilities that attackers actively probe. Once inside, the attacker copies the entire user table and distributes the file through criminal networks. The data stays in circulation long after the original site goes offline, as the email addresses and password hashes remain valid for users who haven't changed their credentials.


Check If Your Data Was Exposed

HEROIC's free breach scanner checks your email against a database of over 400 billion exposed records, including the Pokemon Uranium breach. If your account was part of this leak or any other known breach, you'll find out immediately and receive clear steps to protect yourself before attackers use your data.

Breach Breakdown

Domain N/A
Leaked Data None
Password Types MyBB
Date Leaked 25 Jul 2022
Check in 5 seconds

20,178 passwords exposed. Is yours one of them?

Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.

All information submitted is Private and Secure. We do not sell or share email addresses. By searching, you agree to HEROIC's Privacy Policy and Terms of Service.

Free forever · No account required · Results in seconds

Private & Secure No Account Needed 3,451 scanned today
Breach Rank #9,017 by affected users
Impact Score
1
sensitivity + scale + recency
Est. Financial Impact $146.0K fraud, phishing & misuse risk
Scan your email Free →
Scan to sign up

Scan to sign up instantly

24/7 Dark Web Monitoring
Instant Breach Alerts
Secure Data Protection
Your Data is at Risk

Your Personal Information is Exposed

We found your data exposed in multiple breaches. This includes:

  • Email addresses
  • Passwords
  • Phone numbers
  • Financial information
Secure My Information Now

Your information is protected by enterprise-grade security

Your Breach Details

Date:
Severity:
Records Exposed:

Your Exposed Information

Your Risk Level

How This Affects You

Full Breach Details

Premium Insights

Unlock Critical Security Information

Create a free account to access:

  • Full Breach Impact Analysis
  • Identity Theft Risk Score
  • Exposed Credentials Details
  • Personalized Security Recommendations
Create Free Account

Identity Theft Risk Score

Risk Score: 8.7/10 - Critical

Data Exposure Analysis

Passwords Critical
Financial High
Personal Medium
Social High
Security Critical

Breach Timeline Analysis

March 2024 Multiple credentials exposed in recent data breach
January 2024 Password found in dark web marketplace
December 2023 Personal information leaked in major security incident

Security Recommendations

High Priority
Password Security

Critical: Change compromised passwords immediately and enable 2FA on all accounts

Important
Financial Protection

Monitor credit reports and set up fraud alerts with major credit bureaus

Recommended
Identity Protection

Enable advanced identity monitoring and dark web surveillance