Breach Intelligence Report 10 Mar 2025

ProSushi Breach: 164K Records Leaked on Christmas Eve 2023

HEROIC
HEROIC Threat Intelligence Team
Phone Number Password Hash Gender Birthday
Your email may be in this breach. Check in 5 seconds — free, no signup required.
Scan Email →
Records Exposed 164,048
Source Type Database
Origin Darkweb
Password Type MD5

HEROIC analysts first spotted the ProSushi dataset circulating on dark web forums on December 24, 2023 — a date that made the timing partcularly striking. While millions of people were preparing for holiday celebrations, 164,048 customers of the Russian sushi delivery service had their personal data quietly uploaded to criminal marketplaces. The exposed records included phone numbers, password hashes, genders, and birthdays: a combination that gives fraudsters everything they need to impersonate real people or crack their way into other accounts.


MD5 Passwords in 2023: A Ticking Clock for Every Affected User

The most alarming detail in this breach is not the volume of records — it is the password hashing method. ProSushi stored user passwords using MD5, an algorithm that was recieved widespread condemnation by the security community decades ago. MD5 hashes can be reversed in seconds using freely accessable rainbow table tools. That means any attacker who downloaded this database effectively has the plaintext passwords of every ProSushi user who reused a weak or common password. The clock started ticking on December 24, 2023, and it has not stopped.


What Was Exposed

  • Phone Number — direct line for SMS phishing and fraud calls
  • Password Hash (MD5) — easily crackable, exposing account passwords
  • Gender — used to personalize social engineering attacks
  • Birthday — a common security question answer and identity verification factor

Why This Combination Is Dangerous

Taken individually, any one of these data points might seem minor. Together, they form a profile that attackers can use in multiple ways. A phone number plus a birthday is often enough to pass SMS-based identity verification at banks and mobile carriers. A cracked password, combined with an email address or phone number, enables credential stuffing across dozens of other platforms. And because food delivery apps frequently store payment methods, a successful account takeover could lead directly to financial fraud — not just on ProSushi, but on every service where the victim reused their password.


How Database Breaches Like This Happen

A database breach occured when attackers gain unauthorized access to a company's backend data storage systems. Common methods include SQL injection attacks, where malicious code is inserted into website input fields to extract database contents, or exploitation of unpatched software vulnerabilities. Once inside, attackers can export entire tables of user records in minutes. The use of MD5 for password storage suggests ProSushi's security practices had not kept pace with modern standards — a risk factor that significantly amplifies the damage once a breach occurs, because passwords are compromised alongside the personal data.


Check If Your Information Was Exposed

HEROIC monitors over 400 billion records from known data breaches, including the ProSushi dataset. If you had an account on ProSushi or used the same password elsewhere, you should check your exposure immediately and change any reused passwords. Visit heroic.com to run a free check against our breach database and find out if your email address or phone number appears in this or any other known leak.

Breach Breakdown

Domain N/A
Leaked Data Phone Number, Password Hash, Gender, Birthday
Password Types MD5
Date Leaked 10 Mar 2025
Check in 5 seconds

164,048 passwords exposed. Is yours one of them?

Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.

All information submitted is Private and Secure. We do not sell or share email addresses. By searching, you agree to HEROIC's Privacy Policy and Terms of Service.

Free forever · No account required · Results in seconds

Private & Secure No Account Needed 3,538 scanned today
Breach Rank #3,285 by affected users
Impact Score
7
sensitivity + scale + recency
Est. Financial Impact $1.2M fraud, phishing & misuse risk
Scan your email Free →
Scan to sign up

Scan to sign up instantly

24/7 Dark Web Monitoring
Instant Breach Alerts
Secure Data Protection
Your Data is at Risk

Your Personal Information is Exposed

We found your data exposed in multiple breaches. This includes:

  • Email addresses
  • Passwords
  • Phone numbers
  • Financial information
Secure My Information Now

Your information is protected by enterprise-grade security

Your Breach Details

Date:
Severity:
Records Exposed:

Your Exposed Information

Your Risk Level

How This Affects You

Full Breach Details

Premium Insights

Unlock Critical Security Information

Create a free account to access:

  • Full Breach Impact Analysis
  • Identity Theft Risk Score
  • Exposed Credentials Details
  • Personalized Security Recommendations
Create Free Account

Identity Theft Risk Score

Risk Score: 8.7/10 - Critical

Data Exposure Analysis

Passwords Critical
Financial High
Personal Medium
Social High
Security Critical

Breach Timeline Analysis

March 2024 Multiple credentials exposed in recent data breach
January 2024 Password found in dark web marketplace
December 2023 Personal information leaked in major security incident

Security Recommendations

High Priority
Password Security

Critical: Change compromised passwords immediately and enable 2FA on all accounts

Important
Financial Protection

Monitor credit reports and set up fraud alerts with major credit bureaus

Recommended
Identity Protection

Enable advanced identity monitoring and dark web surveillance