Rumble Data Breach Exposes 189,011 User Emails and Usernames
HEROIC's DarkHive intelligence system discovered the Rumble breach, exposing 189,011 records from this video-sharing platform founded in 2013 and headquartered in Toronto, Canada. The breach occurred in July 2025 and exposed email addresses and usernames. No passwords were included in this dataset. Rumble operates as a video-sharing and cloud services platform, and its user base's contact information has since been distributed through underground data repositories where it can be used to target affected users with phishing campaigns and account enumeration attempts.
Why This Is Dangerous
While the absence of passwords reduces certain immediate risks, email addresses and usernames from the Rumble breach enable several attack vectors. Attackers with verified email-username pairs can launch targeted phishing campaigns designed to appear as legitimate Rumble account notifications, password reset requests, or platform communications. The 189,011 confirmed email addresses can also be used for email spam campaigns, account enumeration attacks on Rumble itself, and cross-platform username correlation to identify the same individuals on other online services. Phishing attacks using verified email addresses have significantly higher success rates than untargeted campaigns.
What Was Exposed
- Email Addresses
- Usernames
Why This Matters
Email address and username exposure from platform breaches enables persistent social engineering threats that do not expire the way credential risks do when users change their passwords. Affected Rumble users whose email addresses appear in this dataset will remain targets for phishing campaigns using Rumble-themed deception for years. Attackers can also use confirmed email addresses from this breach to search for the same addresses in other breach databases, building comprehensive profiles of affected individuals by correlating data across multiple breached sources to identify reused credentials on other platforms.
How Database Breaches Work
A database breach occurs when attackers exploit vulnerabilities in a web application's code, server configuration, or access controls to gain unauthorized access to stored user data. In cases like the Rumble breach where passwords are not exposed, the user registration table containing email addresses and usernames was extracted. Even partial database exposures provide valuable reconnaissance data to attackers who can use the confirmed email addresses for targeted phishing, spam, and cross-platform account correlation. The extracted data is distributed through underground forums and Telegram channels where it is incorporated into contact databases for social engineering operations.
Check If You Are Affected
HEROIC offers a free identity scanner searching over 400 billion records including data from the Rumble breach. Visit heroic.com to check if your information was exposed. If your email address appears in this dataset, be alert to phishing emails that appear to come from Rumble, and ensure your account uses a strong, unique password and two-factor authentication where available.
Breach Breakdown
189,011 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds