2.4M tgbus Gaming Forum Users Exposed in Database Breach
We've been tracking the steady increase in Chinese-language data dumps appearing on English-language breach forums, a trend that suggests either increased targeting of Chinese entities or a shift in the actors willing to monetize that data on a broader market. What caught our attention with the **tgbus** dump wasn't just the volume of records, but the relatively complete user profiles contained within: real names, email addresses, forum activity, and even purchase histories. The setup here felt different because the data wasn't just credentials for a single service, but a comprehensive snapshot of users' online gaming identities.
### The Gaming Forum Leak Exposing 2.4M User Records
This breach highlights the risk associated with centralized user databases, particularly within online gaming communities. The exposed data provides a rich profile for potential social engineering attacks, account takeovers, or even identity theft. The data surfaced on a well-known breach forum on **October 26, 2023**, advertised as a complete user database dump from **tgbus.com**, a popular Chinese-language gaming forum. The poster claimed the data was obtained through an unspecified exploit. What made this particularly concerning was the level of detail within the records, suggesting a potentially older, less secure database structure. This matters to enterprises now because it demonstrates the enduring value of legacy data and the potential for breaches years after the initial compromise. It ties into the broader threat theme of aging infrastructure and the difficulty of securing data across extended lifecycles.
**Breach Stats:**
* **Total records exposed:** 2.4 million
* **Types of data included:** Email addresses, usernames, passwords (hashed), IP addresses, registration dates, forum activity logs, purchase history, real names, physical addresses (in some cases)
* **Sensitive content types:** PII (Personally Identifiable Information), purchase history
* **Source structure:** SQL database dump
* **Leak location:** Breach forum (name withheld to avoid direct linking, but easily discoverable with search engine queries)
* **Date of first appearance:** October 26, 2023
### External Context & Supporting Evidence
While mainstream media hasn't picked up this specific breach, similar gaming forum breaches have been reported in the past. For example, the **Epic Games forum breach in 2016** resulted in similar exposure of user data. The persistence of these types of breaches underscores the need for robust security measures within online gaming communities. OSINT indicates discussions on various Chinese-language forums confirming the validity of the data. One translated post stated, "These are old accounts, but still usable for some games." This suggests that even outdated credentials may still pose a risk. Furthermore, multiple threat actors have been observed trading similar gaming forum databases on Telegram channels dedicated to selling compromised data.
Breach Breakdown
10,059,912 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds