ViewPoints
We noticed a recent resurfacing of credentials belonging to users of ViewPoints, an Italian online news platform that ceased operations in 2018. The initial discovery occurred during routine threat intelligence monitoring, where a dataset containing a significant number of email addresses and their associated plaintext passwords was identified on a public hacking forum. What struck us was the continued accessibility and potential utility of this relatively old data, suggesting a lack of robust credential management practices even after the platform's demise. The sheer volume of exposed credentials, particularly in clear text, presents a persistent risk of account compromise and further downstream attacks.
The ViewPoints breach, which occurred on February 7, 2018, exposed approximately 46,347 records. The primary data types compromised were email addresses and plaintext passwords. Analysis of the leaked data indicates a direct database dump or exfiltration, with the source structure likely being a user authentication table. The data was subsequently disseminated on a well-known hacking forum, making it readily available to malicious actors. This incident falls under the category of a database breach, compounded by its inclusion in what are often referred to as "combolists" – collections of username/password pairs used for credential stuffing attacks. The exposure of plaintext passwords is a critical vulnerability, as it bypasses the need for any decryption or brute-forcing efforts by attackers.
While this specific breach predates significant public news coverage, similar incidents involving the exposure of credentials from defunct or poorly secured online platforms are a recurring theme in cybersecurity. OSINT investigations into ViewPoints reveal its status as an Italian online news aggregator that ceased operations sometime after 2018. Research into credential stuffing attacks consistently highlights the dangers posed by plaintext password storage and the reuse of credentials across multiple platforms, a practice exacerbated by the availability of such leaked datasets. The continued presence of this data underscores the long-term implications of data breaches, even from platforms no longer in active service.
Breach Breakdown
46,347 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds