HighBreachHave I Been Pwned — public breach catalog· 6 Mar 2023

Eye4Fraud — 16.0M accounts

Severity: High · Kind: Data breach

Plain-English summary on the way

We've ingested this item but haven't summarised it yet. Read the upstream advisory using the link below in the meantime — the AI summary will appear here once the next run completes.

From the source

In February 2023, data alleged to have been taken from the fraud protection service Eye4Fraud was listed for sale on a popular hacking forum . Spanning tens of millions of rows with 16M unique email addresses, the data was spread across 147 tables totalling 65GB and included both direct users of the service and what appears to be individuals who'd placed orders on other services that implemented Eye4Fraud to protect their sales. The data included names and bcrypt password hashes for users, and names, phone numbers, physical addresses and partial credit card data (card type and last 4 digits) for orders placed using the service. Eye4Fraud did not respond to multiple attempts to report the incident.

Breach facts

Accounts affected
16,000,591
Verified
Yes
Sensitive
No
Domain
eye4fraud.com
Data exposed
Email addressesIP addressesNamesPartial credit card dataPasswordsPhone numbersPhysical addresses

Was this useful?

00000Sign in to react

Plain-English summaries are AI-generated and reviewed for tone, not technical accuracy. For incident response, always rely on the original source linked above.