Back To Breaches


In September 2016, over 16GB of logs from a service indicated to be were obtained, most likely from an unprotected Mongo DB instance. The service ceased running shortly afterwards and no information remains about the precise nature of it. Based on enquiries made via Twitter, it appears to have been a mail service possibly based on PowerMTA and used for delivering spam. The logs contained information including 7.7M unique email recipients (names and addresses), mail server IP addresses, email subjects and tracking information including mail opens and clicks.

  • Domain:
  • Breach Count: 7,687,679
  • Breach Date: Sept. 5, 2016
  • Added: Sept. 28, 2018
  • Verified: True
  • Fabricated: False
  • Events: 0
  • Source: HaveIBeenPwned