# haveibeenpwned.com > AI-optimized mirror of haveibeenpwned.com containing 25 pages totalling 17,126 words of clean markdown content, structured data, and semantic HTML. Original source: https://haveibeenpwned.com/. Last updated: 2026-06-16T00:45:11.576Z. Each page is available as HTML (with JSON-LD structured data) and Markdown (text-only, ideal for LLMs and RAG). ## Homepage - [Email Breach History](/content/site-root.html): Have I Been Pwned allows you to check whether your email address has been exposed in a data breach. (158 words) ## Articles & Blog Posts - [api/v3/index.html](/content/api/v3/index.html) (1 words) - [Find the Right Plan](/content/subscription/index.html): From quick email searches to large-scale domain monitoring and high-throughput APIs, choose a plan that fits how you use HIBP. (1,727 words) - [Who, What & Why](/content/about/index.html): Learn about Have I Been Pwned, why it was created, who runs it, and how it helps people discover if their personal data has been exposed in data breaches. (595 words) - [Demos](/content/demos/index.html): A collection of demos that highlight HIBP features and help users make the most of the service. (135 words) - [Bitly Data Breach](/content/breach/bitly/index.html): In May 2014, the link management company Bitly announced they'd suffered a data breach. The breach contained over 9.3 million unique email addresses, usernames and hashed passwords, most using SHA1 with a small number using bcrypt. (373 words) - [Scuf Gaming Data Breach](/content/breach/scufgaming/index.html): In June 2015, custom gaming controller maker Scuf Gaming suffered a data breach. The incident exposed 129k unique email addresses along with usernames, display names, IP addresses and password hashes. (372 words) - [Atlas Menu Data Breach](/content/breach/atlasmenu/index.html): In May 2026, the GTA V and CS2 cheat service Atlas Menu suffered a data breach. An attacker claimed to have gained access to all Atlas systems and published the service's database to a public GitHub repository. The incident exposed 64k unique email addresses along with usernames, IP addresses, support tickets and passwords stored as bcrypt hashes. (399 words) - [Infinite Campus Data Breach](/content/breach/infinitecampus/index.html): In March 2026, the student information system Infinite Campus was targeted in a ShinyHunters "pay or leak" extortion campaign. The group subsequently published data they alleged was taken from Infinite Campus, containing 137k unique email addresses along with names, phone numbers, physical addresses and support tickets. Infinite Campus subsequently sent notifications, advising that the exposed data largely consisted of "names and contact information for school staff" and that "the majority is directory information commonly found on school websites". (385 words) - [Malwarebytes Data Breach](/content/breach/malwarebytes/index.html): In November 2014, the Malwarebytes forum was hacked and 111k member records were exposed. The IP.Board forum included email and IP addresses, birth dates and passwords stored as salted hashes using a weak implementation enabling many to be rapidly cracked. (384 words) - [Bolt Data Breach](/content/breach/bolt/index.html): In approximately March 2017, the file sharing website Bolt suffered a data breach resulting in the exposure of 995k unique user records. The data was sourced from their vBulletin forum and contained email and IP addresses, usernames and salted MD5 password hashes. The site was previously reported as compromised on the Vigilante.pw breached database directory. (394 words) - [Berkadia Data Breach](/content/breach/berkadia/index.html): In March 2026, the commercial real estate finance company Berkadia was the target of a ShinyHunters "pay or leak" extortion campaign. The group subsequently published data they alleged was taken from Berkadia's Salesforce instance, including over 300k unique email addresses as well as names, physical addresses and phone numbers, among other data. (353 words) - [ADT Data Breach](/content/breach/adt/index.html): In April 2026, home security firm ADT confirmed a data breach by ShinyHunters, which listed the company on its website as part of a "pay or leak" extortion attempt. The breach impacted 5.5M unique email addresses along with names, phone numbers and physical addresses. ADT also advised that "in a small percentage of cases, dates of birth and the last four digits of Social Security numbers or Tax IDs were included" and that it had contacted all affected people. (386 words) - [Sign In to Your Dashboard](/content/dashboard/signin/index.html): Sign in to access your Have I Been Pwned dashboard, where you can search sensitive breaches, view stealer logs, manage domains, and access subscription features. (167 words) - [June 2026 Stealer Logs Data Breach](/content/breach/june2026stealerlogs/index.html): In June 2026, a collection of accumulated stealer logs from various sources was added to HIBP. The corpus comprised 56M unique email addresses across hundreds of millions of stealer log records. The data also contained 124M unique passwords, which have been added to Pwned Passwords and are now searchable. Individuals can view any records captured against their email address in the stealer logs section of their dashboard. Organisations can see logs affecting their domain via the stealer logs API. (420 words) - [Wiener Büchereien Data Breach](/content/breach/wienerbuchereien/index.html): In June 2019, the library of Vienna (Wiener Büchereien) suffered a data breach. The compromised data included 224k unique email addresses, names, physical addresses, phone numbers and dates of birth. The breached data was subsequently posted to Twitter by the alleged perpetrator of the breach. (349 words) - [ForumCommunity Data Breach](/content/breach/forumcommunity/index.html): In approximately mid-2016, the Italian-based service for creating forums known as ForumCommunity suffered a data breach. The incident impacted over 776k unique email addresses along with usernames and unsalted MD5 password hashes. No response was received from ForumCommunity when contacted. (377 words) - [LiveAuctioneers Data Breach](/content/breach/liveauctioneers/index.html): In June 2020, the online antiques marketplace LiveAuctioneers suffered a data breach which was subsequently sold online then extensively redistributed in the hacking community. The data contained 3.4 million records including names, email and IP addresses, physical addresses, phones numbers and passwords stored as unsalted MD5 hashes. The data was provided to HIBP by breachbase.pw. (399 words) - [Figure Data Breach](/content/breach/figure/index.html): In February 2026, data obtained from the fintech lending platform Figure was publicly posted online. The exposed data, dating back to January 2026, contained over 900k unique email addresses along with names, phone numbers, physical addresses and dates of birth. Figure confirmed the incident and attributed it to a social engineering attack in which an employee was tricked into providing access. (364 words) - [Twitter Data Breach](/content/breach/twitter/index.html): In January 2022, a vulnerability in Twitter's platform allowed an attacker to build a database of the email addresses and phone numbers of millions of users of the social platform. In a disclosure notice later shared in August 2022, Twitter advised that the vulnerability was related to a bug introduced in June 2021 and that they are directly notifying impacted customers. The impacted data included either email address or phone number alongside other public information including the username, display name, bio, location and profile photo. The data included 6.7M unique email addresses across both active and suspended accounts, the latter appearing in a separate list of 1.4M addresses. (412 words) - [Apollo Data Breach](/content/breach/apollo/index.html): In July 2018, the sales engagement startup Apollo left a database containing billions of data points publicly exposed without a password. The data was discovered by security researcher Vinny Troia who subsequently sent a subset of the data containing 126 million unique email addresses to Have I Been Pwned. The data left exposed by Apollo was used in their "revenue acceleration platform" and included personal information such as names and email addresses as well as professional information including places of employment, the roles people hold and where they're located. Apollo stressed that the exposed data did not include sensitive information such as passwords, social security numbers or financial data. The Apollo website has a contact form for those looking to get in touch with the organisation. (433 words) - [Elance Data Breach](/content/breach/elance/index.html): Sometime in 2009, staffing platform Elance suffered a data breach that impacted 1.3 million accounts. Appearing online 8 years later, the data contained usernames, email addresses, phone numbers and SHA1 hashes of passwords, amongst other personal data. (379 words) - [LinkedIn Scraped Data (2021) Data Breach](/content/breach/linkedinscrape/index.html): During the first half of 2021, LinkedIn was targeted by attackers who scraped data from hundreds of millions of public profiles and later sold them online. Whilst the scraping did not constitute a data breach nor did it access any personal data not intended to be publicly accessible, the data was still monetised and later broadly circulated in hacking circles. The scraped data contains approximately 400M records with 125M unique email addresses, as well as names, geographic locations, genders and job titles. LinkedIn specifically addresses the incident in their post on An update on report of scraped data. (407 words) - [sitemap-xml.html](/content/sitemap-xml.html) (1 words) - [Who's Been Pwned](/content/pwnedwebsites/index.html): Every breached website added to Have I Been Pwned appears here on the Who’s Been Pwned page. As of today, there are 1,006 breached sites listed. (7,756 words) ## Resources - [Full Page Index](/index.html): Browse all cached pages with rich metadata - [About This Cache](/content/about.html): Methodology, technical details, and usage guidelines - [XML Sitemap](/sitemap.xml): Machine-readable sitemap for crawler discovery - [Robots.txt](/robots.txt): Crawler directives