All breaches
Digimon data breach7.7M accounts compromised on 2016-09-05
Verified
Spam list
Digimon (digimon.co.in) was the source of a data breach dated 2016-09-05, exposing 7,687,679 accounts. The details below are mirrored from Have I Been Pwned and reflect the source's account of the incident at the time of publication.
Incident Report
| Target Organization | Digimon |
|---|---|
| Source Name | Digimon |
| Domain | digimon.co.in |
| Breach Date | 2016-09-05 |
| Added to HIBP | 2018-09-28 |
| Accounts Compromised | 7,687,679(7.7M) |
| Data Exposed | Email addressesEmail messagesIP addressesNames |
| Status | Verified by HIBP Spam list |
Description
In September 2016, over 16GB of logs from a service indicated to be digimon.co.in were obtained, most likely from an unprotected Mongo DB instance. The service ceased running shortly afterwards and no information remains about the precise nature of it. Based on enquiries made via Twitter, it appears to have been a mail service possibly based on PowerMTA and used for delivering spam. The logs contained information including 7.7M unique email recipients (names and addresses), mail server IP addresses, email subjects and tracking information including mail opens and clicks.
Disclaimer
HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

