Skip to content
Data breachResolved

8tracks data breach (2017)

In June 2017, the online playlists service known as 8Tracks suffered a data breach which impacted 18 million accounts. In their disclosure, 8Tracks advised that "the vector for the attack was an employee’s GitHub account, which was not secured using two-factor authentication".

Victim
8tracks
records
18.0M

Imported from Have I Been Pwned — pending editorial review and translation to French. The summary below is machine-extracted; consult the source for details.

In 2017-06-27, 8tracks was affected by a data breach. Approximately 17,979,961 accounts were exposed. In June 2017, the online playlists service known as 8Tracks suffered a data breach which impacted 18 million accounts. In their disclosure, 8Tracks advised that "the vector for the attack was an employee’s GitHub account, which was not secured using two-factor authentication".

Sources

  1. haveibeenpwned.comhttps://haveibeenpwned.com/PwnedWebsites#8tracks
  2. 8tracks.comhttps://8tracks.com

Related incidents

Data breachResolved

Animoto data breach (2018)

In July 2018, the cloud-based video making service Animoto suffered a data breach. The breach exposed 22 million unique email addresses alongside names, dates of birth, country of origin and salted password hashes.

Victim
Animoto
Records
22.4M
Data breachResolved

Bitly data breach (2014)

In May 2014, the link management company Bitly announced they'd suffered a data breach. The breach contained over 9.3 million unique email addresses, usernames and hashed passwords, most using SHA1 with a small number using bcrypt.

Victim
Bitly
Records
9.3M
Data breachResolved

HoundDawgs data breach (2017)

In December 2017, the Danish torrent tracker known as HoundDawgs suffered a data breach. More than 55GB of data was dumped publicly and whilst there was initially contention as to the severity of the incident, the data did indeed contain more than 45k unique email addresses complete extensive logs…

Victim
HoundDawgs
Records
45.7K
Data breachResolved

Uber 2016 data breach and cover-up

Attackers stole personal data on 57 million Uber riders and drivers in October 2016. Rather than disclose, Uber paid the hackers a $100,000 ransom and disguised it as a bug bounty — a cover-up that led to a $148 million multistate settlement and the criminal conviction of Uber's security chief.

Victim
Uber Technologies, Inc.
Loss
$148.0M
Records
57.0M