Skip to content
Data breachResolved

piZap data breach (2017)

In approximately December 2017, the online photo editing site piZap suffered a data breach. The data was later placed up for sale on a dark web marketplace along with a collection of other data breaches in February 2019.

Victim
piZap
records
41.8M
SectorRetail

Imported from Have I Been Pwned — pending editorial review and translation to French. The summary below is machine-extracted; consult the source for details.

In 2017-12-07, piZap was affected by a data breach. Approximately 41,817,893 accounts were exposed. In approximately December 2017, the online photo editing site piZap suffered a data breach. The data was later placed up for sale on a dark web marketplace along with a collection of other data breaches in February 2019.

Sources

  1. haveibeenpwned.comhttps://haveibeenpwned.com/PwnedWebsites#piZap
  2. pizap.comhttps://pizap.com

Related incidents

Data breachResolved

PetFlow data breach (2017)

In December 2017, the pet care delivery service PetFlow suffered a data breach which consequently appeared for sale on a dark web marketplace. Almost 1M accounts were impacted and exposed email addresses and passwords stored as unsalted MD5 hashes.

Victim
PetFlow
Records
990.9K
Data breachResolved

dvd-shop.ch data breach (2017)

In December 2017, the online Swiss DVD store known as dvd-shop.ch suffered a data breach. The incident led to the exposure of 68k email addresses and plain text passwords. The site has since been updated to indicate that it is currently closed.

Victim
dvd-shop.ch
Records
68.0K
Data breachResolved

MyHeritage data breach (2017)

Genealogy and DNA-testing service MyHeritage was breached in October 2017, exposing roughly 92 million account email addresses and salted SHA-1 password hashes. The incident was only discovered and disclosed in June 2018.

Victim
MyHeritage
Records
92.0M
Data breachResolved

Bukalapak data breach (2017)

In March 2019, the Indonesian e-commerce website Bukalapak discovered a data breach of the organisation's backups dating back to October 2017. The incident exposed approximately 13 million unique email addresses alongside IP addresses, names and passwords stored as bcrypt and salted SHA-512 hashes.

Victim
Bukalapak
Records
13.4M