Skip to content
Data breachResolved

Xiaomi data breach (2012)

In August 2012, the Xiaomi user forum website suffered a data breach. In all, 7 million email addresses appeared in the breach although a significant portion of them were numeric aliases on the bbs_ml_as_uid.xiaomi.com domain.

Victim
Xiaomi
records
7.1M

Imported from Have I Been Pwned — pending editorial review and translation to French. The summary below is machine-extracted; consult the source for details.

In 2012-08-01, Xiaomi was affected by a data breach. Approximately 7,088,010 accounts were exposed. In August 2012, the Xiaomi user forum website suffered a data breach. In all, 7 million email addresses appeared in the breach although a significant portion of them were numeric aliases on the bbs_ml_as_uid.xiaomi.com domain.

Sources

  1. haveibeenpwned.comhttps://haveibeenpwned.com/PwnedWebsites#Xiaomi
  2. xiaomi.cnhttps://xiaomi.cn

Related incidents

Data breachResolved

Yahoo data breach (2012)

In July 2012, Yahoo! had their online publishing service "Voices" compromised via a SQL injection attack. The breach resulted in the disclosure of nearly half a million usernames and passwords stored in plain text.

Victim
Yahoo
Records
453.4K
Data breachResolved

Gamigo data breach (2012)

In March 2012, the German online game publisher Gamigo was hacked and more than 8 million accounts publicly leaked. The breach included email addresses and passwords stored as weak MD5 hashes with no salt.

Victim
Gamigo
Records
8.2M
Data breachResolved

Taobao data breach (2012)

In approximately 2012, it's alleged that the Chinese shopping site known as Taobao suffered a data breach that impacted over 21 million subscribers. Whilst there is evidence that the data is legitimate, due to the difficulty of emphatically verifying the Chinese breach it has been flagged as…

Victim
Taobao
Records
21.1M
Data breachContained

Lidl discloses online-shop data breach after hackers hit a third-party IT service provider

Lidl notified online-shop customers in Germany, Belgium and the Netherlands that attackers who breached one of its external IT service providers stole a file of personal data including names, contact details and dates of birth, while stressing that payment data, passwords and customer accounts were not affected.

Victim
Lidl