Back to Radar
MA

mail.ru Dump

High

A breach in 2014 exposed 16M records, primarily email-password pairs linked to mail.ru.

Records exposed
16,630,988 records
Breach date
Breach Sep 10, 2014
Last update
Updated Jan 9, 2018

What data was exposed?

Fields reported as compromised in this breach record.

Email addressesPasswords

Why does this breach matter?

In-depth analysis of the breach and its implications.

In September 2014, a data dump containing approximately five million email addresses and associated passwords, primarily from the mail.ru domain, was disclosed through the Russian Bitcoin Security Forum. The exposed data was later validated as credentials used on various services, unrelated to mail.ru itself. Furthermore, additional data purportedly linked to mail.ru users surfaced in January 2018, raising the total to over sixteen million records consisting of email addresses and plain-text passwords. This breach was classified as 'unverified' under criteria introduced subsequent to its original identification.

Impact Analysis

Understanding the scope and consequences of this breach.

User Impact
Users may experience account compromise on multiple services leveraging similar credentials.
Business Impact
The breach underscores the risks associated with credential reuse across services.
Affected Sectors
  • Internet Services
Geographic Impact
  • Global

What You Should Do

Recommended actions to take in response to this breach.

If You Were Affected

  • Change passwords for affected accounts.
  • Enable two-factor authentication.
  • Monitor accounts for unusual activity.

Preventive Measures

  • Use unique passwords for each service.
  • Adopt a password manager.
  • Stay informed about breaches and security practices.

Frequently Asked Questions

Common questions about this breach and what it means for you.

You should immediately change your passwords associated with mail.ru and ensure other accounts do not use the same credentials