credential exposure
Breach chronology
The Live.com PDF lists eighteen incidents, and the Gmail exports add three more (MangaDex, Luxottica, Under Armour).
- Earliest leak: MySpace (01 Jul 2008) · Latest: Synthient credential stuffing feed (11 Apr 2025).
- Gmail-specific hits: MangaDex (22 Mar 2021), Luxottica (16 Mar 2021), Under Armour (17 Nov 2025).
- Data types span passwords, DOB, phones, addresses, purchases, security Q&A, and geographic traces.
Gmail export exposures
Luxottica
Under Armour
Live.com exposures
Tumblr
MySpace
iMesh
Modern Business Solutions
- DOB, genders, job titles
- Emails, phones, physical addresses
River City Media spam list
Anti Public combo list
Exploit.In
Edmodo
CashCrate
BlankMediaGames
- Browser fingerprints + IPs
- Emails, passwords, purchases, activity
Collection #1
MyFitnessPal
StockX
- Emails, names, physical addresses
- Passwords, purchase history, usernames