[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f2u6thqf929ucz":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":27,"seoTitle":28,"seoTitleEn":29,"seoDescription":28,"seoDescriptionEn":30,"logoUrl":31,"isVerified":4,"isSensitive":4,"isSpamList":32,"isMalware":32,"company":33},"68e3266eda11adda488250b9","000webhost","000webhost Data Breach","000webhost.com","2015-03-01T00:00:00.000Z","2015-10-26T23:35:45.000Z","2026-07-29T11:13:00.741Z","Authenticated breach corpus and contemporaneous incident reporting","https:\u002F\u002Fwww.troyhunt.com\u002Fbreaches-traders-plain-text-passwords\u002F",[14,16],"https:\u002F\u002Fwww.forbes.com\u002Fsites\u002Fthomasbrewster\u002F2015\u002F10\u002F28\u002F000webhost-database-leak\u002F",14936670,"known",null,"records","Critical",[23,24,25,26],"Email addresses","IP addresses","Names","Plaintext passwords","\u003Cp>\u003Cstrong>The 2015 000webhost breach\u003C\u002Fstrong> is dated to March 2015 and exposed account data containing names, emails, IP addresses, and plaintext passwords. Incident accounts report an entry path through an outdated PHP component; that technical detail does not mean every account or user device was individually accessed.\u003C\u002Fp>\u003Cp>The external measure is 14,936,670 accounts. The local record measure is 14,928,925, a difference of 7,745. Neither figure should be treated as people, active customers, or passwords still in use, and the two totals must not be presented as identical without separating corpus version and count unit.\u003C\u002Fp>\u003Cp>A row establishes only values in the attributed corpus. It does not establish identity, an active 000webhost account, IP ownership or location, password ownership or currentness, field co-occurrence, account takeover, or misuse.\u003C\u002Fp>\u003Cp>If a plaintext password is genuinely the person’s and was reused elsewhere, it should be replaced with a unique password on every reused account. Variations of the same password should not be used, and unexpected reset or account messages should be verified through an independently obtained official channel.\u003C\u002Fp>","","000webhost Data Breach (14.9 Million Records)","000webhost Data Breach. 14.9 Million records were reported. Reported data: Email addresses, IP addresses, Names. Review the scope, risks, and protective steps.","\u002Fuploads\u002Flogo\u002F000webhost_com.webp",false,{"name":7,"sector":34,"country":35,"website":9,"websiteArchiveUrl":28,"websiteStatus":28,"websiteCheckedAt":19},"Free web hosting","Lithuania"]