[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f96u2brmm6ohw":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"publishedAt":13,"modifiedDate":12,"contentUpdatedAt":13,"source":14,"sourceUrl":15,"sourceUrls":16,"pwnCount":19,"affectedCount":19,"affectedCountStatus":20,"affectedCountLowerBound":13,"affectedCountUnit":21,"hasEnglishDescription":4,"contentLocale":22,"availableLocales":23,"translations":25,"severity":28,"dataClasses":29,"description":33,"seoTitle":34,"seoDescription":35,"logoUrl":36,"isVerified":4,"isSensitive":37,"isSpamList":37,"isMalware":37,"company":38},"6aad19f0d1a304fb1189a874","Cheerleading Company 2021","Cheerleading Company Data Breach","cheerleading-2021","cheerleading.com","2021-01-01T00:00:00.000Z","2026-09-18T11:01:04.198Z",null,"Cheerleading Company e-commerce database dump & threat intelligence","https:\u002F\u002Fwww.cheerleading.com\u002F",[15,17,18],"https:\u002F\u002Fsynscan.net\u002F","https:\u002F\u002Fransomlook.io\u002F",66527,"known","unknown","en",[22,24],"tr",{"en":26,"tr":27},{"slug":9},{"slug":9},"Medium",[30,31,32],"Email addresses","Names","Passwords","\u003Cp>\u003Cstrong>The 2021 Cheerleading Company data breach\u003C\u002Fstrong> occurred in January 2021 when unauthorized threat actors breached the online e-commerce platform of \u003Cstrong>Cheerleading Company\u003C\u002Fstrong> (\u003Ccode>cheerleading.com\u003C\u002Fcode>), a prominent Dallas, Texas-based manufacturer and supplier of cheerleading uniforms, team apparel, and school spirit wear operating since 1969. The incident resulted in the unauthorized extraction of customer account profiles and order history records from the company's X-Cart database.\u003C\u002Fp>\u003Ch2>What information was affected in the Cheerleading Company incident?\u003C\u002Fh2>\u003Cp>The compromised export of the \u003Ccode>xc_profiles\u003C\u002Fcode> customer table affected \u003Cstrong>66,527 unique customer profiles\u003C\u002Fstrong>, exposing the following categories of personal information:\u003C\u002Fp>\u003Cul>\u003Cli>\u003Cstrong>Contact Credentials:\u003C\u002Fstrong> Canonical email addresses (used as the primary login credential).\u003C\u002Fli>\u003Cli>\u003Cstrong>Personal Identifiers:\u003C\u002Fstrong> Customer full names and system profile IDs (profile_id).\u003C\u002Fli>\u003Cli>\u003Cstrong>Security Credentials:\u003C\u002Fstrong> Cryptographic password hashes stored in SHA-512 format alongside password reset tokens.\u003C\u002Fli>\u003Cli>\u003Cstrong>Transactional Telemetry:\u003C\u002Fstrong> Associated order identifiers (order_id), account creation dates, and last login activity timestamps.\u003C\u002Fli>\u003C\u002Ful>\u003Ch2>How many accounts were affected?\u003C\u002Fh2>\u003Cp>Rigorous deduplication confirmed \u003Cstrong>66,527 unique canonical email addresses\u003C\u002Fstrong> across 147,328 raw customer profile and guest checkout records.\u003C\u002Fp>\u003Ch2>Technical analysis and security risks\u003C\u002Fh2>\u003Cp>The leak originates from the core profile store of the enterprise X-Cart platform. While passwords were encrypted using SHA-512, the conjunction of email addresses with physical ordering activity exposes coaches, athletic directors, and consumers to package delivery scams, fake sporting goods promotions, and targeted spear-phishing campaigns.\u003C\u002Fp>\u003Ch2>Recommended actions for affected users\u003C\u002Fh2>\u003Cp>Customers who registered or placed orders through Cheerleading.com should:\u003C\u002Fp>\u003Cul>\u003Cli>Promptly change passwords across any other online portals where their Cheerleading.com credentials were used.\u003C\u002Fli>\u003Cli>Treat unsolicited delivery notifications or payment dispute inquiries with scrutiny.\u003C\u002Fli>\u003Cli>Utilize password management tools to create unique passwords and enable two-factor authentication (2FA \u002F MFA) wherever available.\u003C\u002Fli>\u003C\u002Ful>","Cheerleading Company Data Breach (66.5 Thousand Reported Records)","Cheerleading Company Data Breach. 66.5 Thousand reported records are reported. Reported data: Email addresses, Names, Passwords. Review the scope, risks, and…","\u002Fuploads\u002Flogo\u002Fcheerleading.webp",false,{"name":8,"sector":39,"country":40,"website":40,"websiteArchiveUrl":40,"websiteStatus":40,"websiteCheckedAt":13},"Unknown",""]