[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f2fjzrlzns1p10":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":13,"contentUpdatedAt":13,"source":14,"sourceUrl":15,"sourceUrls":16,"pwnCount":18,"affectedCount":18,"affectedCountStatus":19,"affectedCountLowerBound":20,"affectedCountUnit":21,"hasEnglishDescription":4,"severity":22,"dataClasses":23,"description":26,"seoTitle":27,"seoTitleEn":8,"seoDescription":27,"seoDescriptionEn":28,"logoUrl":29,"isVerified":4,"isSensitive":30,"isSpamList":30,"isMalware":30,"company":31},"68e3266eda11adda488251b1","estonia","Estonian Citizens (via Estonian Cybercrime Bureau) Data Breach","estonian-citizens-via-estonian-cybercrime-bureau","cyber.politsei.ee","2018-06-07T00:00:00.000Z","2018-06-11T09:41:17.000Z","2026-07-20T00:29:19.839Z","Law enforcement credential set","https:\u002F\u002Fwww.troyhunt.com\u002Fdata-provided-by-the-estonian-central-criminal-police-is-now-searchable-on-have-i-been-pwned\u002F",[15,17],"https:\u002F\u002Fsynscan.net\u002Fbreaches\u002Festonian-citizens-via-estonian-cybercrime-bureau-2018",655161,"known",null,"unknown","High",[24,25],"Email addresses","Passwords","\u003Cp>The \u003Cstrong>Estonian Citizens (via Estonian Cybercrime Bureau)\u003C\u002Fstrong> entry does not represent a customer database confirmed as stolen from one company or from an Estonian government system. Dated 7 June 2018, the catalog record documents a credential set obtained by Estonian law enforcement and associated with suspected attempts to access online accounts. It is linked to 655,161 email addresses; the verified data classes are email addresses and passwords.\u003C\u002Fp>\n\u003Ch2>What this record means\u003C\u002Fh2>\n\u003Cp>The title is a catalog label. It does not mean that every Estonian citizen was affected, that the Estonian Cybercrime Bureau was breached, or that a particular government database was leaked. The defensible interpretation is that email-and-password combinations obtained by law enforcement could have been used in attempts to access mailboxes, cloud services, cryptocurrency platforms, or other accounts.\u003C\u002Fp>\n\u003Ch2>Potential impact\u003C\u002Fh2>\n\u003Cp>Credential sets containing passwords create a material account-takeover risk when passwords are reused. If the same email address and password were used on another service, automated credential-stuffing attempts may succeed. Control of an email account can also provide access to password-reset flows for other services.\u003C\u002Fp>\n\u003Ch2>Recommended actions\u003C\u002Fh2>\n\u003Col>\u003Cli>Review passwords used around this period and replace any password that is still active or reused with a strong, unique password.\u003C\u002Fli>\u003Cli>Enable two-factor authentication, prioritizing email, financial, cloud-storage, and cryptocurrency accounts.\u003C\u002Fli>\u003Cli>Check recovery addresses, active sessions, and forwarding rules on email accounts.\u003C\u002Fli>\u003Cli>Use a reputable password manager to generate and store a different password for every service.\u003C\u002Fli>\u003C\u002Fol>\n\u003Ch2>Scope note\u003C\u002Fh2>\n\u003Cp>LeakData does not publish leaked passwords. This page explains the catalog metadata for a law-enforcement credential set and defensive account-security steps; it does not recast the source as a breach of a specific institution.\u003C\u002Fp>","","Estonian Citizens (via Estonian Cybercrime Bureau) Data Breach. 655.2 Thousand reported records were reported. Reported data: Email addresses, Passwords…","\u002Fuploads\u002Flogo\u002Festonia.webp",false,{"name":32,"sector":33,"country":34,"website":35,"websiteArchiveUrl":27,"websiteStatus":27,"websiteCheckedAt":20},"Estonian Cybercrime Bureau","Law enforcement","Estonia","politsei.ee"]