[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f8xdjfpy1lj8f":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":25,"seoTitle":26,"seoTitleEn":27,"seoDescription":26,"seoDescriptionEn":28,"logoUrl":29,"isVerified":4,"isSensitive":30,"isSpamList":4,"isMalware":30,"company":31},"68e3266eda11adda48825242","intelimost","Intelimost Spam Data List","intelimost.com","2019-03-10T00:00:00.000Z","2019-04-02T20:52:19.000Z","2026-07-29T16:17:01.863Z","verified breach index and security reporting","https:\u002F\u002Fsecuritydiscovery.com\u002Fmassive-spam-operation-uncovered-in-a-database-leak\u002F",[14,16],"https:\u002F\u002Ftechcrunch.com\u002F2019\u002F04\u002F02\u002Finside-a-spam-operation\u002F",3073409,"known",null,"email_identifiers","Critical",[23,24],"Email addresses","Passwords","\u003Cp>\u003Cstrong>The Intelimost 2019 data breach\u003C\u002Fstrong> came from an exposed Elasticsearch server used to send personalized spam, not from an ordinary company customer database. A security researcher found approximately 5 GB containing 11,535,164 records in March 2019, with the infrastructure linked to the \u003Ccode>mail.intelimost.com\u003C\u002Fcode> domain. A verified breach index reports 3,073,409 unique email addresses in the corpus. The record total and unique-email count are different measures and are not combined as a people count.\u003C\u002Fp>\n\n\u003Cp>The verified data types are email addresses and plaintext passwords. The researcher and independent technical reporting observed an operation that used stolen mailbox credentials to log in, read recent sent messages, and generate spam using real subject and recipient context. That finding describes the operation's workflow; a match alone does not prove that every listed password worked, that a particular mailbox was accessed, or that messages were sent from that account.\u003C\u002Fp>\n\n\u003Ch2>Scope and evidence boundary\u003C\u002Fh2>\n\u003Cp>The 11,535,164 value counts operational records on the exposed server, while 3,073,409 is the verified unique-email count. Production has no import job or searchable person-level corpus linked to this incident. The sources do not report names, phone numbers, physical addresses, payment data, or identity documents. The passwords were reported as mailbox credentials, but no assumption is made that every row is current, accurate, or tied to a distinct person.\u003C\u002Fp>\n\n\u003Ch2>Safe next steps and archive link\u003C\u002Fh2>\n\u003Cp>If a person independently knows the password used for the relevant mailbox in 2019 and still uses the same or a similar password on an active account, replace the reused password with a unique one and enable multifactor authentication on the email account. Unfamiliar sessions, automatic forwarding rules, recovery details, and sent messages can also be reviewed. The Intelimost domain no longer resolves in DNS, so the company link points to a historical web archive; it is not a current support or security channel.\u003C\u002Fp>","","Intelimost 2019 Data Breach (3.1 Million Email Identifiers)","The Intelimost spam operation exposed 3,073,409 unique emails and plaintext passwords. Review the boundary around 11.5 million records.","\u002Fuploads\u002Flogo\u002Fintelimost_com.webp",false,{"name":32,"sector":33,"country":34,"website":9,"websiteArchiveUrl":35,"websiteStatus":36,"websiteCheckedAt":37},"Intelimost","Email Marketing \u002F Spam Operation","Unknown","https:\u002F\u002Fweb.archive.org\u002Fweb\u002F20190826122118id_\u002Fhttp:\u002F\u002Fintelimost.com\u002F","archived","2026-07-29T11:30:22.391Z"]