[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fufzkw4336mxx":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":26,"seoTitle":27,"seoTitleEn":28,"seoDescription":27,"seoDescriptionEn":29,"logoUrl":30,"isVerified":4,"isSensitive":31,"isSpamList":31,"isMalware":31,"company":32},"68e3266eda11adda48825240","internet-archive","Internet Archive 2024 Data Breach","archive.org","2024-09-28T00:00:00.000Z","2024-10-09T22:31:53.000Z","2026-07-29T16:17:01.863Z","company notice and verified breach index","https:\u002F\u002Fblog.archive.org\u002F2024\u002F10\u002F18\u002Finternet-archive-services-update-2024-10-17\u002F",[14,16],"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Finternet-archive-hacked-data-breach-impacts-31-million-users\u002F",31081179,"known",null,"email_identifiers","Critical",[23,24,25],"Email addresses","Passwords","Usernames","\u003Cp>\u003Cstrong>The Internet Archive 2024 data breach\u003C\u002Fstrong> concerns the theft of archive.org's user authentication database. A verified breach index and independent technical review report 31,081,179 unique email addresses. The newest timestamp in the stolen database was 28 September 2024, and the incident became public through a notice placed on the site on 9 October. Internet Archive later confirmed the exposure of patron email addresses and encrypted passwords.\u003C\u002Fp>\n\n\u003Cp>The verified data types are email addresses, screen names or usernames, and bcrypt-hashed passwords. A bcrypt hash is not a plaintext password, although a weak or reused password may still face offline guessing risk. Payment cards, phone numbers, physical addresses, archived content, and viewing or download histories are not among the verified data classes for this record.\u003C\u002Fp>\n\n\u003Ch2>Events that must remain separate\u003C\u002Fh2>\n\u003Cp>Technical reporting said a GitLab token on an internet-facing development system provided access to source code and then database credentials. DDoS attacks during the same period were attributed to a different actor and are not presented as the same attack that stole the user database. A later incident involving stolen access tokens for the Zendesk support system also has a separate scope; support requests and attachments are not added to this record's data types.\u003C\u002Fp>\n\n\u003Ch2>Count boundary and safe next steps\u003C\u002Fh2>\n\u003Cp>The 31,081,179 value is a unique-email count, not a count of unique people or accounts active today. Production has no import job or searchable person-level corpus linked to the incident. If a person independently knows the old password used for an Internet Archive account and still uses the same or a similar password on another active account, replace the reused password, enable multifactor authentication on the email account, and verify unexpected login or password-reset messages by opening the official site directly rather than following a message link.\u003C\u002Fp>","","Internet Archive 2024 Data Breach (31.1 Million Email Identifiers)","The Internet Archive breach exposed 31,081,179 unique emails, usernames, and bcrypt password hashes. Review the incident boundaries.","\u002Fuploads\u002Flogo\u002Farchive_org.webp",false,{"name":33,"sector":34,"country":35,"website":9,"websiteArchiveUrl":27,"websiteStatus":27,"websiteCheckedAt":19},"Internet Archive","Nonprofit","United States"]