[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f39xf62u2nex1k":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":13,"contentUpdatedAt":13,"source":14,"sourceUrl":15,"sourceUrls":16,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":27,"seoTitle":28,"seoTitleEn":29,"seoDescription":28,"seoDescriptionEn":30,"logoUrl":31,"isVerified":4,"isSensitive":4,"isSpamList":32,"isMalware":32,"company":33},"68e3266eda11adda48825251","JoyGames","JoyGames 2019 Data Breach","joygames","joygames.me","2019-12-14T00:00:00.000Z","2023-12-07T05:52:24.000Z","2026-07-29T19:31:57.384Z","Verified breach record","https:\u002F\u002Fweb.archive.org\u002Fweb\u002F20191207123654id_\u002Fhttp:\u002F\u002Fwww.joygames.me\u002F",[15],4461787,"known",null,"email_identifiers","Critical",[23,24,25,26],"Email addresses","IP addresses","Passwords","Usernames","\u003Cp>\u003Cstrong>The JoyGames 2019 data breach\u003C\u002Fstrong> concerns accounts from the forum of the JoyGames website. A verified external breach record reports a December 14, 2019 date, 4,461,787 unique email addresses, and four structured data classes. The production email-only job processed 4,486,932 lines and created 4,486,859 unique email associations. These are different measures and are not added together.\u003C\u002Fp>\n\n\u003Ch2>What was verified about the event?\u003C\u002Fh2>\n\u003Cp>The verified external record attributes the event to the JoyGames forum and lists email addresses, IP addresses, usernames, and salted MD5 password hashes. No company notice, regulator record, initial access method, actor, or exact access period was found. December 14 is therefore retained as the external corpus's event date, not presented as the exact day of network access or as a company statement.\u003C\u002Fp>\n\u003Cp>A Wayback capture dated December 7, 2019, before the event date, confirms that joygames.me was a JoyGames service offering MMO games. The archive supports service identity; it does not independently prove the breach or the origin of the local file. The domain did not resolve in the current DNS check, so the public page points to the incident-period archive.\u003C\u002Fp>\n\n\u003Ch2>Which data types are in scope?\u003C\u002Fh2>\n\u003Cp>The classes verified in the external corpus are email addresses, IP addresses, passwords, and usernames. The passwords are described as salted MD5 hashes; plaintext passwords have not been established. Salt creates an additional barrier against precomputed lookup tables, but MD5 is a fast and weak method for modern password storage.\u003C\u002Fp>\n\u003Cp>Real names, phone numbers, physical addresses, government IDs, payment cards, in-game purchase history, and private chat content are not verified classes. An email match does not prove that an IP, username, and password hash occurred together for the same person or that the person was a player, forum member, or current user.\u003C\u002Fp>\n\n\u003Ch2>Why do the external and local counts differ?\u003C\u002Fh2>\n\u003Cp>The 4,461,787 value is the number of unique email addresses in the verified external corpus. The local job processed 4,486,932 email lines and established 4,486,859 unique email associations. The unique local scope is 25,072 above the external measure. Because corpus version, source rows, and deduplication details are not reconciled, the reason for the difference is not assigned.\u003C\u002Fp>\n\u003Cp>The local file contains email addresses only. IP addresses, usernames, and password hashes verified by the external source are not locally stored fields from this production import. A local result cannot produce conclusions about those three fields or their co-occurrence.\u003C\u002Fp>\n\n\u003Ch2>What steps can people consider?\u003C\u002Fh2>\n\u003Cp>People who independently know that they used the JoyGames forum in 2019 can replace the password on any other service where the same password remained in use and enable multifactor authentication on email and gaming accounts. Unexpected forum notices, rewards, account-suspension alerts, or password-reset messages should be verified through the service's known address without following a link in the message.\u003C\u002Fp>","","JoyGames 2019 Data Breach (4.5 Million Email Identifiers)","The 2019 JoyGames breach contains 4,461,787 verified unique emails. Review four forum fields, salted MD5 hashes, and the larger local email corpus.","\u002Fuploads\u002Flogo\u002Fjoygames_me.webp",false,{"name":7,"sector":34,"country":35,"website":10,"websiteArchiveUrl":15,"websiteStatus":36,"websiteCheckedAt":37},"Gaming Forum","Unknown","archived","2026-07-29T19:23:59.000Z"]