[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f3mofvux6y3f48":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"publishedAt":12,"modifiedDate":13,"contentUpdatedAt":14,"source":15,"sourceUrl":16,"sourceUrls":17,"pwnCount":19,"affectedCount":19,"affectedCountStatus":20,"affectedCountLowerBound":12,"affectedCountUnit":21,"hasEnglishDescription":4,"contentLocale":22,"availableLocales":23,"translations":25,"severity":28,"dataClasses":29,"description":35,"seoTitle":36,"seoDescription":37,"logoUrl":38,"isVerified":39,"isSensitive":4,"isSpamList":39,"isMalware":39,"company":40},"6a4569a37ee0a3485ece5f48","sofascore","Sofascore Alleged Data Exposure","sofascore.com","2021-05-01T00:00:00.000Z","2026-07-01T19:25:22.347Z",null,"2026-09-17T16:27:41.515Z","2026-09-17T17:04:31.863Z","Third party breach","https:\u002F\u002Fsofascore.com\u002F",[16,18],"https:\u002F\u002Fleakedsource.com\u002Fbreaches\u002Fsofascore-data-breach",265391,"known","email_identifiers","en",[22,24],"tr",{"en":26,"tr":27},{"slug":7},{"slug":7},"High",[30,31,32,33,34],"Email addresses","Last activity dates","Names","Passwords","Usernames","\u003Cp>The Sofascore data leak is listed as a dataset associated with the live score and sports tracking platform, dating back to May 2021, and covering approximately 265,391 user records. The record includes email addresses, last activity dates, name information, usernames, and password hashes. Since there is no official notification, the verification level has been kept limited; however, due to the password and account activity fields, users need to take action regarding their account security.\u003C\u002Fp>\n\u003Ch2>Leaked Data Types and Risks\u003C\u002Fh2>\n\u003Cp>In sports applications, when email, username, name information, and last activity date are found together, attackers can understand which accounts have been used recently. A password hash is not a plain text password; however, if a weak password or an old hash method is used, cracking attempts can be made. The last activity date can be used to prepare fake login alerts or account security messages. If the username is also used on other platforms, matching can be done with sports forums, betting platforms, or social media accounts. Therefore, the risk should not be seen as limited to only the Sofascore account.\u003C\u002Fp>\n\u003Ch2>Verified Scope and Boundaries\u003C\u002Fh2>\n\u003Cp>The record represents an approximate number of user rows and should not be interpreted as the number of individual people. With scope limitations preserved, practical security risk is conveyed to the user.\u003C\u002Fp>\n\u003Ch2>User Groups at Risk\u003C\u002Fh2>\n\u003Cp>At-risk users are those who have created a Sofascore account and used the same email and password on other sports, social media, email, or betting accounts. Interest in sports and the username can make it easier for attackers to send messages under the pretense of match notifications, favorite team alerts, membership renewal, or account security. The date of last activity can help determine whether the account is active. Content creators, sports community managers, and people who use the same username on multiple platforms may encounter more targeted messages.\u003C\u002Fp>\n\u003Ch2>Urgent Measures to Be Taken\u003C\u002Fh2>\n\u003Cp>Users who have a match should not reuse a password that may have been used on their Sofascore account on other accounts. Email accounts and sports, social media, or payment accounts using the same password should be updated with a unique password. Multi-factor authentication should be enabled on all services where possible. Unexpected emails containing match results, betting, rewards, or account verification links should be examined carefully. Unknown sessions and password reset messages on other platforms with the same username should be checked. Account transactions should always be conducted through the official website or official application.\u003C\u002Fp>\n\u003Ch2>Long-Term Security Strategies\u003C\u002Fh2>\n\u003Cp>For long-term protection, users should not consider sports and entertainment accounts as low-risk; these accounts can be a gateway to more valuable services if the same password is used. A password manager, along with using a unique password for each platform and regular security checks, should become a basic habit. In terms of applications, modern password hashing, closing old sessions, providing the user with an option to delete data, and clear notification processes are important. The unnecessary long-term storage of fields such as recent activity should be reduced. Users should also be cautious of personalized messages coming based on their favorite team or sports interests.\u003C\u002Fp>\n\u003Ch2>Record Control and User Action\u003C\u002Fh2>\n\u003Cp>LeakData check shows whether your email address matches the Sofascore registration. If there is a match, change your password not only on this platform but also on all services where you use the same or a similar password. Examine unexpected login, password reset, and sports-themed reward messages in your inbox. The absence of a match may exclude old accounts opened with a different email address. Although this record has not been confirmed with an official statement, it should be considered in terms of account security due to password hashes and the last activity field.\u003C\u002Fp>","Sofascore Alleged Data Exposure (265.4 Thousand Email Identifiers)","Sofascore Alleged Data Exposure. 265.4 Thousand email identifiers are reported. Reported data: Email addresses, Last activity dates, Names. Review the scope…","\u002Fuploads\u002Flogo\u002Fsofascore.webp",false,{"name":41,"sector":42,"country":43,"website":9,"websiteArchiveUrl":44,"websiteStatus":44,"websiteCheckedAt":12},"Sofascore","Sports \u002F Live Scores","Croatia",""]