Close Menu
    Main Menu
    • Home
    • News
    • Tech
    • Robotics
    • ML & Research
    • AI
    • Digital Transformation
    • AI Ethics & Regulation
    • Thought Leadership in AI

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    We Used 5 Outlier Detection Strategies on a Actual Dataset: They Disagreed on 96% of Flagged Samples

    March 13, 2026

    Key Capabilities and Pricing Defined

    March 13, 2026

    Why Monitoring Issues In 2026

    March 13, 2026
    Facebook X (Twitter) Instagram
    UK Tech InsiderUK Tech Insider
    Facebook X (Twitter) Instagram
    UK Tech InsiderUK Tech Insider
    Home»AI Ethics & Regulation»662,752 Consumer Data Leaked on Cybercrime Discussion board
    AI Ethics & Regulation

    662,752 Consumer Data Leaked on Cybercrime Discussion board

    Declan MurphyBy Declan MurphyFebruary 5, 2026No Comments4 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    662,752 Consumer Data Leaked on Cybercrime Discussion board
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link


    Three days earlier than Substack advised customers a few safety incident, a really totally different model of the story was already circulating in underground cyber crime boards. On February 2, 2026, a BreachForums person utilizing the alias “w1kkid” claimed to have scraped Substack and extracted near 700,000 (662,752) person data. By February 5, Substack’s CEO confirmed that person knowledge had been accessed with out permission, setting off questions on scale, timing, and what was actually taken.

    Substack’s notification to customers described a system subject that allowed an unauthorized third occasion to entry restricted person knowledge. The corporate stated it recognized the issue on February 3 and traced the unauthorized entry again to October 2025. In keeping with the e-mail, uncovered knowledge included e-mail addresses, cellphone numbers, and inside metadata, whereas passwords and monetary data weren’t accessed.

    E mail despatched by Substack’s CEO

    What the Uncovered Substack Information Exhibits

    Nonetheless, the information shared on BreachForums reveals a extra detailed image of what that entry could have regarded like. Pattern rows present what look like full person account data, every linked to a singular numeric ID and account creation dates, replace timestamps, notification preferences, and moderation flags. These should not the sorts of fields seen on public profile pages.

    After indepth analyssi of the complete database Hackread discovered that a number of data belong to energetic publishers reasonably than passive readers. Writer settlement acceptance timestamps seem within the knowledge, together with e-newsletter handles, biographies, and profile photos hosted on Substack’s personal S3 buckets. This means that creator accounts, together with these linked to monetized publications, have been a part of the uncovered dataset.

    Stripe platform buyer IDs seem throughout a number of entries. Whereas these identifiers don’t expose fee card particulars, they instantly hyperlink Substack accounts to Stripe buyer objects. From a safety perspective, that connection will increase the sensitivity of the information as a result of it permits correlation between id data and fee methods.

    Telephone numbers are additionally current for customers in a number of international locations, alongside verified e-mail addresses and lengthy account histories. Some accounts date again to 2018, whereas others present updates as late as 2025. This combine suggests a broad snapshot of person knowledge reasonably than selective assortment of latest or public profiles.

    The inner nature of the fields included is troublesome to reconcile with a easy scrape. Flags reminiscent of is_global_admin, is_ghost, is_globally_banned, session_version, and has_passed_captcha are backend indicators utilized by the platform itself. Their presence suggests entry to inside methods or knowledge exports reasonably than harvesting via public interfaces.

    Substack Breach: 662,752 User Records Leaked on Cybercrime Forum
    BreachForums’ submit and knowledge analysed by Hackread.com

    No Proof of Information Abuse So Far?

    Substack stated it has no proof that the information is being misused and that it has mounted the underlying subject. In breach investigations, that normally means no confirmed abuse has been detected but. Datasets of this sort usually flow into privately earlier than getting used for phishing, impersonation, or focused social engineering. Hackread.com can verify that this particular Substack is now circulating on a number of Russian talking cyber crime discussion board as we effectively exchanged on Telegram.

    For impacted customers, the principle threat now could be focused phishing. Emails or textual content messages could arrive that reference your Substack account, e-newsletter title, bio, or signup historical past to seem reputable. Don’t click on hyperlinks, obtain attachments, or reply to messages claiming to be from Substack, Stripe, or subscribers asking for verification or fee particulars.

    Entry your account solely by typing the official website handle instantly into your browser, and ignore messages that create urgency or request one-time codes, password resets, or account affirmation. In case you use the identical e-mail or cellphone quantity on different companies, look ahead to related messages there as effectively.



    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Declan Murphy
    • Website

    Related Posts

    Why Monitoring Issues In 2026

    March 13, 2026

    Feds Dismantle SocksEscort Proxy Community Utilized in World Fraud

    March 13, 2026

    Why Stryker’s Outage Is a Catastrophe Restoration Wake-Up Name

    March 13, 2026
    Top Posts

    We Used 5 Outlier Detection Strategies on a Actual Dataset: They Disagreed on 96% of Flagged Samples

    March 13, 2026

    Evaluating the Finest AI Video Mills for Social Media

    April 18, 2025

    Utilizing AI To Repair The Innovation Drawback: The Three Step Resolution

    April 18, 2025

    Midjourney V7: Quicker, smarter, extra reasonable

    April 18, 2025
    Don't Miss

    We Used 5 Outlier Detection Strategies on a Actual Dataset: They Disagreed on 96% of Flagged Samples

    By Oliver ChambersMarch 13, 2026

    Picture by Writer   # Introduction   All tutorials on knowledge science make detecting outliers look…

    Key Capabilities and Pricing Defined

    March 13, 2026

    Why Monitoring Issues In 2026

    March 13, 2026

    Greatest Android Smartwatch for 2026

    March 13, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    UK Tech Insider
    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms Of Service
    • Our Authors
    © 2026 UK Tech Insider. All rights reserved by UK Tech Insider.

    Type above and press Enter to search. Press Esc to cancel.