
What was exposed, when it happened, and which databases confirm it.
- accounts
- 18,135,526
- Breached
- January 1, 2014
- Last Update
- April 1, 2018
Were you caught in this breach?
Search your email, phone number or username against every record CheckLeaked indexes.
What happened
In approximately 2014, it's alleged that the Chinese Android store known as HIAPK suffered a data breach that impacted 13.8 million unique subscribers. Whilst there is evidence that the data is legitimate, due to the difficulty of emphatically verifying the Chinese breach it has been flagged as "unverified". The data in the breach contains usernames, email addresses and salted MD5 password hashes and was provided to HIBP by white hat security researcher and data analyst Adam Davies. Read more about Chinese data breaches in Have I Been Pwned.
Compromised Info
- Email addresses
- Passwords
- Usernames
Attestation
Four independent databases catalog this breach and they do not always agree. Each lane below is one source’s own count.
Sources & Link Methods
- LeakCheck— linked via automatic string matching
- Dehashed— linked via domain matching
- HIBP
FAQ
What was leaked in the HIAPK breach?
The HIAPK breach exposed: Email addresses, Passwords, and Usernames.
When did the HIAPK breach happen?
The HIAPK breach was disclosed on January 1, 2014 and affected 13,873,674 records.
Am I affected by the HIAPK breach?
Search your email, phone or username at checkleaked.cc to find out whether your data appears in the HIAPK leak.