
What was exposed, when it happened, and which databases confirm it.
- accounts
- 4,394,156
- Breached
- July 15, 2016
- Last Update
- September 26, 2016
Were you caught in this breach?
Search your email, phone number or username against every record CheckLeaked indexes.
Your address never leaves this page: it is hashed in your browser and only a short fragment of that hash is sent.
What happened
In June 2016, the teen social site known as i-Dressup was hacked and over 2 million user accounts were exposed. At the time the hack was reported, the i-Dressup operators were not contactable and the underlying SQL injection flaw remained open, allegedly exposing a total of 5.5 million accounts. The breach included email addresses and passwords stored in plain text.
Compromised Info
- Email addresses
- Passwords
Attestation
Four independent databases catalog this breach and they do not always agree. Each lane below is one source’s own count.
Sources & Link Methods
- LeakCheck— linked via automatic string matching
- Dehashed— linked via domain matching
- HIBP
FAQ
What was leaked in the iDressup breach?
The iDressup breach exposed: Email addresses and Passwords.
When did the iDressup breach happen?
The iDressup breach was disclosed on July 15, 2016 and affected 4,394,156 records.
Am I affected by the iDressup breach?
Search your email, phone or username at checkleaked.cc to find out whether your data appears in the iDressup leak.