ConfirmedData breach

Fanlore: a data breach

In August 2026, the Organization for Transformative Works (OTW) identified unauthorised access to the Fanlore wiki it operates . The breach resulted in the exposure of 145k unique email addresses along with usernames and passwords stored as either MD5 or PBKDF2 hashes. OTW self-submitted the exposed data to HIBP.

The record

Organisation
Fanlore
Identity
Fanloreidentified by its domain in a verified breach record
Records affected
144,520 records
Data exposed
Email addresses, Names, Passwords, Usernames
Sector
Not recorded
Occurred
2026-08-06
Disclosed
2026-08-19
First recorded here
2026-09-09

Sources (1)

One source so far.

  1. Have I Been PwnedFirst reported

    2026-08-19