- Total Records9,869,658
- Unique Emails5,401,591
- Unique Passwords2,742,078
- Unique Usernames431,468
- Unique First Names7,665,637
- Unique Addresses4,316,379
Estante Virtual Data Breach 2019: What Happened and What Was Exposed?
In February 2019, EstanteVirtual.com.br, one of Brazil's most well-known book portals, suffered a substantial data breach that affected around 5.4 million users. Estante Virtual connected book lovers, sellers, and independent bookstores all across Brazil, serving as a major hub for buying and selling books online. When the breach occurred, sensitive data such as full names, usernames, email addresses, physical addresses, phone numbers, birthdates, and passwords (stored using SHA-1 hashing) were exposed. This incident put both buyers and sellers at risk, given the volume and depth of personal information leaked in the breach.
What Information Was Exposed?
The attackers accessed and leaked a broad set of personal and account details. This included users’ full names, usernames, email addresses, company information, and complete physical address details (street, number, locality, city, state, country, and ZIP code). In addition, both hashed passwords and plain text fields for passwords appeared among the compromised data. Phone numbers and birthdates were also exposed, making the breach especially sensitive because of the potential for identity misuse or phishing attempts using this information.
When Did the Breach Happen?
The breach took place in February 2019. Estante Virtual’s community of millions was affected when the data was first exposed and subsequently circulated on the internet. While the breach was reported in early February, the exact timeline regarding how long the unauthorized access persisted before detection remains undisclosed.
How Many Users and Records Were Involved?
Approximately 5.4 million unique users had their details exposed in the breach. In total, the number of compromised records reached close to 9.9 million due to multiple account-related fields for users and associated sellers. This wide-ranging exposure included not just basic profile information, but critical personal identifiers and account credentials.
What Was the Impact?
The breach posed significant concerns for affected individuals due to the variety and sensitivity of the data involved. Having access to hashed passwords, contact information, and full addresses can increase the risk of account compromise elsewhere, especially if users reused their credentials. It also highlighted the importance of up-to-date security practices for handling user data on widely used e-commerce portals.
Frequently Asked Questions About the Estante Virtual Data Breach
What happened in the EstanteVirtual.com.br data breach?
EstanteVirtual.com.br’s user database was compromised in February 2019, leading to the exposure of personal details including names, emails, addresses, phone numbers, and hashed passwords for millions of users.
How many users were affected by the Estante Virtual breach?
About 5.4 million users were affected, although nearly 9.9 million records in total containing account and personal information were exposed.
What type of user data was leaked in the Estante Virtual breach?
The data set included full names, usernames, email addresses, physical addresses, phone numbers, birthdates, company information, and passwords stored in SHA-1 format.
What was the timeline of the EstanteVirtual.com.br breach?
The breach took place in February 2019 and became public shortly after unauthorized access was discovered and user data was circulated online.
How can I check if I'm in the EstanteVirtual.com.br breach?
You can check if your information was part of the EstanteVirtual.com.br breach by utilizing the DeHashed search engine.