Nulled.io hacked, its database dumped online

Nulled.IO is a hacking based forum that, according to their website, appears to have 473,700 registered users who share, sell and buy leaked content, stolen credentials, nulled software and software cracks.

The whole database was obtained by an unknown hacker and dumped online including sensitive information that could lead to serious legal problems for some of the forum’s users.

Nulled.io site screenshot
Nulled.io site screenshot

The accounts compromised all contain user names, email addresses, encrypted passwords, registration dates and registered with IP address. Other tables such as the nexus transactions table for VIP access payments contains User ID ( which can be matched back to users in the customers table), payment methods, paypal emails, dates and costs.

The breach was presumably possible due to the myriad of vulnerabilities existing on the software the site was running, IP.Board.

 

Source: https://www.riskbasedsecurity.com/2016/05/nulled-io-shouldve-expected-the-unexpected/