Skip to content

FaceUP

Disclosed Jan 13, 20197 years ago87,633 accountsUnverified

In 2013, the Danish social media site FaceUP suffered a data breach. The incident exposed 87k unique email addresses alongside genders, dates of birth, names, phone numbers and passwords stored as unsalted MD5 hashes. When notified of the incident, FaceUP advised they had identified a SQL injection vulnerability at the time and forced password resets on impacted customers.

What is known

People affected87,633 (accounts in the leaked data, per Have I Been Pwned)
DisclosedJan 13, 2019
HappenedJan 1, 2013
AttackNot stated
Data exposedDates of birth, Emails, Names, Passwords, Phone numbers
SectorTech
StatusUnverified: not yet confirmed by an official notice, a filing or the organization
Check your emailHave I Been Pwned

Sources

Source
Have I Been Pwned: FaceUPhaveibeenpwned.com · Aggregator

Notices filed

WhereFiledPeople
Have I Been Pwnedaccounts in the dataJan 13, 201987,633
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (Have I Been Pwned). Record counts are as reported. Not legal advice.

Everything about FaceUP

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.