PayAsUGym
Disclosed Dec 17, 20169 years ago400,260 accountsUnverified
In December 2016, an attacker breached PayAsUGym's website exposing over 400k customers' personal data. The data was consequently leaked publicly and broadly distributed via Twitter. The leaked data contained personal information including email addresses and passwords hashed using MD5 without a salt.
What is known
| People affected | 400,260 (accounts in the leaked data, per Have I Been Pwned) |
|---|---|
| Disclosed | Dec 17, 2016 |
| Happened | Dec 15, 2016 |
| Attack | Not stated |
| Data exposed | Emails, IP addresses, Names, Payment cards, Passwords, Phone numbers |
| Sector | Tech |
| Status | Unverified: not yet confirmed by an official notice, a filing or the organization |
| Check your email | Have I Been Pwned |
Sources
| Source | |
|---|---|
| Have I Been Pwned: PayAsUGymhaveibeenpwned.com · Aggregator | Aggregator |
Notices filed
| Where | Filed | People |
|---|---|---|
| Have I Been Pwnedaccounts in the data | Dec 17, 2016 | 400,260 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Have I Been Pwned). Record counts are as reported. Not legal advice.