Skip to content

Romwe

Disclosed Jan 18, 20215 years ago19,531,820 accountsUnverified

In mid-2018, the Hong Kong-based retailer Romwe suffered a data breach which exposed almost 20 million customers . The data was subsequently sold online and includes names, phone numbers, email and IP addresses, customer geographic locations and passwords stored as salted SHA-1 hashes. The data was provided to HIBP by dehashed.com .

What is known

People affected19,531,820 (accounts in the leaked data, per Have I Been Pwned)
DisclosedJan 18, 2021
HappenedJun 1, 2018
AttackNot stated
Data exposedLocation, IP addresses, Names, Passwords, Phone numbers, Addresses
SectorTech
StatusUnverified: not yet confirmed by an official notice, a filing or the organization
Check your emailHave I Been Pwned

Sources

Source
Have I Been Pwned: Romwehaveibeenpwned.com · Aggregator

Notices filed

WhereFiledPeople
Have I Been Pwnedaccounts in the dataJan 18, 202119,531,820
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (Have I Been Pwned). Record counts are as reported. Not legal advice.

Everything about Romwe

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.