WPSandbox
Disclosed Nov 6, 20187 years ago858 accountsUnverified
In November 2018, the WordPress sandboxing service that allows people to create temporary websites WP Sandbox discovered their service was being used to host a phishing site attempting to collect Microsoft OneDrive accounts. After identifying the malicious site, WP Sandbox took it offline, contacted the 858 people who provided information to it then self-submitted their addresses to HIBP. The phishing page requested both email addresses and passwords.
What is known
| People affected | 858 (accounts in the leaked data, per Have I Been Pwned) |
|---|---|
| Disclosed | Nov 6, 2018 |
| Happened | Nov 4, 2018 |
| Attack | Phishing |
| Data exposed | Emails, Passwords |
| Sector | Tech |
| Status | Unverified: not yet confirmed by an official notice, a filing or the organization |
| Check your email | Have I Been Pwned |
Sources
| Source | |
|---|---|
| Have I Been Pwned: WPSandboxhaveibeenpwned.com · Aggregator | Aggregator |
Notices filed
| Where | Filed | People |
|---|---|---|
| Have I Been Pwnedaccounts in the data | Nov 6, 2018 | 858 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Have I Been Pwned). Record counts are as reported. Not legal advice.