Skip to content

Zoomcar

Disclosed Jun 5, 20206 years ago3,589,795 accountsUnverified

In July 2018, the Indian self-drive car rental company Zoomcar suffered a data breach which was subsequently sold on a dark web marketplace in 2020 . The breach exposed over 3.5M records including names, email and IP addresses, phone numbers and passwords stored as bcrypt hashes. The data was provided to HIBP by dehashed.com .

What is known

People affected3,589,795 (accounts in the leaked data, per Have I Been Pwned)
DisclosedJun 5, 2020
HappenedJul 1, 2018
AttackNot stated
Data exposedEmails, IP addresses, Names, Passwords, Phone numbers
SectorTech
StatusUnverified: not yet confirmed by an official notice, a filing or the organization
Check your emailHave I Been Pwned

Sources

Source
Have I Been Pwned: Zoomcarhaveibeenpwned.com · Aggregator

Notices filed

WhereFiledPeople
Have I Been Pwnedaccounts in the dataJun 5, 20203,589,795

Other breaches at Zoomcar

BreachAffected
Hacker accesses personal data of 8.4 million Zoomcar usersJun 13, 20251 year agoHacking8.4M
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (Have I Been Pwned). Record counts are as reported. Not legal advice.

Everything about Zoomcar

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.