Breach date: 2024-06-04. Added to this index: 2024-07-30. Accounts affected: about 5.6K. Domain: spytech-web.com.
What happened
In July 2024, spyware maker Spytech suffered a data breach that exposed data collected as recently as the previous month. Designed to "invisibly record everything users do", the breach exposed information related to both purchasers and targets of the product. Target data collection (and subsequent exposure) included the infected computer name, browsing history, applications used, usernames of authenticated users, keywords being monitored, file operations (creation and deletion), computer usage times and email addresses, often captured within the spyware's logs. The data also included the names, purchases and md5 password hashes of purchasers.
Breach data sourced from Have I Been Pwned, used under CC BY 4.0. Additional breach metadata provided by XposedOrNot. DataExposed is an independent service and is not affiliated with or endorsed by either.
What was exposed
Browsing histories: A list of web addresses you visited, often with dates and times, collected by a browser extension, an internet provider, a VPN, an ad network or an app with a built-in browser.
Device information: Technical details an app or website recorded about your device: make and model, operating system version, screen size, language, carrier, and sometimes the device name or advertising ID.
Email addresses: The email address you used to register or log in. It is the most common field in breaches because it doubles as your username on most sites.
Names: Your first name, surname and sometimes middle name or initials, as you gave them when you signed up. It appears in almost every breach because nearly every account asks for it.
Passwords: The secret you use to sign in, stored by the breached service either in plain text, in a scrambled form called a hash, or encrypted. How it was stored decides how quickly it can be recovered.
Purchases: Records of items or services you bought, often with order numbers, prices, dates, delivery addresses and the store or seller involved.
Usernames: The handle or login name you chose for an account, which may be public on forums, games and social platforms or used privately to sign in.
What to do now
Check whether your own address is in this dataset with the free email breach check.
Change the password on this service and every other site where you used the same password.
Turn on two-factor authentication on your email account first, because it is the reset path for everything else.
Treat calls and messages that quote real details about you as hostile until you verify them another way.
Frequently asked questions
What data was leaked in the Spytech breach?
The Spytech breach exposed Browsing histories, Device information, Email addresses, Names, Passwords, Purchases, Usernames. About 5.6K accounts were affected.
Was I affected by the Spytech breach?
Run the free email breach check with the address you used on that service. It will tell you whether your address appears in this dataset.
What should I do about the Spytech breach?
Change the password on that account and everywhere you reused it, then turn on two-factor authentication. Passwords from this breach are traded and tried automatically against other sites.