Breach date: 2017-05-17. Added to this index: 2017-09-04. Accounts affected: about 16M. Domain: zomato.com.
In May 2017, the restaurant guide website Zomato was hacked resulting in the exposure of almost 17 million accounts. The data was consequently redistributed online and contains email addresses, usernames and salted MD5 hashes of passwords (the password hash was not present on all accounts). This data was provided to HIBP by whitehat security researcher and data analyst Adam Davies.
Breach data sourced from Have I Been Pwned, used under CC BY 4.0. Additional breach metadata provided by XposedOrNot. DataExposed is an independent service and is not affiliated with or endorsed by either.
The Zomato breach exposed Email addresses, Passwords, Usernames. About 16M accounts were affected.
Run the free email breach check with the address you used on that service. It will tell you whether your address appears in this dataset.
Change the password on that account and everywhere you reused it, then turn on two-factor authentication. Passwords from this breach are traded and tried automatically against other sites.