// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-hibpDTG 0600Z
Breach Record

Fanlore

DISCLOSED 2026-08-06 · STOLEN CREDS · 144,520 RECORDS EXPOSED

In August 2026, the Organization for Transformative Works (OTW) identified unauthorised access to the Fanlore wiki it operates. The breach resulted in the exposure of 145k unique email addresses along with usernames and passwords stored as either MD5 or PBKDF2 hashes. OTW self-submitted the exposed data to HIBP.

The record

What we know

Disclosed
2026-08-06
Attack vector
Stolen Creds
Records exposed
144,520
Domain
fanlore.org
Data classes exposed
Email addressesNamesPasswordsUsernames
Sources

Cited reporting

Similar vector · recent

Other stolen creds breaches on file

This page is the permanent ColdRecon entry for the Fanlore disclosure. It updates if new public reporting emerges. All tracked breaches →

Fanlore just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →