Data breach
Alpari
- Records
- 5,129,424
- Breach date
- 1 January 2020Estimated
- Added
- 3 January 2025
What was exposed
2 types of data · 1 puts you at serious risk
- Email addresses5,129,424
- Passwords5,126,371
About this breach
The investigation team has indexed a large credential dataset tied to Alpari, the international foreign exchange and trading brand. According to our investigation team, the listing contains 5,129,424 rows, each with an email address, and more than 5.1 million password entries. The team estimates the breach occurred around January 1, 2020. No hacking group has publicly claimed responsibility for the data. Independent news coverage of this specific listing has been scarce, and it is not clear from public reporting how the data was obtained or whether it came from a direct intrusion of Alpari's systems or from data aggregated elsewhere.
Limited public reporting: As of September 25, 2026, detailed company notices or major news coverage for this listing were limited in sources reviewed. The facts below rely primarily on the indexed fields plus any secondary sources cited.
There has been at least some public discussion of Alpari customer data circulating online. IranBroker, an Iranian brokerage review site, reported that a file containing Alpari customer information, including names, email addresses and phone numbers, was offered for sale on a marketplace for hacked data, and that some independent reviewers considered the data authentic. According to the same report, Alpari disputed the authenticity of that file, saying it did not match its customer records.
What Information Was Compromised?
Our analysis found the following data types in this breach: email addresses and passwords. The dataset contains 5,129,424 email addresses, of which 5,126,371 also include a password entry.
Not every individual is affected by every type of data listed here.
The catalog does not specify whether the passwords were stored in plain text or in a hashed form, and it does not list names, phone numbers, financial details or account identifiers. Because Alpari is a trading services brand, any credentials tied to its platform could matter for people who held accounts with it, but the exact source of the records remains unconfirmed.
What Are the Potential Risks for Affected Individuals?
The main risk from a dataset of this shape is credential stuffing. Attackers take leaked email and password pairs and replay them against other websites, because many people reuse the same password across services. If you used the same password on your Alpari account as on your email, banking or social media accounts, those accounts could be at risk even if you never traded with Alpari again.
Email addresses alone also enable phishing. Someone holding a list tied to a known brand can send convincing messages that appear to come from the company, urging recipients to log in through a fake page or hand over payment details. Trading platforms hold deposits, so fraudulent login attempts aimed at real trading accounts are a realistic concern if the passwords are genuine.
What Should You Do If You Were Affected?
If you had an account with Alpari or believe your email appears in this dataset, take the following steps:
Change your password on any Alpari-related account, and change it anywhere else you reused the same password.
Use a unique, long password for each important account. A password manager can handle this for you.
Turn on two-factor authentication wherever the service offers it, especially on email and financial accounts.
Be cautious with emails that mention your trading account, deposit balances or urgent account problems. Go to the company's website directly rather than clicking links in messages.
Watch your financial statements and payment methods linked to any trading account for activity you did not authorize.
