Data breach
Dodonew.com
- Records
- 16,282,726
- Breach date
- 1 December 2011Estimated
- Added
- 12 February 2025
What was exposed
3 types of data · 1 puts you at serious risk
- Usernames16,282,688
- Passwords14,222,371
- Email addresses13,500,039
About this breach
In December 2011, dodonew.com, a Chinese community website, suffered a data breach in which attackers gained access to its user database and the contents were later circulated online. The investigation team estimates the dataset contains 16,282,726 rows, with roughly 14.2 million password entries, 13.5 million email addresses, and more than 16.28 million nickname or username entries. Independent breach research services, including DeHashed, have described the incident as one of the larger breaches to hit Chinese online platforms during that period, with reported figures in the range of 16.28 million records tied to roughly 8.7 million user accounts.
Limited public reporting: As of September 25, 2026, detailed company notices or major news coverage for this listing were limited in sources reviewed. The facts below rely primarily on the indexed fields plus any secondary sources cited.
What Information Was Compromised?
Our analysis found the following data types in this breach:
Nicknames or usernames, about 16,282,688 entries
Passwords, about 14,222,371 entries
Email addresses, about 13,500,039 entries
Not every individual is affected by every type of data listed here.
No claims of responsibility have been verified, and the records list no claiming actor. Because the dataset circulated years after the attack, it is difficult to confirm the exact circumstances of how the database was taken. The breach occurred during a wave of intrusions against Chinese websites in late 2011, when large troves of user credentials from platforms such as the China Software Developer Network and several gaming sites were also leaked, as documented in Wikipedia's list of data breaches.
What Are the Potential Risks for Affected Individuals?
The main risk from a leak of this type is credential stuffing. Attackers take email and password pairs from an old breach and try them on other websites, banking on the fact that many people reuse the same password for years. A password that worked on dodonew.com in 2011 may still open an email inbox, shopping account, or social media profile today.
Exposed email addresses can also be used for targeted phishing. A message that appears to come from a legitimate service is more convincing when the sender knows your username and the site you registered on. Because the compromised passwords may have been stored in a weakly protected format, they can be recovered and tested against other services.
The sensitivity of the exposure is heightened by the age of the data. People often keep the same email address and repeat passwords across decades, so credentials from a 2011 leak can remain effective well into the present.
What Should You Do If You Were Affected?
Check whether your email address appears in this breach using the search tool.
Change the password for any account where you reused the exposed password, starting with your primary email account.
Use a unique, long password for every important account, ideally with a password manager.
Turn on two-factor authentication wherever it is offered, especially for email and financial services.
Be cautious with unexpected emails referencing old accounts or asking you to verify login details, and avoid clicking links in them.
If your password is unique to dodonew.com and you no longer use the site, the immediate risk is lower, but the leak still serves as a reminder to retire old, reused passwords.
