Data breach
Torrent Invites
- Records
- 105,035
- Breach date
- 12 December 2013Estimated
- Added
- 1 December 2024
What was exposed
2 types of data · 3 more reported · 1 puts you at serious risk
- Email addresses105,035
- Passwords104,845
- UsernamesReported, not counted
- IP addressesReported, not counted
- Dates of birthReported, not counted
Reported in the breach write-up; not counted in the analysed data.
About this breach
In December 2013, Torrent Invites, a community forum where members traded invitations to private torrent trackers, was hacked, and its user database was exposed. The indexed breach file contains 105,035 records, including 105,035 email addresses and 104,845 passwords. The site ran on vBulletin, a common forum platform, and independent trackers describe the compromise as exposing far more than just login credentials. No group has claimed responsibility for the attack, and the records show no ransom claim tied to this listing.
Limited public reporting: As of September 25, 2026, detailed company notices or major news coverage for this listing were limited in sources reviewed. The facts below rely primarily on the indexed fields plus any secondary sources cited.
December 12, 2013: The breach of torrent-invites.com is estimated to have occurred, according to Mozilla Monitor, which records this as the date of the incident.
March 22, 2017: Mozilla Monitor added the Torrent Invites breach to its public database of verified incidents.
What Information Was Compromised?
Our analysis found the following data types in this breach: email addresses and passwords.
External breach trackers describe a broader set of exposed fields. According to SynScan, the vBulletin database contained usernames, email and IP addresses, birth dates, and salted MD5 password hashes, with roughly 30 percent of the hashes reported as cracked. Mozilla Monitor lists the compromised data as passwords, IP addresses, email addresses, dates of birth, usernames, and website activity.
Not every individual is affected by every type of data listed here.
What Are the Potential Risks for Affected Individuals?
The main risk is credential reuse. If you used the same email address and password on Torrent Invites as on other accounts, attackers who obtained the leaked data can try those combinations on email providers, banking sites, and other forums. This technique, known as credential stuffing, remains one of the most common ways leaked forum accounts turn into real account takeovers years later.
Even where password hashes were salted, older hashing schemes such as MD5 can be cracked for weak or common passwords, as SynScan's 30 percent cracking figure illustrates. Exposed IP addresses and website activity, while less sensitive, can reveal information about a person's past online behavior, which matters in a community tied to private torrent trackers. Email addresses and dates of birth are also useful raw material for phishing and identity-based scams.
What Should You Do If You Were Affected?
Change your password on torrent-invites.com if you still have an account there, and anywhere else you reused it.
Turn on two-factor authentication for your email and other important accounts, so a leaked password alone is not enough to get in.
Be cautious with unexpected emails referencing the site, your username, or torrent activity, since these details can be used to make phishing messages look convincing.
Consider a password manager to create and store unique passwords for each site you use.
Watch for unusual sign-in alerts on accounts linked to the exposed email address.
