惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
MyScale Blog
MyScale Blog
U
Unit 42
M
MIT News - Artificial intelligence
小众软件
小众软件
P
Proofpoint News Feed
雷峰网
雷峰网
L
LangChain Blog
S
SegmentFault 最新的问题
腾讯CDC
F
Fortinet All Blogs
A
About on SuperTechFans
WordPress大学
WordPress大学
Vercel News
Vercel News
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
G
Google Developers Blog
大猫的无限游戏
大猫的无限游戏
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
D
Docker
N
Netflix TechBlog - Medium
Apple Machine Learning Research
Apple Machine Learning Research
Recent Announcements
Recent Announcements
D
DataBreaches.Net
Stack Overflow Blog
Stack Overflow Blog

Consumer Insights

Weverse data breach affects 422,584 user accounts Manchester Airports Group cyberattack exposes data of 8.7 million customers Sakura Internet hack may affect 1.36 million accounts French tax authority breach exposes data of 678,000 people and businesses Phone number leaked in the Bloctel breach? Here’s what to do. South Korea diplomatic academy hack exposes diplomat data Credential stuffing attack at Chick-fil-A comes with data breach notice for customers Coca-Cola halts Fairlife production across US after ransomware attack Qantas data breach started with a fake IT support call Lidl warns customers after data breach How to find out if your identity has been exposed by infostealers Texas breach exposes PII of 3 million hunting and fishing license customers Maine forced to take down data breach portal after fake notices filed with authorities Carnival breach exposes data of nearly 6 million people 7-Eleven data breach exposes data of 185,000 people UK Water Supplier Fined Nearly £1 Million After Hackers Roamed Networks for Almost 2 Years DAEMON Tools Lite breach prompts urgent update after malware-laced installer Instructure confirms breach; millions of Canvas users potentially impacted Stalkerware data leak exposes private screenshots linked to celebrities and influencers Hackers claim to have breached Udemy, stealing 1.4 million user records Rituals data breach exposes customer details Booking.com says breach exposed travelers’ data Basic-Fit data breach exposes member information across Europe Rockstar Games confirms breach after ShinyHunters leaks stolen analytics data Lapsus$ claims AstraZeneca breach exposes code and credentials Aura data breach exposes 900,000 records after phishing attack Telus Digital data breach confirmed after ShinyHunters claims 1PB theft Was Your Data Exposed in the Latest Under Armour Breach? Here’s What You Should Do Breach at Tinder, Hinge and OkCupid exposes user data Europe Fines Big Tech €1.2 Billion under GDPR in 2025
SplitVPN breach reveals 58 million hidden connection logs
Vlad CONSTANTINESCU · 2026-07-30 · via Consumer Insights

A leaked database attributed to SplitVPN, formerly NotVPN, allegedly exposed user, device, payment and VPN connection metadata despite the service’s no-logs promise.

Key takeaways

  • Researchers analyzed a 17 GB SQL database allegedly stolen from SplitVPN.
  • The dump reportedly contains 23.4 million user records, 13.6 million device records and 2.6 million payment records.
  • Nearly 58 million entries record when specific devices connected to VPN servers, but not the websites users visited.
  • Former users should secure their accounts, watch for targeted phishing and reconsider which VPN providers they trust.

SplitVPN data leak puts millions at risk

A threat actor is distributing a database alleged to come from SplitVPN, the service previously known as NotVPN. Researchers said they examined the raw file and found the record counts broadly matched the seller’s description. SplitVPN had not publicly confirmed the incident at the time of writing.

The exposed information reportedly includes email addresses, recent IP addresses, device identifiers, approximate locations, subscription details and recurring-payment tokens. Full payment-card numbers were not included, although masked card details, expiration dates and transaction records were present.

Why the no-logs contradiction matters

The most damaging finding is a table containing nearly 58 million device-to-server connections dated from June 2025 through July 21, 2026. These entries do not reveal browsing destinations, but they can associate a device and account with a particular VPN server at a specific time.

That distinction may offer little comfort to users in Russia, Iran, India and Myanmar, where the service was reportedly popular for bypassing internet restrictions. The incident also reinforces a broader privacy lesson: a “no-logs” promise is more credible when supported by transparent policies, data-minimization and frequent independent audits.

What affected users should do now

Former NotVPN or SplitVPN users should change reused passwords, enable two-factor authentication and monitor payment statements for unfamiliar charges. They should also distrust emails or messages that mention their VPN use, as leaked account data could make phishing and extortion attempts look convincing.

When choosing a trustworthy VPN service, consumers should examine what data it collects and whether its claims have been independently tested. Bitdefender VPN’s no-log infrastructure underwent an independent audit in 2025. Bitdefender Digital Identity Protection can also monitor exposed personal information and provide breach alerts and remediation guidance.