Fishbrain AB
Jul 2026 · Graded Verified · Technology and Software · Government record
Fishbrain ABJul 2026
Fishbrain doesn't say what let attackers into its user database on August 19, only that a vulnerability existed and was later patched; the entry point stays unnamed. The haul was names, birth dates, emails, phone numbers, usernames, country data, and password hashes with salts, for a count the company won't state. Hashed isn't the same as safe: Fishbrain admits some of those hashes may be crackable. Patching the hole after 20 million anglers' credentials were already in reach isn't security, it was bait for the bad guys.
California AG breach notification
Not yet quantified
VVerifiedTechnology and SoftwareAbout this record
This incident is on the public government record: an SEC 8-K filing or a state-regulator notification, graded Verified. Every figure links to the source it was read from; if we have read one wrong, tell us at info@hackerinahoodie.com. This index never sums figures across incidents. See the methodology.