30,523
Records Exposed
May 2023
Date of Breach
Database
Breach Type
Mar 2025
Added to Database
About This Breach
In May 2023, MegaGym, a Brazilian eCommerce platform specializing in gym and fitness equipment, experienced a breach compromising approximately 862,000 records. The exposed data included email addresses and bcrypt-hashed passwords, alongside personal information such as full names, phone numbers, birthdays, and Brazilian CPF numbers—a highly sensitive identifier. This incident underscores the critical need for organizations to implement layered security measures, including data encryption, access controls, and continuous monitoring, to protect sensitive user information and prevent exploitation in high-risk sectors like eCommerce.
Compromised Data Types
Country
Brazil
Language
Portuguese
Password Storage
bcrypt
Category
Health, Fitness
Indexed On
Mar 28, 2025
Breach Type
Database
What Should You Do?
Get Full Breach Details with LeakedSource Pro
Sign up for a LeakedSource Pro account to see exactly what data was exposed in this breach and get real-time notifications when your information appears in new breaches.
Sign Up for Pro- Change your password immediately on MegaGym and any other site where you used the same password. Use a unique, strong password for each account.
- Watch for phishing emails targeting your inbox. Attackers may use your exposed email address to send convincing scam messages.
- Be alert to smishing attacks (SMS phishing). Scammers may text you pretending to be banks or service providers.
- Enable two-factor authentication (2FA) on all important accounts to add an extra layer of security.
- Use a password manager to generate and store unique, strong passwords for every account.
Were You Affected by This Breach?
Enter your email below to instantly check if your data was compromised in the MegaGym breach and 12,000+ other known breaches.