The July 2026 Paidwork data breach exposed 23,272,765 unique users' banking and personal data, including bank account numbers, full names, addresses, and bcrypt hashed passwords. Financial fraud, phishing, credential stuffing, and identity theft are the primary risks — especially because bank account numbers and per...

Create a landscape editorial hero image for this Studio Global article: Search & fact-check with cited sources for What were the details of the July 2026 Paidwork data breach that exposed over 23 million users' b. Article summary: Here are the verified details of the July 2026 Paidwork data breach.. Topic tags: general. Style: premium digital editorial illustration, source-backed research mood, clean composition, high detail, modern web publication hero. Use reference image context only for broad subject, composition, and topical grounding; do not copy the exact image. Avoid: logos, brand marks, copyrighted characters, real person likenesses, fake screenshots, UI text, readable text, watermarks, charts with fake numbers, clickbait thumbnails, icons, and tiny thumbnail layouts. Make it useful as an illustrative visual, not as factual evidence.
On July 19, 2026, the microtask platform Paidwork was added to Have I Been Pwned (HIBP) after an 11 GB database containing records of 23,272,765 unique users was dumped publicly online . The data was allegedly stolen in March 2026 and was first offered for sale on a cybercrime forum before being released publicly in early July
. This breach is especially severe because it exposed financial data that cannot be reset — unlike a password, a bank account number or date of birth remains permanently compromised
.
The exposed database includes a broad range of personal and financial data :
Troy Hunt noted that about 35% of the email addresses were already in HIBP from previous breaches, and that the bcrypt-hashed passwords — while not plaintext — are the only field that attackers can realistically attempt to crack offline .
The combination of financial and personal data in a single dump creates a dangerous set of attack vectors:
If you had a Paidwork account, take these actions immediately:
The Paidwork breach is a stark reminder that gig-economy platforms hold a rich mix of personal and financial data that is highly valuable to attackers. Because many of the exposed data types — such as bank account numbers and dates of birth — cannot be changed, the risk of fraud and phishing will persist for years. Acting quickly to secure your accounts and monitor your finances is the best defense.
Studio Global AI
Use this topic as a starting point for a fresh source-backed answer, then compare citations before you share it.
The July 2026 Paidwork data breach exposed 23,272,765 unique users' banking and personal data, including bank account numbers, full names, addresses, and bcrypt hashed passwords.
The July 2026 Paidwork data breach exposed 23,272,765 unique users' banking and personal data, including bank account numbers, full names, addresses, and bcrypt hashed passwords. Financial fraud, phishing, credential stuffing, and identity theft are the primary risks — especially because bank account numbers and personal identifiers cannot be reset.
Affected users should immediately change passwords, enable 2FA, monitor financial accounts, place a fraud alert or credit freeze, and check their email at haveibeenpwned.com.