ShadowMap

Dark Web Exposure for laravel.com

Credentials, devices and data found in dark web stealer logs & breaches
73
Exposure level: High
laravel.com scores 73/100 based on leaked credentials, compromised devices, and stolen financial & session data found on the dark web.
Most recent exposure 19 days ago Last 90 days +87% 11% reuse a top-10 password
Employee exposure
corporate accounts — @laravel.com
290
leaked credentials · 108 compromised devices
Top exposed employee accounts
ad***@laravel.com146
d***@laravel.com61
laravel.com/docs/8.x32
***@laravel.com24
//laravel.com/docs/5.8/installation8
Where staff accounts were caught
127.0.0.150
localhost31
nova-demo.laravel.com26
mopio.buolkab.go.id18
app.n24-sa.com15
Customer exposure
stolen logins for laravel.com
12,390
leaked credentials · 976 compromised devices
Top exposed customer accounts
dgtmgo***@hotmail.com109
technical_supp***@8worx.com62
geilerel***@gmail.com52
omarelew***@gmail.com40
farooqchau***@gmail.com36
Most targeted services
forge.laravel.com5,021
nova.laravel.com2,654
vapor.laravel.com2,022
cloud.laravel.com1,189
spark.laravel.com641
12,621
Exposed Credentials
978
Compromised Devices
0
Credit Cards
5
Crypto Wallets
188
Auth Tokens
247,668
Stolen Cookies

Exposure over time (credentials leaked per month)

2024-012026-05

Most common passwords 11% reuse a top-10 password

23***67106
Ha***@@99
Ge***1696
67***al78
Fa***5#78
12***8974
sa***0069
@g***3@67
st***Z!67
pr***9464

Stolen sessions (active cookies that can bypass MFA)

youtube.com9,451
google.com4,784
pubmatic.com2,754
media.net2,432
bing.com2,429
adnxs.com2,232

Financial, crypto & app tokens

Crypto wallets
metamask5
App / session tokens
Google185
Telegram2
Discord1

Browsers & apps affected

Microsoft Edge (Default)18
Google Chrome (Profile 1)13
Chrome [Default]10
Brave (Default)6
Chrome (119.0.6045.160)6
Edge [Default]6

Stealer malware families seen

RedLine

Related companies

Explore

Check your own exposure →

Free dark web & attack-surface check by ShadowMap

Figures are aggregate counts derived from dark web stealer logs and public breach data. Data is indicative and updated periodically.