Success Magazine reportedly had a subscriber database containing over 141,000 records advertised or shared on a cybercrime forum, with an unnamed threat actor claiming the data was stolen and leaked. Reporting indicates the exposed dataset includes personally identifiable information (PII) such as full names, physical and email addresses, phone numbers, and subscription-related details; researchers cited analysis of attacker-provided samples as consistent with structured customer records.
The leak claim emerged shortly after Success Magazine disclosed a separate security issue in which its website and email systems were compromised by an unauthorized third party; it remains unclear whether the subscriber-database leak is tied to that compromise or represents a separate incident. If the data is authentic, the exposed PII could enable targeted phishing, social engineering, and fraud against subscribers.

See attribution, scope, and your downstream exposure.
4 events from the most recent confirmed update back to the earliest known activity.
Have I Been Pwned added the SUCCESS breach, describing a March 2026 incident affecting about 250,000 unique email addresses along with names, IP addresses, phone numbers, and order data including physical addresses and payment method information. The listing also said a limited number of staff bcrypt password hashes were exposed and that SUCCESS systems were abused to send offensive newsletters falsely attributed to contributors.
A threat actor allegedly posted a database belonging to Success Magazine on the "News" cybercrime forum, claiming it contained more than 141,000 subscriber records. The leak was reported as unverified and may or may not be connected to the earlier website and email compromise.
Cybernews researchers said two attacker-provided samples appeared to contain structured customer data, including names, physical and email addresses, phone numbers, and subscription details. Their analysis suggested the alleged leak could expose readers to fraud and social-engineering risks if authentic.
Success Magazine announced that an unauthorized third party had compromised its website and email systems. The statement was made days before reports emerged of a separate or possibly related subscriber database leak.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
3 references tracked. Mallory keeps watching after this page renders.
haveibeenpwned.com
Open sourceteiss.co.uk
Open sourcescworld.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.