Explore Talent users were affected by two distinct data exposure incidents that together exposed millions of personal records. One breach, publicly posted on a hacking forum, contained 5.7 million rows and 5.4 million unique email addresses; reporting tied the underlying compromise to a period between early 2022 and 2023. The leaked data included names, phone numbers, and physical addresses, indicating broad exposure of personally identifiable information.
A separate incident later uncovered multiple security vulnerabilities across online services that included Explore Talent, with one vulnerable API exposing the personal records of 11.4 million users. Data from that exposure supplied 8.9 million unique email addresses to Have I Been Pwned, which noted that the API-related incident was distinct from the earlier Explore Talent breach. The disclosures show repeated security failures affecting the talent network and significantly expanding the pool of impacted users.

See attribution, scope, and your downstream exposure.
4 events from the most recent confirmed update back to the earliest known activity.
On 2026-03-18, Have I Been Pwned published entries for two separate Explore Talent incidents: a July 2024 leak tied to an earlier 2022-2023 breach and a distinct August 2024 API exposure. The listings documented the scale and distinct nature of both events.
In August 2024, multiple security vulnerabilities were identified across online services including Explore Talent. One vulnerable API exposed the personal records of 11.4 million users, and 8.9 million unique email addresses from the data were later provided to Have I Been Pwned.
In July 2024, data attributed to Explore Talent was publicly posted on a popular hacking forum. The leaked dataset reportedly contained 5.7 million rows and 5.4 million unique email addresses.
Various sources described an underlying Explore Talent data breach as having taken place sometime between early 2022 and 2023. The incident reportedly exposed personal data including names, phone numbers, physical addresses, and email addresses.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.