haveibeenpwned.com
Have I Been Pwned (HIBP) lets people check whether an email address or username appears in known data breaches and publicly exposed paste records. Results identify the breach sources and exposed data categories included in HIBP's collection; a missing result does not prove an account was never compromised. The separate Pwned Passwords service checks a password against previously exposed passwords using k-anonymity: the password is hashed locally and only a short hash prefix is sent. Sensitive-breach results and searches across a domain require verification, while some API capabilities are subscription-based.
API 提供的資料 · 由可信資料編輯者提交
Have I Been Pwned(HIBP)可協助使用者查詢電子郵件地址或使用者名稱是否出現在已知資料外洩事件及公開貼文資料中。結果會列出HIBP收錄的外洩來源與暴露資料類別,但查無紀錄並不能證明帳戶從未遭到入侵。獨立的Pwned Passwords服務採用k匿名方式檢查密碼:密碼會在本機產生雜湊,只傳送較短的雜湊前綴。查詢敏感外洩紀錄及依網域搜尋都需要完成身分或網域權限驗證。
Share useful, factual experiences about this website.