Rambler data breach (2014) — what was exposed and what to do

Updated Corrections

June 22, 2026

We publish these pages from public notices and reporting so you can understand what was exposed. Everything here is already public. Always confirm with the organization named in your notice.

What happened

According to public breach records, the Rambler data breach on March 1, 2014 is reported to have exposed the personal information of 91,436,280 accounts.

In late 2016, a data dump of almost 100M accounts from Rambler, sometimes referred to as "The Russian Yahoo", was discovered being traded online. The data set provided to Have I Been Pwned included 91M unique usernames (which also form part of Rambler email addresses) and plain text passwords. According to Rambler, the data dates back to March 2014.

Passwords in this breach were reportedly stored in plaintext.

A database table from the Russian internet portal Rambler.ru containing roughly 91.4 million accounts surfaced online in late 2016, when the dump was discovered being traded and was cataloged by breach-tracking services. The exposed records included email addresses, usernames, and account passwords that had been stored in plain text rather than hashed, meaning the credentials were immediately usable without any cracking. The scale of the dump and the plaintext password storage made it one of the larger Russian-service exposures of that period.

Sources

What data was exposed

The following types of personal data were compromised:

  • Email addresses
  • Passwords
  • Usernames

Breach details

Detail Value
Breach name Rambler
Date March 1, 2014
Accounts affected 91,436,280
Domain rambler.ru

This summary is compiled from public breach-notification data and known leak databases. Figures reflect what those sources report and may be revised as more is learned. If something here looks wrong or you think your information is involved, contact our support team.

We report breaches as a factual record to help people check their exposure. Inclusion here is not an allegation of wrongdoing or negligence by Rambler; it reflects a publicly reported security incident.

What to do now

Based on the data exposed in this breach, here are the steps you should take:

  • Change your Rambler password immediately, and change it anywhere else you reused the same or a similar password — plaintext passwords from this dump are directly usable in credential-stuffing attacks
  • Enable two-factor authentication on Rambler and any account that shared the exposed password
  • Adopt a password manager and set unique passwords per site so one leaked credential cannot unlock other accounts
  • Be alert for phishing and spam targeting your exposed email address, and never reuse the leaked password again

What to do after a breach

A free Delist scan checks open-web exposure we support: people-search sites, public records, data brokers, and breach-source signals. Signals are not live listings, and this is not removing you from a dump, a DMV database, or a vendor's private ID store.

More breaches

Free personal data exposure scan

We search the open web for your personal data and show what’s exposed. The scan is free. Removal and monitoring require a paid plan.