ApexSMS 2019 Data Breach

ApexSMS SMS Spam Operation Exposure (2019): 88 Million Consumer Records Including Phone Numbers & Home Address Left in Open Database | ObscureIQ
ObscureIQ Breach Intelligence

Classification Tags

Database ExposureCybercrime: SpamEmail AddressFull NameGenderGeographic LocationIP AddressPhone NumberPhysical AddressTelecom Carrier
Moderate SeverityWebsite / service breach

ApexSMS SMS Spam Operation Exposure (2019): 88 Million Consumer Records Including Phone Numbers & Home Address Left in Open Database

SMS spam marketing operation (illegal bulk SMS distributor)

Verified by ObscureIQ Intelligence
43/100Breach Risk Index
15Data Value
25Market Recency
551dSince Breach

Breach Intelligence Summary

Entity: ApexSMS · Actor: Unknown · Sources: 6 references
Attack: Database Exposure
Profile: Malware / Spam Infrastructure · SMS spam operations and lead targeting · SMS spam operation dataset · Global
Timeline: Breach (2019-04-15) · Indexed (Jan 03, 2025) · Year (2019)
Exposure: 88.4M records · 8 fields: Email Address, Full Name, Gender, Geographic Location, IP Address, Phone Number, Physical Address, Telecom Carrier
Status: Confirmed

Executive Summary

ApexSMS (also branded RocketText and Mobile Drip) was an SMS/text-message marketing operation that left a large marketing-lead database exposed around 2019. The set contained on the order of 88 million records (roughly 80 million leads; about 23 million unique email addresses) including names, email addresses, phone numbers with mobile carrier, home addresses, geographic data, IP addresses, genders, and ethnicities. Consumers in the set generally had no direct relationship with the operator.

ObscureIQ assessment: High risk of smishing, phone-based fraud, and mass-targeted scam campaigns. Phone-linked targeting data is especially valuable because it supports direct mobile abuse.

Breach Impact

Beyond spam and smishing, inclusion of ethnicity alongside identity, contact, and location data enables discriminatory targeting and detailed profiling of consumers who never knowingly engaged with the service.

About ApexSMS

SMS spam marketing operation (illegal bulk SMS distributor)

Why They Hold Your Data

SMS spam-operation datasets aggregate phone numbers, campaign data, lead-targeting records, and messaging infrastructure information tied to text-based outreach abuse.

Data Points Exposed

8 verified field types
Email Address
Full Name High
Gender
Geographic Location
IP Address
Phone Number
Physical Address High
Telecom Carrier

Field names are shown in full for clarity and search visibility. Canonical machine keys are emitted only in this page’s structured data.

Exploitation & Downstream Threats

Threat Activity:High
Primary downstream threats:
  • SIM swap attacks where phone numbers are present
  • Targeted phishing campaigns using exposed email addresses
  • Doxxing risk from physical address exposure
Threat vectors:
  • Phishing, credential stuffing & account takeover
  • Name-based social engineering
  • Profile enrichment
  • Pattern-of-life analysis & physical surveillance
  • Geolocation & account flagging
  • SIM swapping, vishing & SMS phishing
  • Physical stalking, mail fraud & identity verification
  • Home targeting, stalking & physical threat
  • Carrier impersonation

Recommended Actions

If you believe your information may be included:

Enable MFA Everywhere
Turn on multi-factor authentication on email first, then financial accounts.
Report & Recover
If you spot misuse, start an official recovery plan and report fraud.

Frequently Asked Questions

What happened in the ApexSMS breach?

ApexSMS (also branded RocketText and Mobile Drip) was an SMS/text-message marketing operation that left a large marketing-lead database exposed around 2019. The set contained on the order of 88 million records (roughly 80 million leads; about 23 million unique email addresses) including names,…

What data was exposed?

Verified fields include Email Address, Full Name, Gender, Geographic Location, IP Address, Phone Number, Physical Address, Telecom Carrier.

What should I do if I was affected?

Change reused passwords, enable MFA, and (if identity or financial data is involved) freeze your credit and monitor your accounts.

Sources & References

Every claim on this page is traceable. This breach draws on:

Breach Index
DataBreach.com
Record & field corroboration
Breach Index
Have I Been Pwned
Record & field corroboration
Cross-source
9ghz
Independent catalogue listing
Cross-source
DataViper.io
Independent catalogue listing
Cross-source
Dehashed
Independent catalogue listing
ObscureIQ Intelligence
ObscureIQ proprietary analysis
Risk Index scoring & downstream-threat assessment

Protect Yourself

Check If You're Affected

Enter your email to check whether your data appears in this breach. We’ll send a 6-digit code to confirm it’s your address.

Get Free Breach Alerts

Be the first to know when new breaches are disclosed. Free forever — confirm your email with a 6-digit code.

High-Risk? Get an Exposure Audit

Executives, public figures, and high-visibility operators can receive tailored exposure intelligence and hardening guidance.

Request Consultation