WhiteDate 2025 Data Breach

WhiteDate White Nationalist Dating Platform Breach (2025): 20K User Profiles Including Private Messages, Income, IQ & Physical Attributes Exposed

Platform · Niche dating and matchmaking · Niche dating platform · Global

WhiteDate White Nationalist Dating Platform Breach (2025): 20K User Profiles Including Private Messages, Income, IQ & Physical Attributes Exposed

Niche online dating and community platform built around a white-nationalist audience.

Confirmed · ObscureIQ Intelligence
Limited DisclosureThis breach is handled differently. Because being connected to it can itself be sensitive, we do not confirm anyone’s presence publicly. Use the private exposure check at the bottom of this page.
Breach Risk Index i
77/100
Lower riskHigher risk
High and current: recent, valuable data circulating on the dark web now.
Data Sensitivity i
Restricted
Being associated with this breach can itself be harmful. Disclosure is limited and presence is not confirmed to unverified parties.
20KRecords
2025Year

The Breach Risk Index (BRI) is a proprietary 0–100 score rating how dangerous a breach is right now, based on how recently the data has been circulating on the dark web and how valuable it is to attackers.

Crucial data exposed
IntimateSexual Orientation
Classification Tags
Researcher disclosureScraping / CollectionDating & RelationshipsDating2025

Breach Summary

In December 2025, data from the white-nationalist dating site WhiteDate was exfiltrated and leaked online. An independent researcher used social-engineering techniques (including a custom AI chatbot) to extract thousands of user profiles, and a comprehensive dataset was later provided to Have I Been Pwned containing roughly 20,000 unique email addresses along with usernames, IP addresses, private messages and phpBB password hashes. Reported exposed attributes included physical appearance, income, education, IQ, race, sexual orientation, relationship status and geographic location. The leak was presented publicly at the Chaos Communication Congress, published on a satirical site, and archived by DDoSecrets. HIBP has flagged the breach as sensitive and non-searchable. This was a hacktivist exposure rather than a criminal, financially motivated breach.

Full threat analysis, exploitation vectors, and principal guidance below.

11 additional sections · verified field analysis · defensive doctrine

Querying breach corpus…
Cross-referencing exposed field types…
Resolving threat-actor attribution…
Compiling principal risk advisory…

20K records analyzed

About WhiteDate

WhiteDate (whitedate.net) was a niche online dating and community platform that explicitly marketed itself to a white-nationalist audience, describing itself as a site 'for a Europid vision.' Built on phpBB forum software, it combined dating profiles with forum and messaging features, collecting detailed self-reported attributes from a small, ideologically defined user base worldwide.

Why They Hold Your Data

Niche dating platforms collect highly sensitive profile data, photos, messages, relationship preferences, subscription records, and account activity tied to matchmaking workflows.

Recent Developments

The platform drew public attention in late 2025 when a security researcher exfiltrated and published its user data, and associated white-nationalist dating sites were reported as defaced or wiped. The disclosure was presented at the Chaos Communication Congress and the dataset was archived by the transparency collective DDoSecrets, increasing public scrutiny of the site and its user base.

Data Points Exposed

22 verified field types
Age
Astrological Sign
Device Information
Display Name
Education Information
Email Address
Ethnicity Or Race
Family Structure
Financial Profile
Gender
Geographic location
IP Address
IQ Levels
Messages And Chat
Password High
Physical And Lifestyle Profile
Profile Bio
Profile Photo
Public User Content
Relationship Status
Sexual Orientation High
Username

Breach Impact

Because appearing in WhiteDate’s data directly signals affiliation with a white-nationalist platform, the exposure carries acute reputational, social, and physical-safety consequences for named users, well beyond typical dating-site risk. Public archival of the dataset means affected individuals face lasting doxxing, outing, and targeted-harassment exposure, while the platform’s credibility and operational viability were undermined.

Exploitation & Downstream Threats

• Doxxing and public outing of individuals affiliated with an extremist dating platform | • Targeted harassment, threats, and physical-safety risk from ideological exposure | • Reputational and employment harm from linkage of real identities to platform membership | • Credential stuffing against reused passwords derived from phpBB password hashes | • Targeted phishing and social engineering using exposed email addresses and private messages | • Blackmail or extortion leveraging sensitive relationship, sexual-orientation, and ideological data

Principal Risk Advisory

What this means for a principal

An intimate-data breach: preferences, orientation or explicit content linked to an identity create acute coercion and blackmail exposure. For a high-profile principal this is targeting-grade, not merely identity-theft-grade: the combination lets an adversary locate, impersonate, or pressure the principal with little additional work.

What You Should Do

  1. Reset any reused passwords and enable MFA on email first, then financial accounts.
  2. Be alert to sextortion or blackmail attempts referencing this data and do not engage; preserve and report messages.
  3. Do not use unofficial 'am I affected' lookups; several are themselves harvesting operations.

How ObscureIQ Can Help

  1. Corpus confirmation: determine whether and where the principal (plus household and staff) appear in this dataset and which specific fields are exposed for them.
  2. Exposure mapping: cross-reference the exposed identifiers against broker-available data to size and prioritize the principal's wider footprint.
  3. ThreatWatch tuned to this incident's identifiers and misuse pattern (impersonation and targeting patterns, not generic credential monitoring).
RD
Threat Actor: Researcher disclosure
Threat actor

Attribution based on available breach intelligence.

Read the full threat-actor profile →

Protect Yourself

Protect Yourself: Limited Disclosure

Check If You’re Affected: Verification Required

Because being associated with this breach can itself be harmful, we do not confirm whether anyone appears in it to unverified parties. Verify your identity to privately check whether your own data appears in this breach or related indexes.

We will only reveal whether a specific person appears in this breach to that person.

Get Free Breach Alerts

Be the first to know when new breaches are disclosed. Free forever — confirm your email with a 6-digit code.

High-Risk? Get an Exposure Audit

Executives, public figures, and high-visibility operators can receive tailored exposure intelligence and hardening guidance.

Request Consultation