LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › Condo.com Data Breach (2019)

HIGH severityConfirmedHow we verify

Condo.com Data Breach (2019): What Was Exposed & What To Do

RBRecent Breaches Breach Intelligence·June 1, 2019

SourceBreach data provided in part by Have I Been Pwned, used under CC BY 4.0.

Condo.com Data Breach (2019)

Reported June 1, 2019. Approximately 1.5M people affected.

HIGH
Severity
1.5M
People affected
4
Data types exposed
June 1, 2019
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

The Condo.com Data Breach (2019) (reported June 1, 2019) exposed Email addresses, Names, Phone numbers and Physical addresses belonging to roughly 1.5M people. If you have an account with them, your information may now be circulating on the open web and with data brokers. Here’s exactly what happened, how to check if you were affected, and what to do next.

Severity & verification
HIGH severityConfirmed
Contact / identity PII exposed.
Corroborated by an official disclosure or a verified breach feed.
Was your email in the Condo.com Data Breach (2019) breach?
1.5M accounts were exposed here. See if yours is one — and every other breach it’s in. 15-sec check, no card.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

In June 2019, Condo.com, a now-defunct website, suffered a data breach that exposed records belonging to 1.5 million individuals. The incident came to light when the data later appeared as part of a larger collection of breached records redistributed online. The breach involved email addresses, names, phone numbers, and physical addresses for a limited subset of the records. Public reporting at the time provided no further technical details on how the data was obtained or the exact date of the intrusion.

Breaking down the breach

The Condo.com incident was first reported on 1 June 2019. Available information states that 1.5 million records were affected and that the dataset later circulated within a broader corpus of breach material. No official statement from the organisation at the time disclosed the method of access, the duration of exposure, or whether the data was encrypted. The website itself has since ceased operations, which has limited further public clarification of the event.

How a breach like this happens

Incidents involving the exposure of contact and address data commonly result from unauthorised access to customer databases. Typical pathways include exploitation of web-application vulnerabilities, misconfigured cloud storage, or compromised administrative credentials. Once obtained, such datasets are sometimes aggregated with other breach material and shared or sold on underground forums. The absence of confirmed technical details in this case means the precise sequence remains unestablished.

Who is Condo.com?

Condo.com operated as an online platform focused on condominium and real-estate listings. Organisations in this sector routinely collect user information to facilitate property searches and direct contact between prospective buyers and sellers. A breach at such a service is consequential because the data held is often sufficient to enable targeted outreach or to enrich other datasets for marketing or fraudulent purposes.

The information in question

The breach record identifies four categories of information. Public sources do not confirm whether additional fields were present.

The real-world impact

Individuals whose information appeared in the dataset face an increased likelihood of receiving unsolicited communications. Email addresses combined with names and phone numbers can be used for phishing attempts or to verify account details on other services. Physical addresses, even when present for only a small portion of records, add a further layer of personal context that could be leveraged in social-engineering scenarios. For the organisation, the incident contributed to the eventual closure of the site, though the direct financial or regulatory consequences have not been publicly quantified.

If your data was in this breach

Review any recent unsolicited contact attempts that reference details matching the exposed fields. Consider enabling additional verification steps on accounts that use the same email or phone number. A free exposure scan of your email address against known breach datasets can indicate whether your information has appeared in this or other incidents.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

Method

CompanyCondo.com security record
74/100
DoxxScan™ · Moderate doxx risk
B- 78Above-average record

1 reported incident on record.

See Condo.com’s full breach history →

More recent breaches

BtoBet Data Breach (2019)December 26, 2019IndiHome Data Breach (2019)November 1, 2019Data Enrichment Exposure From PDL Customer Data Breach (2019)October 16, 2019The Halloween Spot Data Breach (2019)September 27, 2019

Latest breaches

Read GalaxyWarden’s full analysis of the Condo.com Data Breach (2019) →

Verified breach. Breach data provided in part by Have I Been Pwned, used under CC BY 4.0.

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram