Cybernews and secondary outlets described an unsecured Elasticsearch cluster discovered January 1, 2026, with roughly 8.73 billion rows spanning national ID–style numbers, names, addresses, phones, passwords, and business tables—attributed in analysis to a broker or criminal aggregation rather than a single hacked enterprise app. Public access reportedly ended around late January 2026.
Canonical record: China Elasticsearch 8.7B 2026 on BreachHistory.
Sources: Cybernews, Tech Digest