← Blog

Data Breaches List of Zoom

Share on X

Looking for a complete Zoom data breaches list? This page answers common searches like "Zoom hacked," "Zoom breach history," and "list of Zoom data breaches" with a verified timeline, record counts, root causes, and step-by-step guidance if you may have been affected.

Zoom data breach history: Pandemic-era credential stuffing put Zoom in headlines as remote work exploded. BreachHistory indexes 1 verified or attested incidents tied to Zoom, spanning 2020–2020. This page is a complete, searchable timeline—not a single event—linking every catalog row with context on scale, root cause, and what users should do when a new Zoom notice drops.

Why Zoom stays on breach trackers

Global tech brands combine massive user bases, high-value intellectual property, and complex supply chains. Attackers target Zoom for credentials, source code, CRM exports, and employee directories. When you read headlines about "Zoom hacked," the incident may be a consumer PII leak, a developer artifact exposure, or a third-party SaaS tenant breach—each with different remediation steps.

Data breaches list — Zoom

Below are the major incidents in our catalog, newest first. Record counts use company, regulator, or Have I Been Pwned attestation where available; actor-only marketing shows as "Unverified / not disclosed."

Biggest and most consequential incidents

2020 Credential stuffing — 530k accounts

Credentials from other breaches used in credential stuffing. 530k+ Zoom accounts sold on dark web. Emails, passwords, meeting URLs, HostKeys. Corporate clients affected. Full incident record →

By the numbers (catalog snapshot)

  • 1 incidents indexed under Zoom on BreachHistory
  • 530K+ combined attested records across rows with disclosed numerators (many incidents overlap or count emails—not unique people)
  • 2020 — year of the largest attested row in our catalog

Patterns in Zoom's breach history

  • Credential and session theft — Phishing, stuffing, and OAuth token abuse recur across tech platforms.
  • Cloud misconfiguration — S3 buckets, misconfigured APIs, and file shares expose data without a traditional "hack."
  • Extortion without precise counts — Ransomware and leak-site actors often publish before victims confirm scope.
  • Supply-chain spillover — npm, SDK, and CRM tenant breaches affect Zoom customers even when corporate HQ databases stay intact.

What to do if you used Zoom

  1. Enable multi-factor authentication on every Zoom account and linked SSO identity.
  2. Check Have I Been Pwned when new Zoom headlines appear.
  3. Rotate passwords that were reused on email, banking, or work SSO.
  4. Watch for phishing that cites real breach details (order numbers, usernames) to appear legitimate.
  5. Follow official Zoom security communications—not SMS links from unknown numbers.

Related searches

FAQ

How many data breaches has Zoom had?

BreachHistory indexes 1 verified or attested Zoom data breach spanning 2020–2020. Counts vary when researchers merge scraping, misconfiguration, and ransomware as separate events.

What is the biggest Zoom data breach?

The largest attested incident in our catalog is 530K+ records (Credential stuffing — 530k accounts). See the full timeline for sources and remediation details.

Has Zoom been hacked?

Yes — Zoom appears on breach trackers with 1 indexed incident including Credential stuffing — 530k accounts. This page links every catalog row with primary sources and what users should do if affected.

Does Zoom send data breach notifications?

Regulated markets require consumer notices for many PII events. Not every source-code or scraping story triggers email alerts—read each incident row for notification status.

Explore every Zoom incident on BreachHistory

Browse the full catalog: Zoom breach records

Compiled from BreachHistory data/breaches.json and primary sources linked on each incident page. Updated 2026-06-15.