PayPal Data Breach History
WebsitePayPal Holdings, Inc. is an American multinational financial technology company. Fortune 500.
This page shows all data breaches of PayPal. View the complete breach timeline, records exposed, root causes, and AI breach risk score. BreachHistory tracks disclosed data breaches worldwide.
Data Breach Timeline — All PayPal Breaches
- 2026 2026 PayPal Working Capital — 6-month SSN exposure Unknown records Share
- 2026 2026 PayPal — 104K credentials on dark web (infostealer) 104.0K records Share
- 2022 2022 Credential stuffing — 35,000 records 35.0K records Share
- 2017 2017 TIO Networks breach — 1,600,000 records 1.6M records Share
PayPal Data Breach Summary
This page tracks the PayPal data breach history and cybersecurity incidents affecting PayPal (United States). BreachHistory currently indexes 4 publicly disclosed or catalogued incidents spanning 2017 through 2026, with approximately 1.7 million records reported as exposed across all indexed events. These totals may include overlapping datasets or third-party estimates and should not be interpreted as unique affected users.
The PayPal breach timeline includes major data breaches, cyber attacks, data leaks, credential exposures, API abuse, and other security incidents. Each incident provides details on the estimated records exposed, attack method, affected data types, and supporting public sources. Currently, 0 incidents are company-confirmed.
Largest PayPal Data Breaches
The largest indexed incidents include the 2017 TIO Networks breach — 1,600,000 records, the 2026 PayPal — 104K credentials on dark web (infostealer), and the 2022 Credential stuffing — 35,000 records. Record counts originating from threat actors or leak sites should be treated as estimates unless confirmed by PayPal or a regulator. Below is the list of large data breaches:
- 2017 2017 TIO Networks breach — 1,600,000 records — about 1.6M records exposed · Catalogued incident
- 2026 2026 PayPal — 104K credentials on dark web (infostealer) — about 104.0K records exposed · Catalogued incident
- 2022 2022 Credential stuffing — 35,000 records — about 35.0K records exposed · Catalogued incident
What Information Was Exposed?
Depending on the incident, exposed data may include email addresses, passwords and login credentials, Social Security numbers and national IDs, names, physical addresses, dates of birth, and other personal information (PII). The exact data varies between incidents, so review each breach page before assuming your information was affected.
PayPal Data Breach 2026
At the time of this update, BreachHistory catalogues 2 2026 incidents related to PayPal. Most recent entry: 2026 PayPal — 104K credentials on dark web (infostealer). New incidents are added as official disclosures, regulatory filings, or credible cybersecurity reports become available.
What To Do If You Were Affected
If you believe your account may have been involved in a PayPal data breach, change any reused passwords, enable multi-factor authentication (MFA), monitor your account for suspicious activity, and be cautious of phishing emails or fake breach notifications.
This PayPal breach history is maintained by BreachHistory using public disclosures, regulatory filings, security research, and clearly labelled third-party claims. For the complete breach timeline, records exposed, incident details, and AI Breach Risk Score, explore the sections on this page.