iTechGuides is reader-supported. When you buy through links on our site, we may earn an affiliate commission. As an Amazon Associate I earn from qualifying purchases. Learn more
Some Pornhub Premium users were reportedly targeted in a December 2025 extortion threat involving data associated with viewing and search activity. Pornhub’s parent company, Aylo, said third-party analytics data was involved—not a direct breach of Pornhub’s own systems—and said passwords and payment details were not stolen. ShinyHunters claimed it had the data and threatened to publish it; the source and scope remain disputed.
Did Pornhub get hacked?
Aylo said an incident involving third-party analytics data affected some Premium users. Its notice, published December 12, 2025, said Pornhub’s own Premium systems were not breached. Le Monde reported that Aylo said passwords, payment details and government IDs were not stolen. Le Monde’s December 17 account summarizes Aylo’s position.
BleepingComputer reported that Aylo said Pornhub had not worked with Mixpanel since 2021, suggesting the analytics records were historical. That timing is Aylo’s account, not an independently verified date range. The incident should not be described as a breach of every Pornhub account or of the whole service.
Quick wins for a faster PC:
Clear out junk files and repair common Windows errorsFree Scan →Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →What data was reportedly involved?
On December 15, 2025, BleepingComputer reported that the extortion group ShinyHunters claimed to have 201,211,943 historical records tied to Premium members’ search, watch and download activity. That is the group’s claimed number of records—not a verified count of affected people or unique accounts.
#1 Best Overall
BleepingComputer said a sample it reviewed contained email addresses, activity types, location, video URLs and names, associated keywords, and event times. If authentic and linked to an individual, that combination could reveal sensitive viewing interests. The report does not establish how many people the sample represented or confirm the full dataset’s scope. BleepingComputer’s December 15 report details the group’s claims and the sample.
Who says the data came from Mixpanel?
The connection to Mixpanel’s November 2025 security incident is contested. BleepingComputer reported that Mixpanel experienced an incident on November 8, 2025, but quoted the company as saying: “We can find no indication that this data was stolen from Mixpanel during our November 2025 security Incident or otherwise.” Mixpanel also said the data had last been accessed by a legitimate employee account at Pornhub’s parent company in 2023. Le Monde likewise reported Mixpanel’s denial of a connection.
Rank #2
These accounts do not establish how the data reached unauthorized hands. Aylo’s notice, ShinyHunters’ claims and Mixpanel’s denial are distinct: an affected-data notice, an extortion claim, and a dispute about the data’s source.
What should you do if you receive a Pornhub sextortion email?
Pornhub warned that people responsible for the incident might contact impacted Premium users directly. Malwarebytes reproduced the warning: “We are aware that the individuals responsible for this incident have threatened to contact impacted Pornhub Premium users directly. You may therefore receive emails claiming they have your personal information. As a reminder, we will never ask for your password or payment information by email.” Malwarebytes’ December 22 report also gives practical response advice.
- Do not pay or reply. Avoid negotiating with the sender or confirming that an address is active.
- Do not open links or attachments. Do not use contact details or payment instructions in the message.
- Keep the message for reporting. Preserve the email, including its headers, rather than deleting it immediately.
- Secure accounts that could be targeted next. If you still use the affected Pornhub account, change its password to a unique one. Enable multifactor authentication on your primary email account, which can help protect password resets and other accounts.
- Check payment statements. Look for unfamiliar charges, even though Aylo said payment details were not stolen in this incident.
These measures reduce the risk of follow-on phishing or account access; they cannot erase historical analytics data that may already have been copied.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.What is still unknown?
The reporting cited here does not establish a confirmed number of affected individuals, whether the alleged dataset was later published, or how the extortion demand was resolved. Avoid treating the group’s record count as a count of victims or assuming a later outcome without a confirmed update.
Quick Recap
Best Value
- This fun, nerdy, geeky, retro Cybersecurity Awareness Month design is perfect to wear this October. Great for cyber security professionals and experts who keep people safe on the internet, safe online, and safe online.
- Wear this for October National Cyber Security Awareness Month this October, raise awareness about cyber security on smartphones, laptops at your school, in the classroom or on your college or university campus. Be safe online and make sure others are too!
- Lightweight, Classic fit, Double-needle sleeve and bottom hem
Rank #4
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

