Skip to content

5.5 Million MyVete User Records Offered for 4,000 Dollars

Breach Report Veterinary Software 4,000 USD No Sample in Thread

5.5 Million MyVete User Records Offered for 4,000 Dollars

A forum actor posting as Kazu is selling what they describe as a 2026 dump from MyVete, a veterinary practice management platform used by animal clinics for patient records, appointments, billing and inventory. The listing gives 5,571,174 records described only as user personal data, a total size of 30 GB and a price of 4,000 dollars. Unusually for a listing of this size, no field list, schema or sample appears in the thread itself; samples are offered through a private channel, and the descriptive text covers what the software does rather than what the data contains. The claim is unverified.

Records claimed5,571,174
Size30 GB
Price$4,000
ActorKazu

Post details

TargetMyVete
CountryNot stated
SectorVeterinary software
ListingSelling, 4,000 USD
Volume5,571,174 records
Dump dateStated as 2026
Observed
ActorKazu

!What the post claims

  • 5,571,174 records
  • 30 GB total size
  • Dump dated 2026
  • Described as user personal data
  • No field list published
  • No sample shown in thread
  • Samples offered privately
  • Price of 4,000 US dollars
  • Platform holds patient records
  • Platform holds appointments
  • Platform holds billing data
  • Platform holds inventory
  • Card payments supported
  • Insurance claims supported
  • Vaccination reminders sent
  • Medical history tracking
  • Escrow offered through the forum
  • No mechanism described

Screenshot

Forum post offering the MyVete database for sale, observed 31 August 2026.

Mapped techniques

The post describes no intrusion method. Both entries are inferred from the artefacts, not stated.

  • Collection T1213 Data from information repositories Inferred A single dated dump measured in records and gigabytes points to a platform level export rather than data taken from individual clinic accounts.
  • Exfiltration T1567 Exfiltration over web service Inferred Samples and sale are handled through external messaging channels. The route out of the environment is not described.

Potential impact

If this is a platform level export rather than one clinic's records, the exposure runs across every practice using the software, and the people in it are pet owners who never chose the vendor. Practice management systems typically hold owner contact details alongside billing records, and in this case card payments and insurance claims, which would raise the exposure well above a mailing list. Scope cannot be judged from what has been published, because the post describes the product's features rather than the fields actually in the file.

iStatus Unverified

The absence of any sample or schema in the thread is the weakness here, since a record count and a size figure are the two easiest things in a listing to invent. The descriptive paragraph reads as copy about the platform rather than an account of the data, which is what a seller writes when they have not examined the file closely. The account is a few months old with a paid rank and a moderate posting history. Dark Web Informer has not retrieved the data and is not linking the samples or contact addresses, and MyVete has not publicly addressed the claim.

Dark Web Informer // Threat Intelligence

Latest