The Tool Desk
Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →Outbyte Driver Updater FREEScan for outdated or missing drivers - takes under a minuteDriver Scan →Have I Been Pwned listed 71,335 email addresses in data associated with the 2022 NVIDIA breach. That figure is not a confirmed count of current NVIDIA employees: the company did not publish its own total of affected people. NVIDIA said employee credentials and proprietary company information had been stolen and were being leaked online.
Were 71,000 NVIDIA employees hacked?
The public evidence supports a more careful answer: breach data included 71,335 email addresses, but that number does not establish that 71,335 current NVIDIA employees were affected. Recorded Future attributed the figure to Have I Been Pwned’s breach data. NVIDIA declined to say how many employees or customers were affected, according to TechCrunch’s December 2022 review of data-breach disclosures.
An email-address count is not necessarily a count of unique people or current employees. The cited public reporting does not resolve whether every address represented a distinct person, or whether all belonged to current NVIDIA employees. It is accurate to say that Have I Been Pwned listed 71,335 addresses—not that NVIDIA confirmed 71,000 employees were hacked.
When did the NVIDIA cyberattack happen?
NVIDIA said it became aware of a malicious intrusion on February 23, 2022. The company told TechCrunch on February 25 that it was investigating a cybersecurity incident and that its business and commercial activities continued uninterrupted. On March 1, NVIDIA confirmed that employee credentials and proprietary company information had been stolen and were being leaked online. It said it had notified law enforcement and engaged cybersecurity experts.
#1 Best Overall
- AI Performance: 767 AI TOPS
- OC mode: 2632 MHz (OC mode)/ 2602 MHz (Default mode)
- Powered by the NVIDIA Blackwell architecture and DLSS 4
- Axial-tech fan design features a smaller fan hub that facilitates longer blades and a barrier ring that increases downward air pressure
- A 2.5-slot design maximizes compatibility and cooling efficiency for superior performance in small chassis
Lapsus$ claimed responsibility, according to contemporaneous reporting. NVIDIA’s cited public comments did not name the attacker or explain how the intrusion began. The company also said it had “no evidence that this is related to the Russia-Ukraine conflict.” That was a statement made during the 2022 incident, not a current security assurance. See TechCrunch’s March 1, 2022 report and its February 25, 2022 report.
What information was leaked in the NVIDIA breach?
The breach data identified email addresses and NTLM password hashes. NVIDIA’s broader statement confirmed stolen employee credentials and proprietary company information, but did not provide a complete inventory of every item disclosed. The public reporting cited here does not establish the exact number of affected people or the initial method of access.
Rank #2
- Powered by the NVIDIA Blackwell architecture and DLSS 4
- Powered by GeForce RTX 5060
- Integrated with 8GB GDDR7 128bit memory interface
- PCIe 5.0
- WINDFORCE cooling system
Recorded Future also reported that the leak included two NVIDIA code-signing certificates and that researchers observed malware signed with them. A code-signing certificate can be used to make software appear to come from a trusted publisher; theft can therefore create a risk of malicious software being presented as legitimate. This detail concerns certificates, not evidence that NVIDIA graphics cards themselves were compromised. Recorded Future’s account is in its report, “Semiconductor Companies Targeted by Ransomware.”
Were NVIDIA employee passwords exposed?
The breach record identified NTLM password hashes, which are stored representations of passwords rather than plain-text passwords. Their exposure is still a security concern: hashes may be targeted for cracking, and a password reused elsewhere can put those other accounts at risk. The cited sources do not establish that every exposed hash was cracked or that every listed address had a corresponding exposed password.
Do these 3 things before closing this tab:
1Clear out junk files and repair common Windows errors2Fix the driver behind crashes, sound loss and screen glitches3Repair Windows errors before they cause bigger problemsRank #3
- Powered by the NVIDIA Blackwell architecture and DLSS 4. System Requirements: Minimum 850W PSU with 16-pin 12V-2x6 (12VHPWR) connector required. Verify before purchasing.
- Military-grade components deliver rock-solid power and longer lifespan for ultimate durability. Compatibility: 348mm (13.7") length, 3.6 slots, 4.3 lbs. Confirm case clearance and slot spacing. GPU bracket included.
- Protective PCB coating helps protect against short circuits caused by moisture, dust, or debris
- 3.6-slot design with massive fin array optimized for airflow from three Axial-tech fans
- Phase-change GPU thermal pad helps ensure optimal thermal performance and longevity, outlasting traditional thermal paste for graphics cards under heavy loads
If you worked at NVIDIA at the time, or believe you used a password exposed in this incident, change it anywhere it is still used. Make the replacement unique to each service. If you reused it on email, banking, shopping, or other accounts, update those accounts too; password reuse can enable password-stuffing attacks, as explained in NIST’s Digital Identity Guidelines FAQ.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.How to protect your accounts after a credential exposure
- Change any exposed or reused password. Use a distinct password for each account, especially email, financial services, and accounts that can reset other passwords. NIST advises changing a memorized secret when there is evidence it has been compromised.
- Use a password manager to create and store unique passwords. CISA recommends password managers for generating and managing distinct credentials. When choosing one, consider whether it works with your devices, how account recovery works, whether storage is local or cloud-based, and whether it supports MFA.
- Turn on multifactor authentication (MFA) for important accounts. CISA recommends MFA and calls for phishing-resistant MFA for important organizational services. Available options vary by service: an authenticator app or one-time code is not the same as a cryptographic security key, and no method works everywhere.
- Consider a security key only if the service and your devices support it. A compatible cryptographic key can provide phishing-resistant MFA, but check the account’s supported methods and your device compatibility before relying on one.
These steps are sensible account-protection practices; the 2022 NVIDIA incident alone does not show that your personal credentials are currently at risk. CISA’s recommendations appear in its #StopRansomware Guide.
Quick Recap
Best Value
- AI Performance: 1005 AI TOPS
- OC mode boosts clock 2587 MHz (OC mode) / 2557 MHz (Default mode)
- Powered by the NVIDIA Blackwell architecture and DLSS 4
- SFF-Ready enthusiast GeForce card compatible with small-form-factor builds
- Axial-tech fans feature a smaller fan hub that facilitates longer blades and a barrier ring that increases downward air pressure
Rank #4
- Powered by the NVIDIA Blackwell architecture and DLSS 4
- Powered by GeForce RTX 5070 Ti
- Integrated with 16GB GDDR7 256bit memory interface
- PCIe 5.0
- WINDFORCE cooling system
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.




