A threat actor completely wiped LimeVPN's backend systems and subsequently put their complete user database up for sale. The leaked assets included clear-text user credentials, billing logs, and historical connection metrics of global subscribers.