Loading
Yanuki
ARTICLE DETAIL
Millions of Usernames and Passwords Exposed in Massive Online Leak | Conduent Data Breach Impacts Millions: What You Need to Know | Conduent Data Breach Exposes Millions of Americans | Why Smart People Fall For Phishing Attacks | Building AI-Enabled Cybersecurity Resilience | CISOs to Pour 2026 Budgets into AI as Cybersecurity Priorities Shift | Record Data Breaches in 2025: Key Takeaways and What It Means for You | Why Incident Response Plans Often Fail | Data Breaches Hit Record High in 2025: Steps to Protect Your Data | Millions of Usernames and Passwords Exposed in Massive Online Leak | Conduent Data Breach Impacts Millions: What You Need to Know | Conduent Data Breach Exposes Millions of Americans | Why Smart People Fall For Phishing Attacks | Building AI-Enabled Cybersecurity Resilience | CISOs to Pour 2026 Budgets into AI as Cybersecurity Priorities Shift | Record Data Breaches in 2025: Key Takeaways and What It Means for You | Why Incident Response Plans Often Fail | Data Breaches Hit Record High in 2025: Steps to Protect Your Data

Cybersecurity / Data Breaches

Millions of Usernames and Passwords Exposed in Massive Online Leak

A massive leak has exposed nearly 150 million usernames and passwords online, impacting a wide range of services, including Gmail, Facebook, Instagram, and financial institutions. This compilation of compromised credentials highlights the o...

149M Logins and Passwords Exposed Online Including Financial Accounts, Instagram, Facebook, Roblox, Dating Sites, and More.
Share
X LinkedIn

gmail passwords
Millions of Usernames and Passwords Exposed in Massive Online Leak Image via ExpressVPN

Key Insights

  • A database containing 149 million unique logins and passwords was discovered unprotected online.
  • The exposed data includes credentials for Gmail (48 million), Facebook (17 million), Instagram (6.5 million), and other popular services.
  • Government, banking, and streaming service logins were also found, increasing the risk of cybercrime.
  • The database is suspected to be a collection from past breaches and infostealer malware logs.
  • The exposure underscores the need for strong, unique passwords, multi-factor authentication, and up-to-date antivirus software.

In-Depth Analysis

Cybersecurity researcher Jeremiah Fowler discovered the unprotected database, which totaled 96 GB of raw credential data. The database contained emails, usernames, passwords, and login URLs, making it a valuable resource for cybercriminals looking to conduct credential stuffing attacks. The data appears to have been collected by infostealing malware, which infects devices and silently harvests credentials. The database was accessible via a web browser, allowing anyone who found it to search for specific logins. The hosting provider eventually suspended the database after being notified, but not before the number of records increased. Email provider breakdown:

  • Gmail: 48 Million
  • Facebook: 17 Million
  • Instagram: 6.5 Million
  • Yahoo: 4 Million
  • Netflix: 3.4 Million
  • Outlook: 1.5 Million

How to Prepare:

1. Check if your email has been compromised using sites like HaveIBeenPwned?ref=yanuki.com. 2. Enable two-factor authentication on all critical accounts. 3. Use a password manager to generate and store strong, unique passwords. 4. Install and regularly update antivirus software. 5. Be cautious of phishing emails and suspicious links.

Who This Affects Most:

This breach affects anyone who uses the internet, but particularly those who reuse passwords across multiple sites or lack basic security measures.

Read source article

FAQ

What is infostealing malware?

Infostealing malware is a type of malicious software designed to silently harvest credentials from infected devices, often through keylogging or other data scraping techniques.

What should I do if I think my account has been compromised?

Immediately change your password, enable two-factor authentication, and monitor your account for any suspicious activity. Consider running a scan with your antivirus software.

Takeaways

  • Millions of usernames and passwords have been exposed in a massive online leak.
  • The leak includes credentials for Gmail, Facebook, Instagram, and other popular services.
  • Protect your accounts by using strong, unique passwords and enabling two-factor authentication.
  • Be cautious of phishing emails and suspicious links.
  • Regularly update your antivirus software and operating system.

Discussion

Do you think this trend of large-scale data breaches will continue? Let us know!

Share this article with others who need to stay ahead of this trend!

Sources

Disclaimer

This article was compiled by Yanuki using publicly available data and trending information. The content may summarize or reference third-party sources that have not been independently verified. While we aim to provide timely and accurate insights, the information presented may be incomplete or outdated.

All content is provided for general informational purposes only and does not constitute financial, legal, or professional advice. Yanuki makes no representations or warranties regarding the reliability or completeness of the information.

This article may include links to external sources for further context. These links are provided for convenience only and do not imply endorsement.

Always do your own research (DYOR) before making any decisions based on the information presented.