Your Data May Be Exposed: ‘100k Gmail Base’ Really Held 54,503 Logins
In April 2023, a Telegram user uploaded a file called 100k Gmail Private base. HEROIC analysts verified the actual contents and found 54,503 usable records, roughly half the number advertised in the file's name, each pairing a Gmail address with a plaintext password and the login URL it was captured from. Why This Is Dangerous: The inflated file name does not change the real risk to the 54,503 people whose credentials are inside it. The passwords are stored in plain, readable text, so anyone with the file can log in immediately, with no cracking or guessing required. What Was Exposed: - Email addresses - Plaintext passwords - URLs tied to each login Why This Matters: A confirmed 54,503 working Gmail credentials is more than enough to fuel a large, automated credential stuffing campaign. Because Gmail addresses are often the recovery or login email for many other accounts, a single reused password can give an attacker a path into someone's banking, shopping, or social media accounts, leading to identity theft or financial fraud. How a Combolist Like This Works: Files like this are usually assembled from stealer malware logs or older breach data, filtered down to a single email provider, in this case Gmail, and given an exaggerated size in the title to attract buyers. Inflated round numbers like "100k" are a common sales tactic on Telegram and rarely match the actual, verified contents. Check If You Are Affected: Search your email address using HEROIC's free breach scanner, which checks against more than 400 billion exposed records, including this file. If your account shows up, change the password right away and anywhere else you have reused it.
Breach Breakdown
54,503 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds