10,634 Passwords From Ninho Private Hotmail Hit the Dark Web
10,634 passwords from a combolist labeled "NINHO PRIVATE HOTMAIL" surfaced on Telegram in June 2026. The file pairs email addresses with plaintext passwords and the URLs each login was used on, with a name indicating the uploader was specifically collecting Hotmail and Outlook-linked accounts.
Why This Is Dangerous
Hotmail and Outlook accounts are often the recovery email for banking, shopping, and social media logins. If an attacker gains access to one of these 10,634 accounts, they can use it to reset passwords on other services, effectively turning one compromised email into a master key for someone's entire online life.
What Was Exposed
- Email addresses
- Plaintext passwords
- URLs tied to each login
Why This Matters
Beyond direct access to email, anyone in this file faces credential stuffing risk if the password was reused elsewhere. The "private" label in the file's name also suggests the uploader considers this a higher-value, less widely shared batch, which can mean it changes hands among fewer buyers before it is eventually made public.
How This Combolist Was Built
Lists like "NINHO PRIVATE HOTMAIL" are typically assembled by filtering larger stolen credential collections down to a single email provider, then verifying the logins still work before packaging and distributing the file through private Telegram channels.
Check If You Are Affected
Search HEROIC's free breach scanner, which checks your email against more than 400 billion leaked records, and if you find a match, change your Hotmail or Outlook password right away along with any account that uses it for recovery.
Breach Breakdown
10,634 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds