Is Your Password in the “118000” Data Breach Leak?
In August 2023, HEROIC analysts identified a stealer log labeled "118000" uploaded to a Telegram channel by an anonymous user. If you have ever saved a password in your browser, you will want to pay attention. The file contains 56,149 records of email addresses, plaintext passwords, and the site URLs each login unlocks.
Why You Should Care About This Leak
You might assume a leak like this only affects other people, but stealer logs do not target specific companies or industries. They target whoever happens to click the wrong download link. If your device was infected, your saved logins could be sitting in a file just like this one, ready for anyone to use.
What Was Exposed
- Email addresses
- Plaintext passwords
- Associated website URLs
Why This Matters to You
If your credentials are in here, an attacker already has everything needed to log into your accounts. There is no cracking or guessing involved. This is exactly the kind of data used for credential stuffing, account takeover, and eventually identity theft or financial fraud, especially if you reuse passwords across sites.
How Stealer Logs Work
Stealer malware sneaks onto a device through fake downloads, cracked software, or malicous links, then quietly copies saved browser passwords, autofill data, and session cookies. Everything gets bundled into a log file and shared or sold, often through Telegram channels like the one behind this exposure.
Check If You Are Affected
Want to know for sure if your information is in a log like this one? HEROIC's free breach scanner checks your email against more than 400 billion exposed records, so you can find out right now instead of wondering.
Breach Breakdown
56,149 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds