Researchers Link 1K Brazil 29.06 to 975 Credentials Found on Telegram
HEROIC analysts identified this stealer log on June 29, 2026. The breach exposed 975 records, with stolen data including email addresses, plaintext passwords, and URLs. The source is identified as the 1K Brazil 29.06 stealer log.
Why This Is Dangerous
This log targets Brazil-based accounts, exposing 975 plaintext credentials alongside the exact URLs they unlock. Attackers who obtain this file can begin testing accounts immediately, with no decryption or guesswork required.
What Was Exposed
- Email addresses
- Plaintext passwords
- URLs of associated Brazilian login pages and services
Why This Matters
The 975 exposed credentials enable immediate credential stuffing across email, banking, and retail platforms popular in Brazil. Reused passwords amplify the risk of account takeover, identity theft, and financial fraud beyond the initial exposure.
How This Stealer Log Works
Infostealer malware infects a victim's device through fake software downloads or malicious browser extensions, then silently collects every saved username, password, and login URL from the browser. Data is packaged by date and region into log files and distributed on Telegram channels where buyers search for credentials tied to specific countries or services.
Check If You Are Affected
HEROIC's free breach scanner searches 400 billion records including stealer logs like this one. Search your email now. Free, takes seconds.
Breach Breakdown
975 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds