25,675 Passwords Leaked: Everlasting_Cloud_2 Breach Found
25,675 sets of email addresses, plaintext passwords, and website URLs are now circulating on Telegram. HEROIC analysts traced the file, named Everlasting_Cloud_2, to a stealer log uploaded in June 2026 by an individual user.
Why This Is Dangerous
These are not hashed or encrypted passwords. They are plain, readable text sitting right next to the login page they open, which means an attacker can try them immediately with no extra effort.
What Was Exposed
- Email addresses
- Plaintext passwords
- Associated website URLs
Why This Matters
If any of these passwords are reused elsewhere, the damage spreads fast. Attackers routinely test stolen logins across email, banking, and social accounts through credential stuffing, which can quickly lead to account takeover, identity theft, and financial fraud.
How Everlasting_Cloud_2 Was Likely Collected
Stealer logs like this one usually begin with malware slipped onto a device through a pirated program or a malicious link. The malware then quietly pulls saved passwords straight from the browser and ships the data back to whoever is running the operation, often within hours.
Check If You Are Affected
With over 25,000 records exposed, checking your own accounts only takes a minute. HEROIC's free breach scanner searches more than 400 billion leaked records, giving you a direct answer on whether your information is part of this leak.
Breach Breakdown
25,675 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds