9,990 Passwords From 30-JUNE FIRST BASE Found on the Dark Web
HEROIC analysts identified this stealer log on 30-Jun-2026. The breach exposed 9,990 records, with stolen data including email addresses, plaintext passwords, and URLs. The source is identified as 30-JUNE FIRST BASE uploaded by a Telegram User.
Why This Is Dangerous
This breach contains nearly 10,000 plaintext password and email address pairs. Because none of the passwords are encrypted, attackers can immediately use these credentials to attempt logins on email services, banking platforms, and social media accounts without any additional tools or processing.
What Was Exposed
- Email Addresses
- Plaintext Passwords
- URLs (website addresses connected to the stolen login credentials)
Why This Matters
A leak of nearly 10,000 credentials gives attackers a large pool to work from. Using automated tools, criminals can rapidly test these combinations against banking sites, email inboxes, and online retailers. Even if only a fraction of the credentials work on other sites, the damage from account takeovers and identity theft can be significant.
How Stealer Logs Work
Stealer logs are created by malware that infects a device through phishing attacks, software vulnerabilities, or fake downloads. The malware runs without the user's knowledge, capturing usernames and passwords as they are entered, then transmitting that data back to the attacker. The stolen credentials are then sold or shared in private online communities.
Check If You Are Affected
HEROIC offers a free breach scanner that searches 400 billion records. Search your email address now to see if your credentials appear here or elsewhere. Free, takes seconds.
Breach Breakdown
9,990 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds