6,564 Records Leaked in the SorpionLogs Stealer Log Dump
6,564 Records: Inside the SorpionLogs Stealer Log Dump
HEROIC analysts identified a stealer log named SorpionLogs PUBLIC150, uploaded to a public Telegram channel on April 4, 2024. The file contains 6,564 records, each pairing an email address with a plaintext password and the URL the login was used on.
Why This Is Dangerous
Nothing in this file needs to be cracked. Every password was captured exactly as it was typed on the infected device, meaning it works the instant someone tries it.
What Was Exposed
- Email addresses
- Plaintext passwords
- URLs identifying each associated site
Why This Matters
The risk here is not abstract, a working email and password combination is enough for an attacker to attempt account takeover on email, banking, and shopping sites alike. Reused passwords make this worse, letting one leaked credential unlock several accounts at once.
How the SorpionLogs Dump Was Assembled
Infostealer malware quietly harvests saved browser credentials from an infected device and sends them back to the attacker as a log file. Multiple logs are then combined into public releases like SorpionLogs PUBLIC150 and shared on Telegram for wide distribution.
Check If You Are Affected
Search your email for free with HEROIC's breach scanner, which checks this leak alongside more than 400 billion other exposed records. If you find a match, change that password right away.
Breach Breakdown
6,564 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds