ArtHouse Cloud Logs v2 Could Unlock Multiple Accounts at Once
Four days ago, HEROIC analysts found a stealer log titled "ArtHouse Cloud Logs v2" after a Telegram user uploaded it to a malware log channel. The "v2" in the name signals this is an updated batch, and it contains 36,013 records of email addresses, plaintext passwords, and the login URLs each credential was captured from. Why This Is Dangerous: Because this data comes from malware that copies everything saved in a browser, a single infected device can hand over logins for email, cloud storage, banking, and shopping accounts all at once, meaning one compromised person in this log could have several accounts exposed at the same time, not just one. What Was Exposed: Email addresses. Plaintext passwords. Associated login URLs. Why This Matters: Stealer logs rarely expose just one account per victim. If the same infected browser saved logins for a bank, an email inbox, and a social account, all three show up in the same log entry, letting an attacker move from one account to the next using the same starting point. How This Stealer Log Was Likely Built: Info-stealing malware infects a device through a fake download, cracked software, or malicious link, then quietly harvests every saved password and login URL from the browser before sending it back to the attacker. An updated "v2" batch like this one usually means the same operator re-ran their malware campaign and packaged a fresh set of victims. Check If You Were Affected: If any of your accounts share a browser with an infected device, more than one login could be at risk. HEROIC's free breach scanner checks your email against more than 400 billion leaked records, including this log, so you can find out fast and lock down every account tied to it.
Breach Breakdown
36,013 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds