The Czech Republic 10 Dump Contains Exactly 250,869 Logins
HEROIC analysts identified a combolist called Czech Republic 10, uploaded to Telegram and dated January 14, 2023, containing exactly 250,869 records. Each entry pairs an email address with a plaintext password and the URL the credential was meant to access. Why This Is Dangerous: Because every password in this file is stored in plaintext, attackers can use the credentials the moment they get the file, with no cracking required. At more than a quarter of a million records, automated tools can test logins against major websites at scale within hours. What Was Exposed: Email addresses, plaintext passwords, and the login URLs tied to each record, providing attackers a complete, working login attempt for every entry in the file. Why This Matters: A list of this size is large enough to fuel widespread credential-stuffing attacks, where automated bots try each username and password pair against banking sites, email providers, and shopping platforms. Anyone who reused a password across accounts is exposed to account takeover, financial fraud, and identity theft. How This Combolist Was Built: Despite the country-themed name, files like Czech Republic 10 are usually compiled from multiple older breaches and stealer malware logs rather than one confirmed hack. The regional label is often used by sellers to organize and market credential sets by geography rather than to indicate a single verified source. Check If You Are Affected: HEROIC's free breach scanner checks your email against more than 400 billion leaked records, including large combolists like this one. Run a free scan now and update any password you may have reused.
Breach Breakdown
250,869 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds