Dark Web Intel: 1,101 Hotmail Logins in the ‘B4_Jx’ Combolist
HEROIC analysts tracked a combolist named Hotmail Fresh B4_Jx that a Telegram user uploaded on April 19, 2026. The file contains 1,101 records of Hotmail email addresses paired with plaintext passwords and the URLs those credentials were collected from. Why This Is Dangerous: This file surfaced in the same private Telegram channels and forums where dark web intelligence teams routinely monitor for stolen credential trading. The 'Fresh' label in its name means the data was recently gathered or verified rather than recycled from an old breach, making the logins inside more likely to still work. What Was Exposed: - Hotmail email addresses - Plaintext passwords - URLs linking each pair to its source Why This Matters: Fresh Hotmail credentials are especially valuable to attackers because webmail accounts are the recovery point for so many other services. A working login from this batch can be used to reset passwords on banking, shopping, and social media accounts, turning one exposed email into a chain of account takeovers, identity theft, and financial fraud. How This Combolist Was Assembled: Batch codes like 'B4_Jx' are common in stealer log and combolist trading circles, used to track different uploads from the same source or seller. Files like this are typically built from recently harvested credentials, checked against Hotmail's login system, and packaged for quick resale while the data is still current. Check If You Are Affected: HEROIC's free breach scanner checks your email against more than 400 billion leaked records, including fresh combolists like Hotmail Fresh B4_Jx, so you can find out immediately if your account was exposed and lock it down before an attacker gets there first.
Breach Breakdown
1,101 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds