Dark Web Intel: Duocuc.cl Combolist Exposes 818 Login Pairs
In June 2026, HEROIC analysts found a small combolist tied to the domain duocuc.cl after a Telegram user uploaded it. The file contains 818 records pairing email addresses with plaintext passwords and the login URLs those credentials were used on. Why This Is Dangerous: The domain in the file name points to an educational institution's online systems, suggesting these accounts may belong to students, staff, or applicants who used that domain's login portal. Because the passwords are stored in plaintext, anyone who downloads the file can try them immediately, no technical skill required. What Was Exposed: Email addresses. Plaintext passwords. Associated login URLs. Why This Matters: Small, targeted combolists like this one often get less attention than massive breaches, but the risk to each of the 818 people in it is identical. If any of these accounts reused their password for a personal email, banking app, or social media profile, that password is now exposed there too. How This Combolist Was Likely Built: Criminals often scrape or phish credentials tied to a specific website or organization, then package that narrower dataset as its own file rather than folding it into a larger mixed combolist. Naming the file after the domain makes it easier for a buyer looking to target that specific institution or its users. Check If You Were Affected: HEROIC's free breach scanner checks your email address against more than 400 billion leaked records, including small, targeted files like this one, so you can confirm your exposure and reset your password in minutes.
Breach Breakdown
818 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds