Gamers Targeted: 668,378 Passwords Exposed in Gaming Dump
HEROIC identified a stealer log collection labeled "2.9KK Gaming Base Private UHQ" circulating on Telegram since January 2023. This dump focuses specifically on gaming accounts and contains 668,378 credential records—email addresses paired with plaintext passwords and the URLs of gaming platforms where the credentials were harvested. The "UHQ" (Ultra High Quality) designation indicates the credentials have been curated for higher exploit success rates.
Plaintext Gaming Passwords: Accounts Ready for Takeover
Every password in this massive gaming dump is stored in plaintext—completely unencrypted and instantly usable. An attacker does not need to crack, decode, or brute-force anything. They can log into gaming accounts immediately, potentially accessing in-game purchases, linked payment methods, virtual currency balances, and digital game libraries worth hundreds or thousands of dollars.
What Was Exposed
- Email Addresses – Account identifiers for gaming platforms, often linked to digital storefronts and payment systems
- Plaintext Passwords – Over 668,000 unencrypted credentials targeting gaming accounts specifically
- URLs – Gaming platforms, digital storefronts, and community sites where credentials were actively used
Why Gaming Credentials Unlock Far More Than Games
Gaming accounts are high-value targets. They connect to payment methods, store personal information, and often share credentials with email and social media accounts. Attackers use credential stuffing to test these 668,378 email-password combinations against Steam, Epic Games, PlayStation Network, Xbox Live, and beyond. A compromised gaming account can lead to stolen game libraries, drained wallet balances, and identity theft when the same password unlocks email or banking accounts.
How Infostealers Target the Gaming Community
Gamers are disproportionately targeted by infostealer malware. The infection vectors are tailored to the community: fake game cheats, cracked game installers, modding tools laced with malware, and phishing links in gaming Discord servers. Malware families like RedLine, Lumma, and Vidar extract saved browser passwords, gaming client credentials, and session tokens. The stolen data is then compiled into themed collections—like this gaming-focused dump—and shared on Telegram for other attackers to exploit.
Check If Your Credentials Were Exposed
With 668,378 gaming-focused records in this single dump, the risk to gamers is significant. HEROIC's breach scanner indexes over 400 billion compromised records from breaches, stealer logs, and underground markets. Search your email address to find out if your gaming credentials—or any other account—were exposed in the 2.9KK Gaming Base dump or any other known breach.
Breach Breakdown
668,378 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds