HEROIC Analysts Found the BR 7.31 Dump Circulating on Telegram
HEROIC analysts discovered the BR 7.31 stealer log file circulating on Telegram in February 2023. The breach exposed 1,144 records including email addresses, plaintext passwords, and URLs from compromised Brazilian user accounts and associated endpoints.
Brazilian Credential Leaks Target a Major Digital Economy
Brazil is one of the world's largest digital economies, with high adoption of mobile banking and e-commerce. Credential files targeting Brazilian users give attackers access to Pix payment accounts, popular Brazilian banking apps, and a large base of e-commerce and social media accounts.
What the BR 7.31 Leak Exposed
- Email Addresses
- Plaintext Passwords
- URLs (endpoint context)
How Stolen Brazilian Credentials Enable Financial Fraud
Brazil's instant payment system and widespread smartphone banking make stolen credentials especially dangerous. Attackers with valid Brazilian email and password pairs can attempt unauthorized Pix transfers, account takeovers on local banking apps, and identity fraud using the associated personal data.
How Stealer Log Breaches Work
Stealer logs are produced by malware silently installed on victims' computers. The malware captures usernames, passwords, and browser session data before sending it to criminals, who then package and sell the data on Telegram channels and dark web markets.
Check If Your Data Was Exposed
HEROIC's free breach scanner searches over 400 billion+ leaked records to tell you if your email was part of this or any other stealer log dump. Check your exposure now at no cost.
Breach Breakdown
1,144 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds