The hotmail.com Leak Exposed More Logins Than a Small City’s Size
HEROIC analysts found a Telegram combolist tied to hotmail.com accounts, uploaded on May 15, 2026, containing 28,125 records of email addresses, plaintext passwords, and account URLs. Why This Is Dangerous: A file of this size, with every password stored in plaintext, gives an attacker tens of thousands of ready-to-use logins in one download. There is no need to crack or guess anything, the credentials work as-is. What Was Exposed: - Email addresses - Plaintext passwords - Account URLs Why This Matters: With 28,125 accounts in one list, attackers have enough scale to run credential stuffing attacks across many other websites at once. Anyone affected who reused their hotmail.com password on a banking, shopping, or social media account faces real risk of takeover and fraud. How This Telegram Combolist Works: Combolists of this size are usually built by merging several smaller breaches, stealer malware logs, and phishing hauls into one large file, then distributed through Telegram channels for reuse by other attackers. Because the data carries no encryption, it is immediately actionable. Check If You Are Affected: HEROIC's free breach scanner checks your email against more than 400 billion leaked records, including combolists like this one. Run a free scan now to see if your hotmail.com login was exposed.
Breach Breakdown
28,125 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds