The Hotmail Mailaccess Leak Exposed 272 Working Email Logins
HEROIC analysts found a combolist named Hotmail Mailaccess uploaded to a Telegram channel on April 9, 2026. The file contains 272 records of email addresses, plaintext passwords, and the login URLs tied to each account, focused specifically on Hotmail and Outlook style webmail access. Why This Is Dangerous: Webmail access is often the master key to a person's other accounts, since password reset emails for banking, shopping, and social media typically land in the inbox. A working login here can let an attacker take over not just the email account, but everything connected to it. What Was Exposed: - Email addresses - Plaintext passwords - Webmail login URLs Why This Matters: With 272 working email and password pairs circulating, anyone affected faces a direct risk of account takeover. If the same password is reused anywhere else, the risk expands to banking and shopping accounts too, since attackers routinely test stolen email credentials against other popular services. How a Combolist Like This Works: Files like this are usually built by testing stolen or guessed credentials against webmail login pages and keeping only the ones that work, then packaging them into a plain text list for sale or free distribution on Telegram. Naming the file after the mail provider makes it easier for buyers to know exactly what kind of access they are getting. Check If You Are Affected: If you use a Hotmail, Outlook, or similar webmail account, it is worth checking your exposure directly. HEROIC's free breach scanner checks your email against more than 400 billion leaked records so you can catch a compromised login before someone else uses it.
Breach Breakdown
272 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds