Hotmail and Outlook Users Exposed in an 11,956-Record Leak
HEROIC analysts found a combolist titled "12.2kHotmail-Full-Valid" uploaded to Telegram on February 14, 2026. The name promises 12.2 thousand records, but the verified count is 11,956, still a large file of email addresses, plaintext passwords, and login URLs, specifically targeting Hotmail and Outlook-style webmail accounts. Why This Is Dangerous: Webmail accounts are often the recovery point for every other account a person owns. Anyone holding a working Hotmail or Outlook password can use "forgot password" links to break into banking, shopping, and social media accounts tied to that inbox. What Was Exposed: - Email addresses (Hotmail/Outlook-style accounts) - Plaintext passwords - URLs for the associated login pages Why This Matters: Because the uploader specifically marked these as "full valid," meaning tested and working, this file poses a higher-than-average risk of successful credential stuffing and account takeover compared to unverified leaks. Nearly 12,000 people could have their inboxes, and everything tied to them, compromised. How a Combolist Like This Works: Combolists labeled "valid" or "full valid" have typically been checked by the uploader against the target service before release, filtering out dead logins so only working credentials remain, which makes them more dangerous, and more valuable to buyers, than an unchecked list. Check If You Are Affected: If you use Hotmail or Outlook, check your email against this leak and HEROIC's database of more than 400 billion exposed records with HEROIC's free breach scanner, and change your password immediately if you find a match.
Breach Breakdown
11,956 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds