The Hotmail Telegram Leak: 305 Login Credentials Hit the Dark Web
HEROIC analysts found a Telegram combolist simply named "HOTMAIL" that surfaced on May 19, 2026, containing 305 records of email addresses, plaintext passwords, and account URLs. Why This Is Dangerous: A file this size might seem minor, but every record includes a plaintext password, meaning the 305 accounts inside it can be accessed immediately by anyone who downloads the file. No cracking or guesswork is required. What Was Exposed: - Email addresses - Plaintext passwords - Account URLs Why This Matters: Small leaks like this one still feed into larger credential stuffing attacks, where criminals test stolen email and password pairs across banking sites, shopping accounts, and social media. If any of these 305 people reused their Hotmail password somewhere else, that account is now at risk too. How This Telegram Combolist Works: A combolist is a plain list of usernames or emails paired with passwords, usually gathered from old breaches, malware logs, or phishing campaigns and reposted on Telegram for other criminals to reuse. Because there is no encryption, the data is ready to use the moment it is shared. Check If You Are Affected: HEROIC's free breach scanner checks your email against more than 400 billion leaked records, including small combolists like this one. Run a free scan to see if your credentials were exposed.
Breach Breakdown
305 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds