The HQ Hotmail Combo Neo3690: 4,734 Stolen Login Credentials Leaked
In January 2025, HEROIC analysts identified a combolist named "HQ Hotmail Combo Neo3690" circulating on Telegram. The file contained 4,734 records of email addresses paired with plaintext passwords, marketed as high quality by the uploader. Why This Is Dangerous: Files marketed as HQ, or high quality, typically mean the uploader has already verified that the credentials still work. That verification step makes this list more dangerous than a random dump, since attackers can be reasonably confident the logins are live. What Was Exposed: The Neo3690 file contains email addresses, plaintext passwords, and URLs associated with the accounts. Why This Matters: A verified email and password combo can be used immediately for account takeover, whether that means logging into the inbox itself, resetting passwords on linked accounts, or using the email to pass identity checks elsewhere. Reused passwords make the damage spread even further, opening the door to credential stuffing across banking and shopping sites. How Combolists Like This Are Made: Sellers compile combolists from older breaches, then filter or check the credentials against live login pages to remove dead entries before marking the file as HQ. What's left is a smaller but far more dangerous list of confirmed, working logins. Check If You Are Affected: If your Hotmail or Outlook account might be part of the Neo3690 combo, don't leave it to chance. HEROIC's free breach scanner checks your email against more than 400 billion leaked records so you know exactly where you stand.
Breach Breakdown
4,734 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds