Inside the 2K Hotmail Combolist: 1,951 Logins Up for Grabs
HEROIC analysts identified a combolist titled 2K HOTMAIL ACCESS uploaded to Telegram on 29-Jan-2025. Despite the '2K' in its name, the file actually contains 1,951 verified records, each pairing a Hotmail email address with a plaintext password and a linked URL. Why This Is Dangerous: These credentials are stored in plaintext, so there is no encryption an attacker needs to break before using them. Anyone who acquires this file can start testing logins against Hotmail and other services within minutes. What Was Exposed: - Hotmail email addresses - Plaintext passwords - URLs tied to each account Why This Matters: Hotmail and Outlook accounts frequently serve as the recovery email for banking apps, social media, and shopping accounts. If your Hotmail login is inside this file and you have reused that password anywhere, an attacker could use it to reset passwords on your other accounts, leading to account takeover, financial loss, or identity theft. How a Combolist Like This Works: A combolist is a text file listing stolen usernames and passwords side by side, assembled from sources like phishing pages, malware infections, or older data breaches. Criminals specifically target one email provider at a time, as happened here with Hotmail, because focused lists sell better and are easier for buyers to use against that provider's users. Check If You Are Affected: If you have a Hotmail or Outlook account, check it against HEROIC's free breach scanner, which searches more than 400 billion leaked records, to see whether your credentials were part of this combolist or any other exposure.
Breach Breakdown
1,951 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds