160,651 Records From the SunCloudNew Dump Just Hit the Dark Web
HEROIC analysts found a combolist labeled "SunCloudNew 1788 - 503 K ULP" that a Telegram user uploaded on 28-Jul-2026. The file contains 160,651 records of email and username and password credentials tied to accounts in the United States.
Why the SunCloudNew Dump Is Dangerous
A combolist of this size gives attackers a massive head start. Every one of the 160,651 entries already pairs a working email address with a plaintext password, so there is no cracking required, just automated tools testing the credentials against other sites at scale.
What Was Exposed
- Email Addresses
- Plaintext Passwords
- URLs
Why This Matters
With 160,651 credential pairs in circulation, this dump is large enough to fuel widespread credential stuffing attacks against banking, email, and shopping platforms. If your password shows up here and you have reused it anywhere else, attackers can use it to attempt account takeover, and from there move into financial fraud or identity theft.
How a Combolist Dump of This Size Forms
Large combolists like this one are typically compiled from multiple smaller breaches, phishing operations, and malware infections that get merged into a single file over time. Once a dump reaches this scale, it becomes valuable enough that a Telegram user will upload and circulate it widely, exposing far more people at once than a smaller, one-off leak.
Check If You Are Affected
With a leak this size, checking your own exposure is worth doing right away. HEROIC's free breach scanner searches a database of more than 400 billion leaked records, including large combolists like this one, so you can quickly find out if your email is affected.
Breach Breakdown
160,651 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds