Telegram Stealer Log ‘Hotmail 4’ Leaks 2,841 Email Passwords
A Telegram user uploaded a stealer log labeled "Hotmail 4" in June 2026, exposing 2,841 records of email addresses, plaintext passwords, and login URLs pulled from malware-infected devices. This is not a breach of Microsoft's or Hotmail's own servers, it is a collection of credentials that infected computers happened to have saved for Hotmail and other accounts, stolen directly off the victims' machines.
Why This Matters Even Though Hotmail Was Not Hacked
It's easy to read a name like "Hotmail" and assume the email provider itself was compromised. It wasn't. This log is a byproduct of malware sitting on individual computers, quietly copying whatever passwords the browser had saved, including logins for Hotmail and Outlook accounts. The risk here comes from the infected device, not from any failure at Microsoft.
What Was Exposed
- Email addresses
- Plaintext passwords
- URLs of the associated login pages
Why This Matters
Because these passwords are stored in plaintext alongside the exact login page they open, an attacker doesn't need to crack anything, they can just log in. That access to an email account is often the master key to everything else: password reset links, two-factor codes, banking notifications, and personal messages. Reused passwords make credential stuffing, account takeover, identity theft, and financial fraud far easier once an email inbox is compromised.
How This Stealer Log Was Created
Stealer malware typically spreads through cracked software, malicious ads, or fake downloads. Once installed, it silently pulls saved passwords, autofill entries, and browser history from the infected device and packages them into a log file. These files are then shared or sold on Telegram, often labeled by the type of accounts they contain, like "Hotmail 4," to help buyers find the credentials they want to exploit.
Check If You Are Affected
If your device was infected and your Hotmail credentials were saved in your browser, you could be one of these 2,841 exposed records. HEROIC's free breach scanner checks your email against a database of more than 400 billion leaked records, including stealer logs like this one, so you can find out immediately and secure your account before someone else logs in first.
Breach Breakdown
2,841 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds