The cvv190_cloud_5 Stealer Log Exposed 12,775 Emails and Passwords
On July 29, 2026, HEROIC analysts identified a stealer log named "cvv190_cloud_5" uploaded to a Telegram channel, containing 12,775 records of email addresses, plaintext passwords, and browser URLs. While the file name references payment card terminology, the confirmed data in this leak consists of email addresses, plaintext passwords, and URLs, not verified payment card numbers. Why This Is Dangerous: With 12,775 sets of plaintext credentials, attackers can immediately begin using this data without cracking or decrypting anything. Every entry pairs an email address with a working password and the site it belongs to. What Was Exposed: The confirmed leak includes email addresses, plaintext passwords, and the URLs associated with each account. No payment card data has been verified as part of this specific file, despite the naming convention used by the uploader. Why This Matters: Regardless of the file's name, 12,775 real login pairs in plaintext is enough to fuel credential stuffing attacks against email providers, banking sites, and online retailers. Password reuse is what turns a leak like this into an account takeover. How a Stealer Log Like This Works: Stealer logs are generated by malware that infects a device, often through pirated software or malicious downloads, then silently harvests saved browser passwords, autofill data, and session information. The data is compiled into a file, named here "cvv190_cloud_5," and distributed through Telegram channels used to trade stolen credentials. Check If You Are Affected: HEROIC's free breach scanner checks your email against more than 400 billion leaked records, including stealer logs like this one. Run a scan to see if your credentials are part of this leak.
Breach Breakdown
12,775 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds