The email.fr Leak Put 1,657 French Email Accounts on Telegram
HEROIC analysts found a combolist file tied to the email.fr domain, dated June 10, 2026, shared in a Telegram channel. It contains 1,657 records of email addresses, plaintext passwords, and the URLs of the accounts those credentials unlock. Why This Leak Is Dangerous: The passwords in this file are stored in plain text, so an attacker can read and use them immediately without any extra effort. Because the addresses are all tied to the email.fr domain, this list gives an attacker a focused set of targets rather than a random mix of accounts. What Was Exposed: - Email addresses - Plaintext passwords - URLs connecting each login to the email.fr service Why This Matters: Email accounts are frequently used to reset passwords on other services, so a compromised email.fr login can become a stepping stone into someone's banking, shopping, or social media accounts. Anyone in this list who reused their email.fr password elsewhere is at added risk of account takeover. How a Domain-Specific Combolist Like This Works: Attackers sometimes filter stolen credentials by email domain to build targeted lists for a specific provider, in this case email.fr, then share or sell that focused list in Telegram channels where buyers know exactly which service the credentials belong to. Check If You Are Affected: Run your email through HEROIC's free breach scanner, which checks against more than 400 billion leaked records, to see if your email.fr account was part of this leak, and change your password immediately if it was.
Breach Breakdown
1,657 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds