USA Combolist Leak: 220 Plaintext Passwords Exposed Online
HEROIC threat analysts identified a combolist circulating on Telegram in June 2026, uploaded under the label "USA." The file, posted on 14 June 2026, contains 220 records pairing email addresses with plaintext passwords and the URLs of the accounts they unlock, the standard ingredients of a credential-stuffing list.
Why This USA Combolist Leak Is Dangerous
Because the passwords in this file are stored in plaintext, anyone who downloads it can use the credentials immediately, no cracking or decryption required. Each record also includes the URL of the site the login belongs to, so an attacker knows exactly where to try each email and password pair. That combination turns a small list into a ready-made toolkit for breaking into accounts that share the same login details.
What Was Exposed in the USA Combolist
- Email addresses
- Plaintext passwords
- URLs tied to each set of credentials
Why a 220-Record Leak Still Matters
A file this size can look minor next to breaches with millions of rows, but the risk to each person listed is identical. If any of these 220 people reused their email and password combination on a banking site, work account, or email provider, an attacker can walk straight in through credential stuffing. From there, account takeover, identity theft, and financial fraud all become possible using nothing more than the information in this one file.
How Combolists Like This Get Built
A combolist is not the result of one company being hacked. Instead, it is a compiled file of email-and-password pairs pulled together from older leaks, malware infections, or manual collection, then bundled and shared on channels like Telegram. Because the passwords are plaintext, the person distributing the file did no additional work to make them usable, making combolists a low-effort, high-impact resource for criminals running automated login attempts across the internet.
Check If Your Email Is In This Leak
The fastest way to know if you were caught up in the USA combolist, or any of the thousands of other leaks like it, is to run a free check with HEROIC. Our breach scanner searches a database of more than 400 billion leaked records, including data from stealer logs and combolists just like this one, so you can find out in seconds and take action before someone else does.
Breach Breakdown
220 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds