USA TEST Leak: What 111 Exposed Login Records Could Cost You
What the "USA TEST" Leak Could Cost the 111 People In It
In May 2026, HEROIC analysts found a small stealer log named "USA TEST" uploaded to a Telegram channel. The file contained 111 records, each pairing an email address with a plaintext password and the URL of the account it opens.
Why This Is Dangerous
A log this size might look insignificant next to headline-grabbing breaches, but for the 111 people in it, the risk is just as real. Each record hands an attacker a working password already matched to the exact site it logs into, with nothing left to guess.
What Was Exposed
- Email addresses
- Plaintext passwords
- URLs tied to each set of credentials
Why This Matters
For anyone in this log who reused their password on another account, the consequence is immediate exposure to credential stuffing and account takeover. Small logs like this one are often overlooked, which can make them even more dangerous since victims may never learn their data was exposed.
How Stealer Logs Work
Stealer malware infects a device through cracked software, fake downloads, or phishing attachments, then quietly copies saved browser passwords and autofill data. Even small batches, like the 111 records in "USA TEST", are compiled into files and shared through Telegram channels the same way larger leaks are.
Check If You Are Affected
HEROIC's free breach scanner checks your email against more than 400 billion breached records, no leak is too small to matter. Run a free scan to see if your credentials appear in this leak or any other known exposure.
Breach Breakdown
111 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds