惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

罗磊的独立博客
Recent Announcements
Recent Announcements
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
有赞技术团队
有赞技术团队
J
Java Code Geeks
T
The Blog of Author Tim Ferriss
MyScale Blog
MyScale Blog
人人都是产品经理
人人都是产品经理
aimingoo的专栏
aimingoo的专栏
U
Unit 42
The GitHub Blog
The GitHub Blog
云风的 BLOG
云风的 BLOG
T
Tailwind CSS Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
酷 壳 – CoolShell
酷 壳 – CoolShell
博客园 - 三生石上(FineUI控件)
Apple Machine Learning Research
Apple Machine Learning Research
小众软件
小众软件
Hugging Face - Blog
Hugging Face - Blog
博客园 - 司徒正美
腾讯CDC
I
InfoQ
GbyAI
GbyAI
博客园_首页

Forbes - Consumer Tech

This Unhackable Quantum Navigation System Is The Size Of A Loaf Of Bread Apple At 50 — A Leadership Shift And An AR Future We Are Under-Investing In Robotics ... 90% Of Humanoid Robots Are Made In China Ditch The Apple White: Beats Expands Colorful Cable Line-Up With New 10-Foot Option Satechi’s New ChargeView 140W Desktop GaN Charger With Real-Time Display The Hasselblad In Your Pocket: Oppo’s Find X9 Ultra Challenges The Galaxy S26 Ultra There's No Such Thing As Brain Honey How AI Agents Could Rebuild Fashion’s Visual Production Layer QClaw Goes Global. The Agent Built Itself In 5 Days Apple’s Tim Cook Exit Hides A $4 Trillion Agentic AI Power Move EZQuest Reveals A New Line Of Pro Series USB-C Hubs For MacBook Neo Samsung Galaxy Z TriFold 2 Already In The Works, Report Claims Apple Revealed New Siri Release Date For iPhone, Latest Report Claims How Arcani’s HARK Is Designed For Modern Battlefield Acoustics The Newest Trend In Tech Embraces Femininity And Fun Samsung’s 75R95H Ushers In A New World Of LCD TVs New Apple iPhone Fold Design Pushes Smartphone Rivals To Go Wider And Taller iPhone 18 Pro Report: Four New Colors Leak As Apple Cancels Popular Shade Nothing’s Design-Led Strategy: Carl Pei Reveals The Tech Brand’s Philosophy iOS 26.5 Release Date: When To Expect Your iPhone Messaging Upgrade Google Pixel And Highsnobiety Build A Talent Pipeline For Fashion Android Circuit: Samsung Raises Galaxy Prices, Oppo Pad Mini Teased, Microsoft Closing Outlook App Apple Loop: iPhone Fold Launch Dates, iPad Air Upgrade, iPhone 18 Pro Specs Comcast $117.5 Million Breach Settlement — Are You Eligible? Amazfit Cheetah 2 Pro Takes Aim At The Garmin Audience Disney’s Launches ‘Infinity Vision’ Certification For Premium Theaters SoundPeats Reveals New Air6 HS Semi-Open Wireless Earbuds Amazon’s $11.57 Billion Leap Into Space: A Challenge To Starlink Meta Quest 3 Hit With $100 Price Increase Backblaze Stops Backing Up Dropbox And Others—Calls It An Improvement
124 Million Unique Passwords Exposed In New Infostealer L...
Davey Winder · 2026-06-18 · via Forbes - Consumer Tech
PAsswrod in yellow, highlighted amiong a background of blue zeros, ones and padlocks.

124 million unique password confirmed in new infostealer database.

getty

A dataset containing more than 56 million email addresses and 124 million unique passwords was added to the Have I Been Pwned database of compromised credentials on June 15. The staggering volume of stolen passwords was compiled from “hundreds of millions of stealer log records,” according to HIBP. This latest dataset, however, has not resulted from a new breach of any specific service or platform. Instead, it is a compilation of credentials from previous infostealer malware attacks, all in one place, available as a corpus of login data for cybercriminals to access and use in new exploits. Here’s what you need to know and do.

ForbesMy Password Has Been Stolen—What Happens Next?

Millions Of Passwords Included In New Infostealer Log Compilation

Infostealers are a kind of malware designed, as the name would suggest, to steal information; specifically, login credentials including passwords and authentication tokens. That there are so many logs of successful infostealer attacks is hardly surprising when you consider that malware-as-a-service platforms have lowered the barrier to entry for such threats to the point where anyone willing to pay a fee can execute them. According to KELA, a threat intelligence platform, almost 4 million unique devices were infected with infostealer malware during 2025, collectively yielding 347.5 million compromised credentials. When you added in compromised credentials from sources including databases of infostealer logs, however, KELA put that total at 2.86 billion records in all.

Although it has not been disclosed precisely where the new dataset of infostealer logs originated or which malware was used in the original attacks, the fact that there are 124 unique passwords and 56 million unique emails should be cause for concern. This type of information can be used in what are known as credential stuffing attacks, where cybercriminals use software to try known legitimate passwords against multiple accounts associated with any given email address. If you have used the same password across different accounts or services that have been compromised in an attack on one of them, even if you have since changed your details for logging into the breached account, they are all now at risk if included in this latest corpus of stolen credential information.

Check your passwords now at HIBP

Davey Winder

HIBP recommended that you either search the Pwned Passwords database for specific passwords or use the HIBP dashboard to view any records that have been aligned with your email address. If any passwords are found to have been included, then you should change them immediately, assuming you have not done so already, if it is an old breach that you were already aware of, and apply two-factor authentication if it is available for your account.

To which I would add, drawing on more than 35 years of cybersecurity experience, use a password manager: this will enable you to employ strong and unique passwords without needing to remember them all. And finally, switch to using a passkey if the option is available, as they are much harder to compromise and will not appear in these kinds of infostealer log collections.