• bitcoinBitcoin(BTC)$81,396.004.25%
  • ethereumEthereum(ETH)$2,647.085.68%
  • tetherTether(USDT)$1.000.04%
  • binancecoinBNB(BNB)$765.171.89%
  • rippleXRP(XRP)$1.426.36%
  • usd-coinUSDC(USDC)$1.000.02%
  • solanaSolana(SOL)$111.885.58%
  • tronTRON(TRX)$0.3379230.37%
  • zcashZcash(ZEC)$1,563.215.71%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.030.23%
  • HyperliquidHyperliquid(HYPE)$92.203.91%
  • dogecoinDogecoin(DOGE)$0.0873032.52%
  • moneroMonero(XMR)$578.886.51%
  • whitebitWhiteBIT Coin(WBT)$83.433.70%
  • RainRain(RAIN)$0.0139788.12%
  • USDSUSDS(USDS)$1.000.01%
  • chainlinkChainlink(LINK)$12.485.52%
  • cardanoCardano(ADA)$0.2236114.22%
  • leo-tokenLEO Token(LEO)$8.90-0.01%
  • stellarStellar(XLM)$0.1925602.79%
  • uniswapUniswap(UNI)$9.192.60%
  • bitcoin-cashBitcoin Cash(BCH)$248.800.23%
  • Ethena USDeEthena USDe(USDE)$1.000.05%
  • nearNEAR Protocol(NEAR)$3.655.40%
  • daiDai(DAI)$1.000.00%
  • litecoinLitecoin(LTC)$57.122.86%
  • CantonCanton(CC)$0.110162-0.31%
  • USD1USD1(USD1)$1.000.06%
  • avalanche-2Avalanche(AVAX)$9.0013.36%
  • the-open-networkGram (prev. Toncoin)(GRAM)$1.370.25%
  • hedera-hashgraphHedera(HBAR)$0.0793712.55%
  • suiSui(SUI)$0.835.31%
  • Global DollarGlobal Dollar(USDG)$1.00-0.01%
  • shiba-inuShiba Inu(SHIB)$0.0000050.45%
  • BittensorBittensor(TAO)$262.526.05%
  • crypto-com-chainCronos(CRO)$0.059280-0.16%
  • MemeCoreMemeCore(M)$1.28-2.12%
  • paypal-usdPayPal USD(PYUSD)$1.000.02%
  • tether-goldTether Gold(XAUT)$4,370.86-0.23%
  • Circle USYCCircle USYC(USYC)$1.140.03%
  • okbOKB(OKB)$117.072.14%
  • Ripple USDRipple USD(RLUSD)$1.000.00%
  • BlackRock USD Institutional Digital Liquidity FundBlackRock USD Institutional Digital Liquidity Fund(BUIDL)$1.000.00%
  • Ondo US Dollar YieldOndo US Dollar Yield(USDY)$1.150.06%
  • aaveAave(AAVE)$145.167.78%
  • AsterAster(ASTER)$0.760.59%
  • mantleMantle(MNT)$0.612.23%
  • OndoOndo(ONDO)$0.4028554.18%
  • MorphoMorpho(MORPHO)$2.7618.17%
  • Pump.funPump.fun(PUMP)$0.004109-3.13%
TradePoint.io
  • Main
  • AI & Technology
  • Stock Charts
  • Market & News
  • Business
  • Finance Tips
  • Trade Tube
  • Blog
  • Shop
No Result
View All Result
TradePoint.io
No Result
View All Result

183M email passwords exposed in data leak — including millions of Gmail accounts — here’s how to check if yours is safe

October 27, 2025
in Business
Reading Time: 4 mins read
A A
183M email passwords exposed in data leak — including millions of Gmail accounts — here’s how to check if yours is safe
ShareShareShareShareShare

A massive leak has exposed more than 183 million email passwords, including tens of millions linked to Gmail accounts, in what cybersecurity analysts are calling one of the biggest credential dumps ever uncovered.

YOU MAY ALSO LIKE

Paramount, California AG Rob Bonta hold advanced settlement talks: report

Ryanair CEO apologizes for comparing European airline rivals to ‘rapists’ in wild rant

The stolen trove containing 3.5 terabytes of data surfaced online this month, according to Troy Hunt, the Australian security researcher who runs the breach-notification site Have I Been Pwned.

Hunt stated that the information originated from a yearlong sweep of “infostealer” platforms — malware networks that secretly siphon usernames, passwords and website addresses from infected devices.

The data consists of both “stealer logs and credential stuffing lists,” Hunt wrote in a blog post.

A massive breach has exposed more than 183 million email passwords, including tens of millions linked to Gmail accounts. ajayptp – stock.adobe.com

“Someone logging into Gmail ends up with their email address and password captured against gmail.com.”

The new dataset contained 183 million unique accounts, including roughly 16.4 million addresses never seen before in any prior breach, Hunt wrote.

To find out if their credentials are among those compromised, users can visit HaveIBeenPwned.com and enter their email addresses. If flagged, the site provides the date and nature of the breach.

Security firm Synthient, which collected the logs, said the records were drawn from criminal marketplaces and underground Telegram channels where hackers share stolen credentials in bulk.

Analyst Benjamin Brundage of Synthient said the findings show the staggering reach of infostealer malware.

According to researchers, most of the entries are recycled from older breaches, but millions of newly compromised Gmail accounts were verified when affected users confirmed that exposed passwords still matched their active credentials.

The stolen trove surfaced online this month. Jess rodriguez – stock.adobe.com

The leak, first detected in April and made public last week, covers not only Gmail data, but also login information for Outlook, Yahoo and hundreds of other web services.

The cache, Hunt said, shows how stolen credentials often reappear across forums for years, giving criminals fresh opportunities to exploit reused passwords.

Hunt said the breaches did not involve a direct hack of Gmail; it employed malware on users’ computers that captured their logins.

Security experts said that’s why the impact of the breaches extends far beyond email.

Many victims reuse passwords across multiple sites — from cloud storage and banking to social media — enabling attackers to infiltrate victims’ entire digital lives through “credential stuffing,” the automated process of testing stolen username–password pairs on multiple platforms.

“Reports of a Gmail security ‘breach’ impacting millions of users are entirely inaccurate and incorrect,” a Google spokesperson told The Post.

“They stem from a misreading of ongoing updates to credential theft databases, known as infostealer activity, whereby attackers employ various tools to harvest credentials versus a single, specific attack aimed at any one person, tool or platform.”

“We encourage users to follow best practices to protect themselves from credential theft, such as turning on 2-step verification and adopting passkeys as a stronger and safer alternative to passwords, and resetting passwords when they are exposed in large batches like this.”

To find out if their credentials are among those compromised, users can visit HaveIBeenPwned.com and enter their email address. Have I Been Pwned

Cybersecurity experts worldwide urged Gmail users to act right away.

“If you’re one of the 183 million people affected, you need to change your email password immediately and enable two-factor authentication if you haven’t already,” Hunt said.

British security analyst Michael Tigges of Huntress told Yahoo News that while Gmail itself wasn’t directly breached, the attack should be a wake-up call for anyone who relies on their web browsers to store their credentials.

“The event here is not one of any specific data breach, but instead aggregated and uploaded data from millions of stealer malware logs,” Tigges said.

“This underscores the importance of avoiding shared credentials across services and highlights why it is important to have excellent visibility on both your personal email security, as well as business email security.”

Fellow security blogger Graham Cluley told the Daily Mail that people should “always use different passwords for different online accounts” and store them in encrypted password managers rather than browsers, which malware can easily scrape.

Google’s own Password Manager Checkup tool also scans saved logins in Chrome and warns of weak, reused or breached passwords. The company said it automatically prompts password resets when large credential dumps are detected.

Researchers noted that most of the stolen credentials were likely harvested through fake software downloads, phishing attachments, or browser extensions. Victims often have no idea their devices were infected.

A Google spokesperson confirmed the company is aware of the leak and is taking steps to safeguard users. Sundry Photography – stock.adobe.com

The most important step is prevention, Tigges said.

“Make sure your anti-virus is up to date and that you’re downloading software from reputable sources,” he said.

“These credentials were obtained primarily through ‘stealer’ type malware; prevention is the chief mitigation.”

While the scale of the data dump appears to be unprecedented, Hunt emphasized that the real threat comes from complacency.

“Reusing passwords is a recipe for disaster,” he explained.

Experts warned that attackers could weaponize the database for months or years by selling verified Gmail logins to fraud networks.

Credit: Source link

ShareTweetSendSharePin

Related Posts

Paramount, California AG Rob Bonta hold advanced settlement talks: report
Business

Paramount, California AG Rob Bonta hold advanced settlement talks: report

September 18, 2026
Ryanair CEO apologizes for comparing European airline rivals to ‘rapists’ in wild rant
Business

Ryanair CEO apologizes for comparing European airline rivals to ‘rapists’ in wild rant

September 18, 2026
Inside the phony, incestuous web of woke AI ‘watchdogs’ that Anthropic claims will save us from an AI apocalypse
Business

Inside the phony, incestuous web of woke AI ‘watchdogs’ that Anthropic claims will save us from an AI apocalypse

September 18, 2026
LA Review of Books spikes interview with pro-Israel professor Shai Davidai
Business

LA Review of Books spikes interview with pro-Israel professor Shai Davidai

September 18, 2026
Next Post
Relative of hostage still in Gaza says brother-in-law is a ‘man of peace’ who ‘deserves to be free’

Relative of hostage still in Gaza says brother-in-law is a ‘man of peace’ who ‘deserves to be free’

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
Protalix BioTherapeutics, Inc. (PLX) Presents at Morgan Stanley 24th Annual Global Healthcare Conference Transcript

Protalix BioTherapeutics, Inc. (PLX) Presents at Morgan Stanley 24th Annual Global Healthcare Conference Transcript

September 16, 2026
Current with Christine Romans – Sept. 3 | NBC News NOW

Current with Christine Romans – Sept. 3 | NBC News NOW

September 18, 2026
100-year-old woman still bowls and volunteers

100-year-old woman still bowls and volunteers

September 16, 2026

About

Learn more

Our Services

Legal

Privacy Policy

Terms of Use

Bloggers

Learn more

Article Links

Contact

Advertise

Ask us anything

©2020- TradePoint.io - All rights reserved!

Tradepoint.io, being just a publishing and technology platform, is not a registered broker-dealer or investment adviser. So we do not provide investment advice. Rather, brokerage services are provided to clients of Tradepoint.io by independent SEC-registered broker-dealers and members of FINRA/SIPC. Every form of investing carries some risk and past performance is not a guarantee of future results. “Tradepoint.io“, “Instant Investing” and “My Trading Tools” are registered trademarks of Apperbuild, LLC.

This website is operated by Apperbuild, LLC. We have no link to any brokerage firm and we do not provide investment advice. Every information and resource we provide is solely for the education of our readers. © 2020 Apperbuild, LLC. All rights reserved.

No Result
View All Result
  • Main
  • AI & Technology
  • Stock Charts
  • Market & News
  • Business
  • Finance Tips
  • Trade Tube
  • Blog
  • Shop

© 2023 - TradePoint.io - All Rights Reserved!