Global Credential Dump
24B credentials exposed via infostealer logs
2026 continues the year-over-year growth trend in confirmed disclosures. The list below updates as new breaches are reported by Verizon DBIR partners and major security news outlets.
24B credentials exposed via infostealer logs
73K government accounts and 643K messages stolen
62.2M SSNs and health records exposed
Regulatory filings and credentials stolen by ShinyHunters
SSNs and bank data stolen in month-long intrusion
SSNs, biometrics and medical records confirmed stolen
A new data-extortion group called Helix is using identity-focused tactics such as voice phishing (vishing), device code phishing, and multi-factor authentication (MFA) abuse to steal data from SharePoint environments. [.
Hackers exploited a zero-day vulnerability in a third-party system to access a KDDI email system for ISPs. The post 12 Million Impacted by Data Breach at Japanese Telco KDDI appeared first on SecurityWeek.
Employee SSNs, banking, tax data stolen
1.8M records with SSNs and biometrics stolen
56M unique emails and 124M passwords indexed on HIBP
Hundreds of thousands of health records exposed publicly
HSIN platform breached, national security data exposed
3M hunting and fishing license records exposed
430K customer records stolen by unauthorized third party
Archived senior care patient records accessed
Employee PII stolen via SharePoint zero-day
World Cup security intel exposed via HSIN platform
30M student and staff records stolen
3.1TB stolen via Oracle PeopleSoft zero-day
5.5M unique emails and PII leaked after breach
Employee SSNs and bank data stolen via Oracle zero-day
24B stolen credentials exposed online