← Mother of All Breaches

2025 Global infostealer credential mega-compilation — ~16B login pairs publicized (June)

2025 16.0B records affected Share on X

Data compromised

Credential pairs and allied metadata from stealer ecosystems

Technical writeup

In June 2025, researchers and major outlets (Cybernews, Forbes, FIDO Alliance commentary, university cybersecurity briefings) publicized a colossal aggregated dump on the order of 16 billion username-password pairs sourced primarily from years of infostealer malware logs rather than a single company SQL breach. Narratives emphasized password hygiene, phishing resistance, and hardware-backed MFA because many brands appeared as “affected” through stolen client credentials rather than direct server compromise.

Root cause

Malware log aggregation and public redistribution—not one perimeter hack

References