2025 Global infostealer credential mega-compilation — ~16B login pairs publicized (June)
Data compromised
Credential pairs and allied metadata from stealer ecosystems
Technical writeup
In June 2025, researchers and major outlets (Cybernews, Forbes, FIDO Alliance commentary, university cybersecurity briefings) publicized a colossal aggregated dump on the order of 16 billion username-password pairs sourced primarily from years of infostealer malware logs rather than a single company SQL breach. Narratives emphasized password hygiene, phishing resistance, and hardware-backed MFA because many brands appeared as “affected” through stolen client credentials rather than direct server compromise.
Root cause
Malware log aggregation and public redistribution—not one perimeter hack
References
- https://cybernews.com/security/billions-credentials-exposed-infostealer-data-leak/
- https://www.forbes.com/sites/daveywinder/2025/06/20/16-billion-apple-facebook-google-passwords-leaked---change-yours-now/
- https://fidoalliance.org/national-world-16-billion-passwords-leaked-how-to-protect-yourself-as-cybersecurity-experts-warn-of-repeat-attacks/
- https://today.uconn.edu/2025/06/a-blueprint-for-mass-cybercrime/
- https://www.bleepingcomputer.com/news/security/no-the-16-billion-credentials-leak-is-not-a-new-data-breach/