Huge data leak exposes 149 million credentials without protection

A massive data breach has come to light, involving 149 million credentials left exposed online. The 98GB cache includes unique usernames and passwords from financial services, social media, and dating apps. The discovery highlights ongoing vulnerabilities in digital security.

The enormous cache of data, totaling 98GB, was found without any protective measures, making it easily accessible to potential bad actors. This leak encompasses credentials from various sectors, including financial services where users manage banking and investments, social media platforms used for daily communication, and dating apps that handle personal information.

Details emerged on January 23, 2026, underscoring the scale of the exposure: 149 million unique usernames and passwords. No encryption or safeguards were in place, amplifying the risk of identity theft, account takeovers, and financial losses for affected individuals.

Experts in cybersecurity have long warned about the dangers of unencrypted data dumps, but this incident serves as a stark reminder of how quickly such information can surface online. Users are advised to monitor their accounts and update passwords, though the full impact remains unclear without further details on the breach's origin.

The event raises questions about data handling practices across these industries, potentially prompting regulatory scrutiny.

Verwandte Artikel

Dramatic illustration of a darknet leak of Swedish government IT data by hackers, showing computer screens with source code, passwords, and personal files.
Bild generiert von KI

Schwedische Regierungs-IT-Daten auf dem Darknet geleakt

Von KI berichtet Bild generiert von KI

Eine Hackergruppe namens ByteToBreach hat sensible Informationen aus einem Regierungs-IT-System auf dem Darknet geleakt. Der Leak umfasst Quellcode, Passwörter und personenbezogene Daten einer von IT-Berater CGI Sweden verwalteten Plattform. Behörden wie Cert-SE bestätigen, dass sie von den Berichten Kenntnis haben, verweigern jedoch jeden Kommentar.

Researchers analyzing 10 million web pages have identified 1,748 active API credentials from 14 major providers exposed across nearly 10,000 websites, including those run by banks and healthcare providers. These leaks could enable attackers to access sensitive data or gain control over digital infrastructure. Nurullah Demir of Stanford University described the issue as very significant, affecting even major companies.

Von KI berichtet

Adult entertainment website Frivol has disclosed a data leak that may impact around 479,000 users. The breach involved an open database containing user details. The revelation was reported on February 25, 2026.

A TechRadar report states that over 29 million secrets were leaked on GitHub in 2025. The article suggests that AI is not helping and may be making the situation worse.

Von KI berichtet

Im Jahr 2026 sind Unternehmen in Kolumbien durchschnittlich 2.803 Cyberangriffen pro Woche ausgesetzt, wobei pro Vorfall potenzielle Verluste von bis zu 6,3 Millionen US-Dollar drohen. Jüngste Datenlecks bei Drittanbietern haben sensible Informationen von BBVA- und Nubank-Kunden sowie von Einrichtungen wie Supersalud und Dian offengelegt. Experten warnen vor der Anfälligkeit dieser schwachen Glieder in der Sicherheitskette.

Diese Website verwendet Cookies

Wir verwenden Cookies für Analysen, um unsere Website zu verbessern. Lesen Sie unsere Datenschutzrichtlinie für weitere Informationen.
Ablehnen