Cybercriminals have released a massive archive of compromised data containing over 183 million email passwords, with Gmail users making up a significant portion of the leak. Experts warn that this is one of the largest password exposures in history, according to Forbes, citing the database Have I Been Pwned (HIBP).
The leaked database reportedly totals 3.5 terabytes of stolen credentials. The information was collected over the past year using infostealer malware — malicious software that secretly harvests login data from infected computers and smartphones.
The breach did not result from a direct hack of Google’s servers or other major platforms. Instead, it is a compilation of data from numerous smaller incidents.
Analysis revealed that around 92% of the passwords had appeared in previous leaks, but about 16.4 million entries are newly confirmed and still active. In addition to Gmail, affected platforms include Outlook, Yahoo, Apple, Facebook, Instagram, and hundreds of other services.
Stolen email and password combinations allow attackers to break into other accounts if users reuse the same credentials. This can lead to phishing, identity theft, and financial fraud.
Google has denied rumors of a direct Gmail breach but urged all users to perform a security checkup immediately.
Cybersecurity specialists recommend taking the following steps right away:
month
week
day