logo

Experimenting with Stealer Logs in Have I Been Pwned

ID: 9d070336-8d0a-5b80-911f-93c63e11e502

STIX ID: report--9d070336-8d0a-5b80-911f-93c63e11e502

Feed Name: Troy Hunt – Security Blog

Threat Score
85/100

Date Published: 2025-01-13

Date Updated: 2026-05-05

Author: Troy Hunt

...
...

Have I Been Pwned imported a massive corpus of infostealer logs (billions of rows, ~71 million impacted addresses, 220 million email–domain pairs, 167 million unique passwords) and is experimenting with features that let verified individuals and domain-owning organizations query which domains an email appears next to and add passwords to Pwned Passwords; the report highlights corporate exposure, potential for account takeover, scale of criminal resale, and cautions about the accuracy and limitations of stealer-log data.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.