{"id":430441,"date":"2026-01-24T14:56:11","date_gmt":"2026-01-24T14:56:11","guid":{"rendered":"https:\/\/www.newsbeep.com\/ca\/430441\/"},"modified":"2026-01-24T14:56:11","modified_gmt":"2026-01-24T14:56:11","slug":"48-million-gmail-usernames-and-passwords-leaked-online-again-2","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/ca\/430441\/","title":{"rendered":"48 Million Gmail Usernames And Passwords Leaked Online Again"},"content":{"rendered":"<p><img decoding=\"async\" class=\" top-image\" src=\"https:\/\/www.newsbeep.com\/ca\/wp-content\/uploads\/2026\/01\/1769227458_917_0x0.jpg\" alt=\"Gmail logo displayed on smartphone.\" data-height=\"1723\" data-width=\"2585\" fetchpriority=\"high\" style=\"position:absolute;top:0\"\/><\/p>\n<p>48 million Gmail login credentials exposed in massive leak.<\/p>\n<p>SOPA Images\/LightRocket via Getty Images<\/p>\n<p>Updated January 24 with further analysis from cybersecurity and privacy experts following the news that 48 million Gmail usernames and passwords have been found within a publicly exposed criminal database of some 149 million compromised credentials.<\/p>\n<p>A highly respected veteran security researcher has confirmed that a database of 149 million compromised credentials, including those for an estimated 48 million Gmail accounts, has been leaked online. \u201cThe publicly exposed database was not password-protected or encrypted,\u201d Jeremiah Fowler said, adding that the database of unique logins and passwords totalled \u201ca massive 96 GB of raw credential data.\u201d Here\u2019s what we know so far, and what action you need to take.<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-1\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2026\/01\/22\/lastpass-issues-critical-warning-for-users---password-attacks-underway\/\" target=\"_blank\" aria-label=\"LastPass Issues Critical Warning For Users \u2014 Password Attacks Underway\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2026\/01\/22\/lastpass-issues-critical-warning-for-users---password-attacks-underway\/\" rel=\"nofollow noopener\">ForbesLastPass Issues Critical Warning For Users \u2014 Password Attacks UnderwayBy Davey Winder<\/a>149 Million Login Credentials Exposed In Leak \u2014 Including An Estimated 48 Million Gmail Accounts<\/p>\n<p>It\u2019s not been the greatest start to a new year when it comes to password security. The LastPass password manager has <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2026\/01\/22\/lastpass-issues-critical-warning-for-users---password-attacks-underway\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2026\/01\/22\/lastpass-issues-critical-warning-for-users---password-attacks-underway\/\" target=\"_self\" aria-label=\"issued a warning\" rel=\"nofollow noopener\">issued a warning<\/a> for millions of users as attacks have been confirmed as underway, <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2026\/01\/16\/12-billion-linkedin-users-put-on-alert-after-policy-violation-attacks\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2026\/01\/16\/12-billion-linkedin-users-put-on-alert-after-policy-violation-attacks\/\" target=\"_self\" aria-label=\"LinkedIn users\" rel=\"nofollow noopener\">LinkedIn users<\/a> are alsoon alert as policy violation scammers target account passwords, and now comes the breaking news that a whopping great 149 million compromised credentials have been exposed online in an unprotected database.<\/p>\n<p>According to cybersecurity researcher Jeremiah Fowler, who uncovered the leaked database and has published <a class=\"color-link\" href=\"https:\/\/www.expressvpn.com\/blog\/149m-infostealer-data-exposed\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/www.expressvpn.com\/blog\/149m-infostealer-data-exposed\/\" aria-label=\"a report\">a report<\/a> sharing his findings, the database contained a total of 149,404,754 unique logins and password.<\/p>\n<p>It should be noted that this is not a new breach of the services involved, and most likely is a database made up of data from <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/28\/gmail-passwords-confirmed-as-part-of-183-million-account-data-breach\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/28\/gmail-passwords-confirmed-as-part-of-183-million-account-data-breach\/\" target=\"_self\" aria-label=\"past breaches and infostealer logs\" rel=\"nofollow noopener\">past breaches and infostealer logs<\/a>.<\/p>\n<p>\u201cI saw thousands of files that included emails, usernames, passwords, and the URL links to the login or authorization for the accounts,\u201d Fowler has confirmed, adding that the database illustrates that cybercriminals themselves are \u201cnot immune to data breaches.\u201d<\/p>\n<p>Fowler has estimated the number of accounts for major services that had their compromised credentials included in the leaked database, with the most, by a long chalk, seemingly belonging to Gmail users.<\/p>\n<p>Here are the totals provided by Fowler, in order of volume:<\/p>\n<p>Gmail &#8211; 48 millionFacebook &#8211; 17 millionInstagram &#8211; 6.5 millionYahoo &#8211; 4 millionNetflix &#8211; 3.4 millionOutlook &#8211; 1.5 million<\/p>\n<p>The good news is that the database is no longer available online, although it took more than a month for Fowler to get it taken down.<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-3\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/12\/04\/has-your-gmail-password-been-hacked-check-now-heres-how\/\" target=\"_blank\" aria-label=\"Has Your Gmail Password Been Hacked? Check Now, Here\u2019s How\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/12\/04\/has-your-gmail-password-been-hacked-check-now-heres-how\/\" rel=\"nofollow noopener\">ForbesHas Your Gmail Password Been Hacked? Check Now, Here\u2019s HowBy Davey Winder<\/a>Cybersecurity And Privacy Experts Speak Out On Credentials Database Exposure Impacting Gmail And Other Platforms<\/p>\n<p>Matt Conlon, CEO of Cytidel, has called it a treasure trove for anyone with malicious intent. \u201cInfo stealers have seen a significant rise in prevalence over the past few years,\u201d Conlon said, \u201cand a data breach like this highlights just how widespread this issue is.\u201d<\/p>\n<p>Meanwhile, Boris Cipot, a senior security engineer at Black Duck, said that \u201cthere is no way to know how much damage or data leakage occurred before it was removed,\u201d adding that \u201cthe database also contained logins for government, banking, and streaming services, making it a highly valuable target for cybercriminals.\u201d<\/p>\n<p>\u201cFowler believes the data was collected by infostealing malware, also known as a <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/01\/20\/critical-hidden-email-hack-warning-issued-for-gmail-and-outlook-users\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/01\/20\/critical-hidden-email-hack-warning-issued-for-gmail-and-outlook-users\/\" target=\"_self\" aria-label=\"keylogger\" rel=\"nofollow noopener\">keylogger<\/a>, which infects user devices and records their inputs,\u201d Cipot said. \u201cBecause the database was still growing during his investigation, this strongly suggests the malware is still active.\u201d<\/p>\n<p>Mayur Upadhyaya, CEO at APIContext, told me that the exposed database is a \u201cstark reminder\u201d that credentials don\u2019t just get stolen, but they also get reused. \u201cAnd that\u2019s where the real risk lies,\u201d Upadhyaya said, \u201conce login and password pairs are exposed, even from criminal infrastructure, they become fuel for credential stuffing: automated attempts to reuse those same credentials across other applications and services.\u201d<\/p>\n<p>Consumer privacy advocates, such as Chris Hauk from Pixel Privacy, said that \u201cthe exposure of such a huge number of credentials poses a significant risk to users who are not aware of the breach and to what extent they are exposed.\u201d Although once again, I should state that this does not appear to be a new breach of anything, per se, rather a compilation of previously compromised credentials. \u201cWhile it may be too soon to have this information included in the <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/12\/04\/has-your-gmail-password-been-hacked-check-now-heres-how\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/12\/04\/has-your-gmail-password-been-hacked-check-now-heres-how\/\" target=\"_self\" aria-label=\"HaveIBeenPwned\" rel=\"nofollow noopener\">HaveIBeenPwned <\/a>website&#8217;s extensive database,\u201d Hauk said, \u201cI still strongly recommend that users visit the site and enter their email address to determine whether their information has been exposed in previous data breaches.\u201d<\/p>\n<p>Hauk also recommended that consumers make use of a password manager that can provide \u201cwarnings about password reuse or if a login has been exposed in a breach,\u201c in order to \u201cmake it easy to guard against password reuse, and to update passwords when they need to be changed.&#8221;<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-4\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2026\/01\/07\/these-3-passwords-can-get-you-hacked-michael-football-and-superman\/\" target=\"_blank\" aria-label=\"These 3 Passwords Can Get You Hacked: Michael, Football And Superman\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2026\/01\/07\/these-3-passwords-can-get-you-hacked-michael-football-and-superman\/\" rel=\"nofollow noopener\">ForbesThese 3 Passwords Can Get You Hacked: Michael, Football And SupermanBy Davey Winder<\/a>Google Says It Will Force Password Resets When Exposed Gmail Credentials Are Identiifed<\/p>\n<p>I reached out to my contacts at Google and Gmail for a statement and a spokesperson told me: &#8220;We are aware of reports regarding a dataset containing a wide range of credentials, including some from Gmail. This data represents a compilation of &#8216;infostealer\u2019 logs\u2014credentials harvested from personal devices by third-party malware\u2014that have been aggregated over time. We continuously monitor for this type of external activity and have automated protections in place that lock accounts and force password resets when we identify exposed credentials.&#8221; <\/p>\n<p>So, to reiterate, this is not a new breach; it impacts multiple services, and is most likely a compilation of existing compromised credentials. Gmail just happens to be the one that is featured most, by some margin, within it. So don\u2019t panic, but do ensure you have unique passwords and ideally make use of the Google passkey function instead.<\/p>\n","protected":false},"excerpt":{"rendered":"48 million Gmail login credentials exposed in massive leak. SOPA Images\/LightRocket via Getty Images Updated January 24 with&hellip;\n","protected":false},"author":2,"featured_media":224487,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[49,48,178966,178965,178961,26111,178962,178960,178964,178963,178967,61],"class_list":{"0":"post-430441","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-technology","8":"tag-ca","9":"tag-canada","10":"tag-credentials-leaked","11":"tag-expressvpn","12":"tag-gmail-login","13":"tag-gmail-password","14":"tag-gmail-password-leak","15":"tag-gmailleak","16":"tag-has-gmail-been-hacked","17":"tag-has-my-gmail-password-been-hacked","18":"tag-password","19":"tag-technology"},"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts\/430441","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/comments?post=430441"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts\/430441\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/media\/224487"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/media?parent=430441"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/categories?post=430441"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/tags?post=430441"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}