Sunday, April 27, 2025
HomePassword AttacksBeware!! 15 Billion Stolen Username & Passwords for Sale On the Dark...

Beware!! 15 Billion Stolen Username & Passwords for Sale On the Dark Web

Published on

SIEM as a Service

Follow Us on Google News

New research indicates that more than 15 billion username and passwords are circulated on the dark web. This exposed credentials would result in account compromise.

Account Takeover (known as ATO) is a malicious activity in which attackers take over legitimate user’s online accounts.

We rely on passwords to safeguard our online sensitive data such as our financial documents, personal information, and other sensitive documents.

- Advertisement - Google News

Attackers target all types of your online accounts not only limited to e-commerce or financial accounts, but they also use to target all types of accounts including streaming and cable TV subscriptions to VPNs and adult websites.

15 Billion Stolen Credentials

According to the report “From Exposure to Takeover” published by Digital Shadows Photon Research Team, more than 15 billion credentials are circulated in the dark web have yielded a 300 percent increase in stolen credentials since 2018.

The stolen credentials found to be harvested from 100,000-plus discrete breaches, among that 5 billion of them are unique.

Unsurprisingly banking and financial credentials are highly targeted, those credentials are found in huge volumes.

Researchers also spotted “some criminal advertisements for domain administrator accesses (login details, credentials or sensitive files from an organization or individual’s machine, used to access systems/infrastructure, data, bank accounts, and/or other accounts)”

Those credentials result in a simple account to entire organization compromise, they are “sold or auctioned for an average of $3,139 and up to $140,000.”

Also, domain administrator access ads with descriptions including “petrochemical company,” “cybersecurity company,” “architecture and engineering company,” “petroleum company,” “big university,” and various state governments are advertised.

As expected the banking & Financial accounts costs are higher among others, the average cost is under $71 and it is growing up to $500.

Following is the list of breakdown of different account listings

“Users of Russian-language cybercriminal forums like Exploit and XSS often freely share credentials for entertainment services with other forum members.”

Attacking Tools Found

Brute-force cracking tools also sold at hacker forums for an average of $4, “some advertisements were super vague―“USA Bank login Cracker Bruter”―but others were targeting a specific service, like Hulu, Minecraft, or Spotify.”

Some advertisements also include Burp Suite Professional application, Hydra, login cracker, Zeus and WarBot botnets, and Sentry MBA account cracker.

In case of credentials stuffing tools OpenBullet a new credential stuffing tool gains popularity over Sentry MBA. The tool gains popularity for it’s customized configurations, and lower CPU usage.

“OpenBullet includes multiple tools that can be used for scraping and parsing data, automated penetration testing and unit testing with Selenium”

Following are the 10 sectors with most breached credentials

Technology credentials represented 31, following to that food-and-beverage and financial services, at 16 percent and 14 percent.

Monitoring network activity, Monitor for leaked credentials of your customers. increasing user awareness and Implement multi-factor authentication that doesn’t use SMS messages are the best way to mitigate password thefts.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates.

Also Read

Dark Web Secrets: What Should You Know About Your Information Being on the Dark Web?

Hackers Selling More than 200 Million Stolen Data from Chinese Hotel Chain in Dark Web

List of Top Ten Dark Web Activities That Alerts Organizations a Possible Breach by Hackers

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

How To Use Digital Forensics To Strengthen Your Organization’s Cybersecurity Posture

Digital forensics has become a cornerstone of modern cybersecurity strategies, moving beyond its traditional...

Building A Strong Compliance Framework: A CISO’s Guide To Meeting Regulatory Requirements

In the current digital landscape, Chief Information Security Officers (CISOs) are under mounting pressure...

Two Systemic Jailbreaks Uncovered, Exposing Widespread Vulnerabilities in Generative AI Models

Two significant security vulnerabilities in generative AI systems have been discovered, allowing attackers to...

New AI-Generated ‘TikDocs’ Exploits Trust in the Medical Profession to Drive Sales

AI-generated medical scams across TikTok and Instagram, where deepfake avatars pose as healthcare professionals...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

New Android Spyware Tricks Users by Demanding Passwords for Uninstallation

A newly identified Android spyware app is elevating its tactics to remain hidden and...

Chinese Hackers Attacking Microsoft Customers With Sophisticated Password Spray Attacks

Researchers have identified a network of compromised devices, CovertNetwork-1658, used by Chinese threat actors...

10 Best WiFi Hacking Apps for Android – 2024 Edition

In this article, we are sharing the top “Wi-Fi hacking Apps“ for Android applicants....