Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
I knew about North Korean hackers—they still tricked me and got into my computer

I knew about North Korean hackers—they still tricked me and got into my computer

2 April 2026
Current price of oil as of April 1, 2026

Current price of oil as of April 1, 2026

2 April 2026
12 Fortune 500 CEOs worked for Pepsi. Delta’s Ed Bastian explains why it’s a leadership factory

12 Fortune 500 CEOs worked for Pepsi. Delta’s Ed Bastian explains why it’s a leadership factory

2 April 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » 3.9 Billion Passwords Stolen—What You Need To Know
Innovation

3.9 Billion Passwords Stolen—What You Need To Know

Press RoomBy Press Room23 February 20254 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
3.9 Billion Passwords Stolen—What You Need To Know

Update, Feb. 23, 2025: This story, originally published Feb. 22, has been updated with a new warning from the head of engineering at NordPass about how AI is coming for your passwords next and how to protect against the threat.

Considering just how many infostealer malware warnings have been issued recently, from macOS-specific threats, to those targeting a broad sweep of Gmail and Outlook email users, there can be little doubting that cybercrime actors are coming for your passwords. Now the true reach of the infostealer malware threat has been laid bare by a threat intelligence agency which specializes in leveraging dark web data, and the picture it paints is a scary one. Here’s what you need to know.

Infostealers Behind 3.9 Billion Stolen Passwords Shared By Hackers

More than 4.3 million machines were infected by infostealer malware across 2024, responsible for an astonishing 330 million credentials being compromised, according to the latest KELA state of cybercrime report, published Feb. 20. And if you thought that was a shocking number, I hope you are sitting down as it gets even worse. The KELA analysts said they had observed 3.9 billion passwords “shared in the form of credentials lists that appear to be sourced from infostealer logs.” Just three strains of this insidious malware threat, Lumma, StealC, and Redline, were responsible for 75% of all infected systems. “Underground economies, from malware-as-a-service to stolen credential marketplaces, contributed to a powerful infrastructure supporting a range of malicious activities,” David Carmiel, CEO at threat intelligence analysts KELA, said.

Malicious activity that includes the likes of both ransomware attacks and espionage campaigns. “Infostealers’ appeal,” the report suggested, “lies in their efficiency and scalability, enabling attackers to compromise large volumes of accounts, both personal and corporate.” By doing so, this particular malware menace becomes something of a self-fulfilling password theft prophecy, with lists of compromised credentials being sold on underground criminal marketplaces that are used to aid further attack campaigns and garner more credentials that can be sold and so on. Almost 40% of the infected machines to be found within KELA’s “data lake” included credentials for sensitive corporate systems such as content management systems, email, Active Directory
Federation Services, and remote desktop. In all, accounting for nearly 1.7 million bots and 7.5 million compromised credentials. “Based on KELA’s analysis,” the report stated, “the dataset primarily (almost 65%) contained personal computers that had corporate credentials saved on them and thus obtained by infostealer malware.”

To help mitigate the threat from infostealer malware, KELA recommended that multi-factor authentication be implemented across all accounts, critical systems isolated to limit the opportunity for lateral movement by attackers, and advanced email filtering solutions deployed to prevent phishing attempts. If you value your accounts and your data, then you better take action sooner rather than later. The threat actors certainly aren’t waiting and KELA analysts only expect the infostealer threat to your passwords to increase during 2025.

The AI Threat To Your Passwords

Ever since a story about an AI-powered hack targeting Gmail users that was published here at forbes.com Oct. 13, 2024, went viral, there has been no doubting the real-world threat that AI poses to your passwords. Now, Ignas Valancius, the head of engineering at password manager NordPass, has warned that while weak passwords can be cracked in just a matter of seconds, AI can “crack even stronger ones in the same amount of time.” Large language models can and will, Valancius said in an email conversation, “be used to brute force passwords and organize dictionary attacks more often.”

Advising that we should all be mindful that the time it takes to guess, socially engineer, or just go nuclear and brute force passwords is going to drop dramatically across 2025 due to the use of AI tools, Valancius said, “I’m not saying that super long, random 18-character passwords are at immediate risk. But shorter ones – they could be in danger. This is why it’s vital to make sure you look after your passwords properly, and that includes everything from their creation to their management and use.

Valancius recommended the following when it comes to password hygiene:

The longer it is, the better. Just be sure not to use your name or other personal information.

Since long random passwords are very hard to remember, creating a passphrase might be a good workaround.

Use different passwords for different accounts and never reuse them.

Another option is switching to passkeys. They combine biometric verification with cryptographic keys, offering a safer and more convenient alternative to passwords.

credemntial theft Hackers hacking passwords Infostealer KELA Lumma malware Password password hack password theft
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

1 Habit Emotionally Intelligent Adults Had As Kids, By A Psychologist

1 Habit Emotionally Intelligent Adults Had As Kids, By A Psychologist

1 April 2026
The Graveyard Of OpenAI’s Dead Products And Incomplete Deals

The Graveyard Of OpenAI’s Dead Products And Incomplete Deals

1 April 2026
How The Children’s Movie “Cars” Forewarns A Post-Human Era

How The Children’s Movie “Cars” Forewarns A Post-Human Era

1 April 2026
Inside The New Deal Pipelines Female Founders Are Quietly Building

Inside The New Deal Pipelines Female Founders Are Quietly Building

1 April 2026
Apple Did The Unthinkable With Its 9 MacBook Neo

Apple Did The Unthinkable With Its $599 MacBook Neo

1 April 2026
Multimodal Fusion Used In Self-Driving Cars Is Uplifting AI That Provides Mental Health Guidance

Multimodal Fusion Used In Self-Driving Cars Is Uplifting AI That Provides Mental Health Guidance

1 April 2026
Don't Miss
Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

By Press Room27 December 2024

Every year, millions of people unwrap Christmas gifts that they do not love, need, or…

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

30 December 2024
Moltbook is the talk of Silicon Valley. But the furor is eerily reminiscent of a 2017 Facebook research experiment

Moltbook is the talk of Silicon Valley. But the furor is eerily reminiscent of a 2017 Facebook research experiment

6 February 2026
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
Blend’s post-IPO reset: CEO Nima Ghamsari bets that AI can turn it all around

Blend’s post-IPO reset: CEO Nima Ghamsari bets that AI can turn it all around

2 April 20261 Views
President Trump’s speech on Iran war hails ‘tremendous progress’ but Wall Street hears ‘escalation’

President Trump’s speech on Iran war hails ‘tremendous progress’ but Wall Street hears ‘escalation’

2 April 20260 Views
Wave of insider trading means a prediction market crackdown is coming

Wave of insider trading means a prediction market crackdown is coming

2 April 20261 Views
How California Pistachio Farmers Profit From Iran War and Viral Dubai Chocolate Trends

How California Pistachio Farmers Profit From Iran War and Viral Dubai Chocolate Trends

2 April 20260 Views

Recent Posts

  • I knew about North Korean hackers—they still tricked me and got into my computer
  • Current price of oil as of April 1, 2026
  • 12 Fortune 500 CEOs worked for Pepsi. Delta’s Ed Bastian explains why it’s a leadership factory
  • Prediction markets caught insider traders in real time. Congress wants to shut them down anyway
  • Blend’s post-IPO reset: CEO Nima Ghamsari bets that AI can turn it all around

Recent Comments

No comments to show.
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
I knew about North Korean hackers—they still tricked me and got into my computer

I knew about North Korean hackers—they still tricked me and got into my computer

2 April 2026
Current price of oil as of April 1, 2026

Current price of oil as of April 1, 2026

2 April 2026
12 Fortune 500 CEOs worked for Pepsi. Delta’s Ed Bastian explains why it’s a leadership factory

12 Fortune 500 CEOs worked for Pepsi. Delta’s Ed Bastian explains why it’s a leadership factory

2 April 2026
Most Popular
Prediction markets caught insider traders in real time. Congress wants to shut them down anyway

Prediction markets caught insider traders in real time. Congress wants to shut them down anyway

2 April 20261 Views
Blend’s post-IPO reset: CEO Nima Ghamsari bets that AI can turn it all around

Blend’s post-IPO reset: CEO Nima Ghamsari bets that AI can turn it all around

2 April 20261 Views
President Trump’s speech on Iran war hails ‘tremendous progress’ but Wall Street hears ‘escalation’

President Trump’s speech on Iran war hails ‘tremendous progress’ but Wall Street hears ‘escalation’

2 April 20260 Views

Archives

  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • March 2022
  • January 2021
  • March 2020
  • January 2020

Categories

  • Blog
  • Business
  • Entrepreneurs
  • Global
  • Innovation
  • Leadership
  • Living
  • Money & Finance
  • News
  • Press Release
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.