
Microsoft
Data Breach on July 27, 2026
| Data Breach Report | |||
|---|---|---|---|
| Victim | microsoft.com | ||
| Claimed By | ExfilSquad | ||
| Date Discovered | Jul 27, 2026 | ||
| Description | Microsoft Corporation is a technology company based in the USA (Washington), specializing in software, cloud computing, consumer electronics, personal computers, and digital services. | ||
| Leak Size | 130GB |
Credential Exposure for microsoft.com
We've indexed 178,198 @microsoft.com accounts from external breaches, plus 450,626 credentials for microsoft.com itself.
Last checked Sep 6, 2026
| @microsoft.com addresses from external breaches | |
|---|---|
| Third-party breaches | 157,606 accounts · across 3828 breaches · 133,580 with a plaintext password · most recent Aug 8, 2026 |
| Combo lists | 96,318 accounts · most recent Sep 6, 2026 |
| Phishing pages | 68 accounts · most recent Sep 4, 2026 |
| Passwords for microsoft.com accounts | |
|---|---|
| Combo lists | 388,920 logins · most recent Sep 6, 2026 |
| Infostealer logs | 169,043 logins · 139,085 infected devices · most recent Sep 6, 2026 |
Logins may belong to customers or to staff, and the data doesn't say which. None of this is necessarily connected to the ransomware attack above.
Is your organization next?
Microsoft was breached. Check if your company's credentials have been exposed in this or other data breaches.
Check your exposure →Continuous dark web monitoring alerts you when we find leaked credentials or session tokens for your company.