On June 18, cybersecurity researchers at Cybernews uncovered what they described as the “largest data breach in history,” involving 16 billion login credentials from platforms such as Apple, Google, Facebook, GitHub, Telegram, and various government services, according to a report in Forbes.
As per the outlet, the researchers have uncovered 30 datasets, with each of them containing up to 3.5 billion records. The information, which includes social media and VPN logins as well as corporate and developer platforms, is contained in datasets that have been found since the start of 2025. The structured data—URLs, usernames, and passwords—poses risks for phishing, account takeovers, and identity theft.
“This is not just a leak – it’s a blueprint for mass exploitation. These aren’t just old breaches being recycled. This is fresh, weaponisable intelligence at scale,” said the researchers.
The structured data—URLs, usernames, and passwords—poses risks for phishing, account takeovers, and identity theft.
FAQs on Data Breach Protection
- How can I safeguard myself from data breaches?
Experts strongly recommend enabling two-factor authentication (2FA). This uses your password as the first layer of security, paired with a second verification method, such as an authenticator app, passcode, or phone call. - Is it safe to reuse old passwords?
Cybersecurity professionals advise against reusing old passwords, particularly for social media or digital payment platforms. It’s also wise to delete inactive accounts to minimise risks. - What do cybercriminals do with stolen personal credentials?
With stolen credentials, cybercriminals gain unauthorised access, enabling account takeovers, identity theft, and highly targeted phishing attacks.
