Skip to content
Friday 14 August 2026London --:--Frankfurt --:--Zurich --:--
NewslettersSearchEN · DE
MorningWire

European business, markets and politics

FTSE 100
10,750.11
-0.21%
DAX
26,440.31
+0.53%
CAC 40
8,636.80
-0.16%
STOXX 50
6,539.59
-0.09%
  • Europe
  • Markets
  • Business
  • Economy
  • Technology
  • Politics
  • Opinion
More
GermanyFranceBankingAIEnergyFintechPropertyCapital Markets
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Economy
  • Technology
  • Politics
  • Opinion
  • DE
Tuesday 24 June 2025 11:47 am  |  Updated:  Tuesday 24 June 2025 12:46 pm

This is why billions of passwords were leaked in Apple and Google breach

By: Saskia Koopman

Tech Reporter

Add as a preferred source on Google

A trove of around 16bn passwords and usernames linked to major online platforms – including Apple, Google, Facebook, Microsoft and dozens of government services – has surfaced online, in what researchers are calling one of the largest known compilations of stolen credentials.

Initial reports caused confusion, suggesting direct breaches of platforms like Apple and Google.

However, cybersecurity analysts have clarified that the leak appears to be a large-scale aggregation of previously compromised data, much of it recently harvested through malware known as “infostealers”.

These lightweight programs are typically installed on personal devices without detection and are designed to extract login credentials, browser autofill data, and other sensitive user information.

“This breach does not involve outdated or recycled data”, argued Marko Maras, chief executive of fraud prevention firm Trustfull. “It’s fresh and actionable. That significantly increases the risk of phishing attacks and account takeovers”.

The data was compiled from multiple smaller breaches and information-stealing incidents, then consolidated into large datasets by cybercriminal groups.

In total, the breach affects a broad range of services, from commercial platforms like PayPal, Roblox and Discord, to government portals in more than 29 countries.

A weak system

What has drawn concern from security professionals is not only the volume of the data, but the visibility it gives into widespread vulnerabilities in current authentication models – particularly those that still rely primarily on passwords.

While enabling two-factor authentication, or 2FA, remains standard advice in the wake of a breach, Maras believes the situation reflects a broader issue with traditional login systems.

“Passwords and 2FA are visible points in the authentication process. and users often push back against friction”, he said. “There are other signals that can be used silently in the background to verify identity”.

Such “silent signals” include typing cadence, mouse movement patterns, and network indicators like VPN.

Read more

Oura Ring 5 vs Google Fitbit Air: The battle of the fitness trackers 

Close-up of Oura Ring 5 showcasing sleek design and advanced health tracking features in a tech-focused setting.

These behavioural and environmental cues are increasingly being used in fraud detection systems, particularly in the finance and payments sectors, to identify suspicious activity without requiring active input from users.

According to recent research from Cybernews, the source of the leak is not a single point of failure, but rather a coordinated packaging of data stolen via infostealer malware, credential stuffing attacks, and previously compromised databases.

One of the largest subsets of the data includes over 3.5bn entries believed to be linked to Portuguese-speaking users.

Phishing risks rise

Some experts have warned that users are now exposed to a secondary wave of risk, under the form of phishing and impersonation.

Bad actors are expected to exploit the news of the vast breach itself, using various branded emails and messages from firms like Apple or Google to prompt password resets – and trick recipients into handing over even more data.

The FBI has issued reminders that major tech firms do not reach out unsolicited to request password resets or account recovery.

Any such emails, texts or calls should be treated as suspicious.

There is no evidence so far of a breach in Apple, Google, or Facebook’s internal systems. Rather, the inclusion of their login pages in infostealer logs reflects how widely used these services are – and how frequently their credentials are stored, entered or reused.

For businesses and individuals alike, the breach offers another reminder to reassess basic digital hygiene.

“Security doesn’t need to be synonymous with friction”, said Maras. “Signals exist in the background that platforms can use – they just need to be deployed more widely”.

Read more

Ordnance Survey revenue jumps as map maker goes digital

Ordnance Survey has revealed that an increase in demand for its data from financial services firms has helped its revenue near the £200m mark.

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Tech
  • Business

People & Organisations

  • Apple
  • Cyber
  • data breach
  • Google
  • Microsoft
  • phishing

Related Topics

  • Tech

Trending Articles

  • Revolut takes flight with launch of new airport lounges

  • Grandparents fund university degrees to avoid inheritance tax net

  • It’s not just Jason Arday, most of sociology is a scam

  • Brompton Bicycle sues former adviser for ‘professional negligence’

  • IT consultant ordered to pay £50,000 after being accused of stealing Soho House members’ personal details

More from Morning Wire

  • Oura Ring 5 vs Google Fitbit Air: The battle of the fitness trackers 

    Life&Style
    Close-up of Oura Ring 5 showcasing sleek design and advanced health tracking features in a tech-focused setting.
  • Ordnance Survey revenue jumps as map maker goes digital

    Markets
    Ordnance Survey has revealed that an increase in demand for its data from financial services firms has helped its revenue near the £200m mark.
  • Google backs publisher model as Apple considers price tag for news

    Media
    AI copyright laws
  • ActiveCampaign Launches Google Ads Connector for Active Intelligence, Bringing AI-Guided Campaign Creation and Reporting to Marketers

    Business Wire
  • Kids aren’t using VPNs to watch porn and skirt social media bans, VPN firms say

    Tech
    Work and Pensions Secretary Liz Kendall is in charge of reforming the state pension and benefits system
  • Kendall blasts ‘unacceptably slow’ online safety laws as VPN loophole grows

    Tech
    Work and Pensions Secretary Liz Kendall is in charge of reforming the state pension and benefits system
  • Big Tech faces earnings test after AI spending spree

    Tech
    Googles modern Kings Cross headquarters showcasing innovative architecture in Londons dynamic tech district
  • London-listed healthcare services firm hit by cyberattack

    Markets
    Assura has been the subject of a ferocious bidding war for nearly six months
MorningWire

Independent European business, markets and political news for decision-makers.

Morning Briefing

Europe

  • Germany
  • France
  • Europe
  • UK & Ireland

Business

  • Markets
  • Banking
  • Technology
  • Energy
  • Property
  • Fintech

Editorial

  • Opinion
  • Editorial Policy
  • Corrections
  • Contact

Company

  • About Morning Wire
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
© 2026 Morning Wire Ltd · Published by Morning Wire Media, Bahnhofstrasse 65, 8001 Zürich, Switzerland
Privacy · Terms · Cookies · Facebook