The Authlogics password breach database exceeds 5 billion records

Issue 2/3 2023 News & Events, Information Security

Authlogics, an Intercede group company that provides enterprise password security and multi-factor authentication technologies, has revealed that its Password Breach Database has exceeded 5 billion records. The database is the world’s largest repository of compromised password credentials.

Steven Hope, Product Director MFA at Intercede (and founder of Authlogics), comments, “The fact that our database now stands at more than 5 billion records is not a good news story. Our hope is that it shines a spotlight on the scale of the dangers to which organisations are exposed. Just one of these records has the potential to cause harm and it should be assumed that if we have been able to source the information, those with nefarious ambitions have done so too.”

The Authlogics Password Breach Database receives more than one million updates every day, responsibly sourced from free resources in the public domain including mainstream news, online forums, torrents, paste bins and other locations on the dark web. Crucially, the company only securely stores email address and password information.

An invaluable tool that is helping public and private sector organisations around the world to conform with the likes of GDPR, CMMC and NYDFS, the database enables Authlogics to analyse all in-use Active Directory passwords (using k-anonymity to ensure these passwords remain private). It quickly ascertains which accounts are using a known breached password, as well as matching passwords with third-party email addresses to determine if they are the same person. This unique capability provides insight into the high risk yet common practise of using an Active Directory password as a credential for other websites and external systems.

Hope continues, “Everyone is aware of the password problem, the technology and expertise are available to solve it, but today we find ourselves announcing that things are getting worse. In fact, approximately 80% of data breaches have their origins in weak, shared, and reused passwords. The simple truth is if someone wants to exploit weak or compromised passwords it can be done with relative ease at low to no cost.”

The Authlogics Passwords Breach Database can be accessed free of charge for any organisation wanting to check its security status. The free no obligation report will reveal the number of associated password breaches against an email address; expose the email addresses of the worst offenders; identify the number of breaches relating to the compromised credentials and offer clear advice on how to protect against a password breach.

For more information, go to www.authlogics.com




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

AURA appoints Taryn Winer as global head of people
News & Events Security Services & Risk Management
Following its €13,5 million Series B funding round last year and accelerating international expansion, particularly across the United States, AURA has appointed Taryn Winer as global head of people.

Read more...
Gallagher Security releases new fence controllers
Perimeter Security, Alarms & Intruder Detection News & Events
Gallagher Security has announced the release of its new F5 and F6 Fence Controllers, marking the latest generation of enhanced-safety, monitored-pulse fence technology, designed to meet the demands of modern security environments.

Read more...
Paxton set to launch game-changing new system
Paxton Access Control & Identity Management News & Events
Access control is evolving fast. Installers and end users are looking for systems that are simple to install, easy to manage remotely, and flexible enough to scale. In response, Paxton is exploring how emerging technologies can reshape access control.

Read more...
The impact of misguided viral campaigns
News & Events Training & Education
For many years, traditional media have been perceived as slower, more inflexible, and less responsive compared to digital platforms. But in an ecosystem flooded with content, its value is becoming clearer: verification, context, and accountability.

Read more...
NEC XON secures mobile provider’s hybrid identities
NEC XON Access Control & Identity Management Information Security Commercial (Industry)
For a leading South African telecommunications operator, identity protection has become a strategic priority as identity-centric attacks proliferate across the industry. The company faced mounting pressure to secure both human and non-human identities across complex hybrid environments.

Read more...
Gallagher Security strengthens KwaZulu-Natal presence
Gallagher News & Events Integrated Solutions
Gallagher Security has reinforced its commitment to the KwaZulu-Natal region with its Command the Future event. The full-day event welcomed over 100 channel partners, end users, and consultants, marking Gallagher’s third major event in Durban.

Read more...
Rise in malicious insider threat reports
News & Events Information Security
Mimecast Study finds 46% of SA organisations report a rise in malicious insider threat reports over the past year: reveals disconnect between security awareness and technical controls as AI-powered attacks accelerate.

Read more...
Centurion raises the bar at HomeSec Expo
Centurion Systems News & Events Access Control & Identity Management Residential Estate (Industry) Smart Home Automation Commercial (Industry)
Centurion Systems unveiled its latest product lines at HomeSec Expo 2026, introducing SMART+, a simpler way for installers and end users to manage their Centurion installations - as well as a few new products.

Read more...
Duxbury SA Milesight distributor
Duxbury Networking News & Events Surveillance
Duxbury Networking has been appointed the exclusive distributor of Milesight surveillance solutions in South Africa, expanding its surveillance portfolio with a platform designed to deliver AI-driven analytics, rapid deployment, and open integration for modern security environments.

Read more...
New campaign exploiting Google Tasks notifications
News & Events Information Security
New phishing scheme abuses legitimate Google Tasks notifications to trick corporate users into revealing corporate login credentials, which can then be used to gain unauthorised access to company systems, steal data, or launch further attacks.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.