you are viewing a single comment's thread
view the rest of the comments
[–] 17 points 2 years ago (3 children)

Use the 'Notify me' option and verify your email address, and then it will show the expanded list of domains that were exposed from the malware:

  • source
  • parent
  • hideshow 3 child comments
  • [–] 1 point 2 years ago*

    Thanks, I finally found it. I was already subscribed and verified, but still couldn't find this anywhere. To get to it I had to:

    • Signup again from the HIBP website
    • Get the verification email telling me I was already verified
    • Click through it
    • Scroll to the VERY bottom of the page and find the stealer logs.

    My natural question is of course how my credentials were stolen logging into gmail.com (yay 2-factor), but at least know I know that's where I need to change my password.

    I should note that the initial notice email about the breach that I received from HIBP for already being verified appears to not have any direct way to actually get this information.

  • source
  • parent