Skip to main content
← All Articles

Tag

#Account Takeover

30 articles

Advertisement

MEDIUM
Identity & Access

OAuth 2.0 Device Code Phishing Surge: Protecting M365 and Google

Device code phishing attacks have surged 37x this year. Learn how adversaries abuse the OAuth 2.0 Device Authorization Grant to bypass MFA and hijack accounts.

Runtime Rebel Intel
4 min read · Apr 4, 2026
HIGH
Threat Intel

Residential Proxies Bypass 78% of IP Reputation Checks

Residential proxies effectively bypass IP reputation systems in 78% of sessions, enabling widespread bot attacks like credential stuffing and account takeovers.

Runtime Rebel Intel
4 min read · Apr 2, 2026
HIGH
Threat Intel

EvilTokens Fuels Microsoft Device Code Phishing & BEC

New EvilTokens service automates Microsoft device code phishing, enabling account takeover and sophisticated business email compromise (BEC) attacks. Learn how to defend.

Runtime Rebel Intel
5 min read · Apr 1, 2026
Credential Theft Surge: Understanding Infostealer & AI Social Engineering
HIGH
Identity & Access

Credential Theft Surge: Understanding Infostealer & AI Social Engineering

Credential theft surged in late 2025, driven by sophisticated infostealer malware and AI-enhanced social engineering.

Runtime Rebel Intel
4 min read · Mar 18, 2026
MEDIUM
Data Breach

Loblaw Data Breach: Analyzing the PC Optimum Account Resets

Canadian retail giant Loblaw notifies customers of a security breach affecting PC Optimum accounts, prompting a mandatory session reset for all users.

Runtime Rebel Intel
4 min read · Mar 13, 2026
HIGH
Threat Intel

Phishing Campaign Leverages Fake Google PWA to Steal Credentials, MFA

A sophisticated phishing campaign uses a fake Google Security PWA to compromise accounts, steal MFA codes, and proxy traffic. Learn how to protect.

Runtime Rebel Intel
4 min read · Mar 3, 2026

Advertisement