Skip to main content
← All Articles

Tag

#Credential Harvesting

18 articles

Advertisement

MEDIUM
Identity & Access

Man Sentenced for Hacking 750 Snapchat Accounts via Phishing

Illinois man Brandon Sudge sentenced to six years for large-scale Snapchat credential harvesting and theft of private content from over 750 victims.

Runtime Rebel Intel
3 min read · Jul 24, 2026
MEDIUM
Threat Intel

ARToken PhaaS Exposes EvilTokens' M365 Phishing Toolkit

ARToken PhaaS, an affiliate of EvilTokens, offers advanced Microsoft 365 phishing capabilities, including MFA bypass. Learn about its TTPs and how to defend.

Runtime Rebel Intel
5 min read · Jul 3, 2026
HIGH
Threat Intel

Metamask Phishing Campaign Targets Secret Recovery Phrases

Threat actors are targeting Metamask users with phishing emails designed to harvest Secret Recovery Phrases, leading to the total loss of cryptocurrency assets.

Runtime Rebel Intel
4 min read · Jul 1, 2026
FortiBleed: 110 Million Credentials Harvested via FortiGate Firewalls
HIGH
Threat Intel

FortiBleed: 110 Million Credentials Harvested via FortiGate Firewalls

Russian-speaking threat actors harvest 110 million credentials from 430,000 FortiGate firewalls globally. Learn to detect and mitigate FortiBleed tactics.

Runtime Rebel Intel
4 min read · Jun 23, 2026
HIGH
Threat Intel

Fortinet FortiBleed Campaign: 86,000+ VPN Credentials Stolen

Fortinet addresses the FortiBleed campaign involving 86,000+ confirmed working credentials. Technical analysis and mitigation steps for security professionals.

Runtime Rebel Intel
4 min read · Jun 22, 2026
MEDIUM
Threat Intel

eBanking Phishing Using IPv4-Mapped IPv6 Addresses Detected

Analysis of a sophisticated eBanking phishing campaign targeting a major Belgian bank, leveraging IPv4-mapped IPv6 addresses for obfuscation.

Runtime Rebel Intel
4 min read · Jun 19, 2026

Advertisement

Credential Harvesting Heist Compromises 30K+ Fortinet Devices
HIGH
Threat Intel

Credential Harvesting Heist Compromises 30K+ Fortinet Devices

A widespread credential harvesting campaign has compromised over 30,000 Fortinet devices across 200 countries, enabling unauthorized access for threat actors.

Runtime Rebel Intel
4 min read · Jun 17, 2026
MEDIUM
Threat Intel

Bluekit Phishing Kit: AI Integration and Automated Deployment

The Bluekit phishing kit uses an AI assistant and automated domain registration to simplify credential harvesting against financial and logistics sectors.

Runtime Rebel Intel
3 min read · May 2, 2026
HIGH
Threat Intel

Telegram tdata Credential Harvesting: Risks and Mitigation Strategies

Learn how threat actors exploit Telegram Desktop tdata folders for session hijacking and credential harvesting, bypassing multi-factor authentication.

Runtime Rebel Intel
3 min read · Apr 22, 2026
HIGH
Data Breach

McGraw Hill Data Breach: 13.5 Million Accounts Leaked by ShinyHunters

Threat actor ShinyHunters leaks 13.5 million McGraw Hill user records following a Salesforce environment breach. Includes password hashes and PII.

Runtime Rebel Intel
4 min read · Apr 16, 2026
TeamPCP Supply Chain Attack: From Credential Theft to Payroll Fraud
HIGH
Supply Chain

TeamPCP Supply Chain Attack: From Credential Theft to Payroll Fraud

TeamPCP leverages supply chain attacks to compromise trusted software, facilitating large-scale credential harvesting, logistics theft, and payroll fraud.

Runtime Rebel Intel
4 min read · Apr 15, 2026
APT41 Deploys Stealth Backdoor for Cloud Credential Harvesting
HIGH
Threat Intel

APT41 Deploys Stealth Backdoor for Cloud Credential Harvesting

China-linked APT41 is targeting AWS, Azure, and Google Cloud with a new zero-detection backdoor designed to harvest credentials and maintain persistence.

Runtime Rebel Intel
4 min read · Apr 13, 2026
HIGH
Identity & Access

Identity-Based Attacks: Why Breach Monitoring Fails to Stop Infostealers

Infostealers are bypassing MFA by harvesting session cookies. Learn why traditional breach monitoring is insufficient and how to secure identity perimeters.

Runtime Rebel Intel
4 min read · Apr 6, 2026
HIGH
Supply Chain

Guardarian Users Targeted via 36 Malicious Strapi npm Packages

Analysis of a supply chain attack involving 36 malicious npm packages posing as Strapi plugins to target Guardarian users and harvest sensitive credentials.

Runtime Rebel Intel
4 min read · Apr 6, 2026
MEDIUM
Threat Intel

Dutch Police Phishing Breach Exposes Internal Contact Data

The Dutch National Police (Politie) confirms a security breach after a phishing attack exposed work contact details for 65,000 police department employees.

Runtime Rebel Intel
4 min read · Mar 27, 2026
MEDIUM
Threat Intel

Security Firm Executive Targeted via DKIM-Signed Phishing

A sophisticated phishing campaign bypassed security filters using DKIM-signed emails and Cloudflare-protected landing pages to target a security executive.

Runtime Rebel Intel
3 min read · Mar 16, 2026
HIGH
Threat Intel

Romanian National Pleads Guilty to Initial Access Brokerage Targeting Oregon State Infrastructure

Catalin Dragomir admitted to harvesting and selling unauthorized administrative credentials for an Oregon state government network, highlighting the persistent threat…

Runtime Rebel Intel
2 min read · Feb 23, 2026
SANDWORM_MODE: Malicious npm Cluster Automates Secret Harvesting and Crypto Theft
HIGH
Supply Chain

SANDWORM_MODE: Malicious npm Cluster Automates Secret Harvesting and Crypto Theft

Security researchers have identified a coordinated campaign involving 19 malicious npm packages designed to exfiltrate CI/CD secrets, API tokens, and private…

Runtime Rebel Intel
2 min read · Feb 23, 2026