Skip to main content
← All Articles

Tag

#credential-theft

32 articles

Advertisement

TrapDoor Campaign: Detecting Cross-Ecosystem Supply Chain Attacks
HIGH
Supply Chain

TrapDoor Campaign: Detecting Cross-Ecosystem Supply Chain Attacks

The TrapDoor campaign targets npm, PyPI, and Crates.io with over 384 malicious versions designed to exfiltrate developer credentials and sensitive data.

Runtime Rebel Intel
4 min read·May 25, 2026
SU
HIGH
Supply Chain

Laravel Lang Hijack: Supply Chain Attack via Malicious GitHub Tags

Analysis of the Laravel Lang supply chain attack involving malicious GitHub tags v13.8.1 and v13.8.2 used to steal environmental secrets and credentials.

Runtime Rebel Intel
4 min read·May 24, 2026
TH
MEDIUM
Threat Intel

Canadian Man Arrested for Kimwolf Botnet Operations

Jacob Butler faces US extradition for operating the Kimwolf botnet. Analysis of the arrest, botnet infrastructure, and its role in the initial access market.

Runtime Rebel Intel
3 min read·May 22, 2026
GitHub Actions Supply Chain Attack: actions-cool/issues-helper
HIGH
Supply Chain

GitHub Actions Supply Chain Attack: actions-cool/issues-helper

Analysis of the actions-cool/issues-helper supply chain attack where tags were redirected to steal credentials. Learn how to detect and mitigate this threat.

Runtime Rebel Intel
3 min read·May 19, 2026
SU
HIGH
Supply Chain

JDownloader Site Compromise: Python RAT Distribution Analysis

Attackers compromised JDownloader's site to distribute malicious installers containing a Python-based RAT. Learn how to detect and mitigate this threat.

Runtime Rebel Intel
4 min read·May 9, 2026
Microsoft Edge Plaintext Password Exposure and ICS Zero-Day Risks
CRITICAL
Threat Intel

Microsoft Edge Plaintext Password Exposure and ICS Zero-Day Risks

Analysis of Microsoft Edge plaintext password storage risks, newly disclosed ICS zero-day vulnerabilities, and Telegram-based data exfiltration TTPs.

Runtime Rebel Intel
3 min read·May 7, 2026
TH
HIGH
Threat Intel

AitM Phishing Attacks Target US Organizations with Conduct Reports

Microsoft warns of a sophisticated AitM phishing campaign using fake conduct reports to bypass MFA and hijack Microsoft 365 user sessions.

Runtime Rebel Intel
3 min read·May 5, 2026
Credential Theft: Microsoft Details Phishing Campaign Targeting 35k Users
HIGH
Threat Intel

Credential Theft: Microsoft Details Phishing Campaign Targeting 35k Users

Microsoft warns of a global phishing campaign targeting 35,000 users with code-of-conduct lures to steal authentication tokens across 13,000 organizations.

Runtime Rebel Intel
4 min read·May 5, 2026
TH
HIGH
Threat Intel

US Security Experts Sentenced in REvil Ransomware Conspiracy

Two US security professionals were sentenced to prison for selling corporate credentials to the REvil ransomware gang, highlighting insider threat risks.

Runtime Rebel Intel
3 min read·May 1, 2026
New DEEP#DOOR Python Backdoor Targets Cloud and Browser Credentials
HIGH
Malware

New DEEP#DOOR Python Backdoor Targets Cloud and Browser Credentials

DEEP#DOOR is a stealthy Python-based backdoor framework using tunneling services for persistent C2 and credential harvesting from cloud and browser data.

Runtime Rebel Intel
3 min read·Apr 30, 2026
SU
HIGH
Supply Chain

Official SAP npm Packages Compromised in TeamPCP Supply Chain Attack

Attackers compromised official SAP npm packages to exfiltrate developer credentials and tokens. Learn how to detect and remediate this supply chain threat.

Runtime Rebel Intel
3 min read·Apr 30, 2026
SAP npm Packages Compromised by “Mini Shai-Hulud” Malware
HIGH
Supply Chain

SAP npm Packages Compromised by “Mini Shai-Hulud” Malware

The Mini Shai-Hulud campaign targets SAP cloud application developers with credential-stealing npm packages. Learn how to detect and mitigate this threat.

Runtime Rebel Intel
4 min read·Apr 29, 2026