Skip to main content
← All Articles

Tag

#Credential Theft

173 articles

Advertisement

MEDIUM
Threat Intel

TikTok for Business Phishing Campaign Evades Security Bots

A new TikTok for Business phishing campaign uses sophisticated bot-evasion techniques to steal corporate credentials and hijack advertising assets.

Runtime Rebel Intel
4 min read · Mar 26, 2026
HIGH
Threat Intel

Bubble Platform Abuse: Credential Phishing Targets Microsoft Accounts

Threat actors are abusing the Bubble no-code platform to host sophisticated phishing campaigns, bypassing traditional detection and targeting Microsoft account…

Runtime Rebel Intel
5 min read · Mar 25, 2026
MEDIUM
Threat Intel

Underground Markets Pivot to Premium AI Account Trading

Cybercriminals are increasingly trading stolen premium AI accounts to enhance social engineering, automate malware creation, and bypass safety filters.

Runtime Rebel Intel
4 min read · Mar 25, 2026
MEDIUM
Threat Intel

SVG-Based Phishing: Using Scalable Vector Graphics for Credential Theft

Discover how threat actors leverage SVG files to bypass email filters and execute credential theft through embedded JavaScript and HTML forms.

Runtime Rebel Intel
4 min read · Mar 25, 2026
HIGH
Supply Chain

LiteLLM PyPI Supply Chain Attack: TeamPCP Steals Credentials

TeamPCP compromised the LiteLLM PyPI package, backdooring it to steal credentials and auth tokens from hundreds of thousands of devices.

Runtime Rebel Intel
5 min read · Mar 25, 2026
HIGH
Threat Intel

Tycoon 2FA PaaS Recovery: Detecting AitM Phishing Infrastructure

Tycoon 2FA Phishing-as-a-Service has recovered from law enforcement disruption. Learn how this AitM platform bypasses MFA and how to protect your organization.

Runtime Rebel Intel
3 min read · Mar 23, 2026

Advertisement

HIGH
Malware

VoidStealer: Bypassing Chrome ABE via Remote Debugging Protocol

VoidStealer malware uses a novel debugger technique to bypass Google Chrome’s Application-Bound Encryption and exfiltrate browser-stored credentials.

Runtime Rebel Intel
3 min read · Mar 22, 2026
HIGH
Malware

Perseus Android Malware: Technical Analysis of Note-Stealing Tactics

Perseus Android malware targets sensitive secrets in user notes by abusing Accessibility Services. Learn how to detect and mitigate this mobile threat.

Runtime Rebel Intel
4 min read · Mar 19, 2026
Credential Theft Surge: Understanding Infostealer & AI Social Engineering
HIGH
Identity & Access

Credential Theft Surge: Understanding Infostealer & AI Social Engineering

Credential theft surged in late 2025, driven by sophisticated infostealer malware and AI-enhanced social engineering.

Runtime Rebel Intel
4 min read · Mar 18, 2026
7-Stage Phishing Chain Targets Outpost24 C-Suite via Redirects
MEDIUM
Threat Intel

7-Stage Phishing Chain Targets Outpost24 C-Suite via Redirects

Security researchers identify a sophisticated 7-stage phishing attack targeting Outpost24 executives using legitimate domains to evade email gateways.

Runtime Rebel Intel
4 min read · Mar 17, 2026
2025 Identity Threat Report: Analyzing the Infostealer Economy
HIGH
Identity & Access

2025 Identity Threat Report: Analyzing the Infostealer Economy

Recorded Future's 2025 Identity Threat Landscape Report examines how infostealer malware and session cookie theft drive the modern credential threat economy.

Runtime Rebel Intel
3 min read · Mar 16, 2026
HIGH
Supply Chain

ForceMemo: Credential Theft Compromises Python Repositories

Researchers reveal ForceMemo, a campaign exploiting credentials stolen via GlassWorm to compromise hundreds of GitHub accounts and Python repositories.

Runtime Rebel Intel
3 min read · Mar 16, 2026
HIGH
Malware

FBI Seeks Victims of Malicious Steam Games Stealing Credentials

The FBI is investigating eight malicious games on Steam that stole user credentials from tens of thousands of players.

Runtime Rebel Intel
5 min read · Mar 14, 2026
HIGH
Data Breach

Starbucks Employee Portal Phishing Leads to Data Breach

Starbucks confirms a data breach impacting hundreds of employees via targeted phishing attacks on an internal portal. Learn about the incident and prevention.

Runtime Rebel Intel
4 min read · Mar 13, 2026
Storm-2561 Leverages SEO Poisoning for Credential Theft
HIGH
Threat Intel

Storm-2561 Leverages SEO Poisoning for Credential Theft

Microsoft warns of Storm-2561's credential theft campaign using SEO poisoning to distribute fake, digitally signed VPN clients disguised as legitimate enterprise…

Runtime Rebel Intel
5 min read · Mar 13, 2026
MEDIUM
Threat Intel

Phishing Credential Exfiltration via EmailJS and React Frameworks

Security analysis of a sophisticated React-based phishing kit that leverages the EmailJS service for stealthy exfiltration of user credentials.

Runtime Rebel Intel
3 min read · Mar 13, 2026
VENON Malware: Rust-Based Banking Trojan Targets Brazilian Banks
HIGH
Malware

VENON Malware: Rust-Based Banking Trojan Targets Brazilian Banks

A new Rust-based malware called VENON is targeting 33 Brazilian banks with credential-stealing overlays, signaling a shift in Latin American cybercrime TTPs.

Runtime Rebel Intel
4 min read · Mar 12, 2026
FortiGate NGFW Exploitation Leads to Service Account Credential Theft
HIGH
Vulnerabilities

FortiGate NGFW Exploitation Leads to Service Account Credential Theft

Threat actors are exploiting FortiGate devices to extract configuration files and steal service account credentials, facilitating lateral movement in networks.

Runtime Rebel Intel
3 min read · Mar 10, 2026
MEDIUM
Threat Intel

Phishing Alert: Impersonation of US City/County Officials Targets Permit Applicants

The FBI warns of active phishing campaigns impersonating US city and county officials to target businesses and individuals seeking permits, aiming for fraud and data…

Runtime Rebel Intel
5 min read · Mar 9, 2026
Europol Dismantles Tycoon 2FA Phishing Platform: Mitigating MFA Bypass
MEDIUM
Threat Intel

Europol Dismantles Tycoon 2FA Phishing Platform: Mitigating MFA Bypass

Europol and cybersecurity vendors dismantle Tycoon 2FA, a major phishing-as-a-service platform known for its sophisticated MFA bypass capabilities.

Runtime Rebel Intel
4 min read · Mar 6, 2026
HIGH
Threat Intel

LastPass Phishing Campaign Targets Master Passwords via Fake Alerts

LastPass warns of a new phishing campaign using fraudulent security alerts to steal master passwords. Learn how to identify and mitigate these vault threats.

Runtime Rebel Intel
4 min read · Mar 4, 2026
HIGH
Threat Intel

Compromised Site Management Panels: A Commoditized Cybercrime Threat

Underground markets commoditize compromised cPanel and other site management panels, fueling phishing and scam infrastructure. Learn to secure web admin interfaces.

Runtime Rebel Intel
5 min read · Mar 3, 2026
HIGH
Threat Intel

Phishing Campaign Leverages Fake Google PWA to Steal Credentials, MFA

A sophisticated phishing campaign uses a fake Google Security PWA to compromise accounts, steal MFA codes, and proxy traffic. Learn how to protect.

Runtime Rebel Intel
4 min read · Mar 3, 2026
HIGH
Malware

QuickLens Chrome Extension Hijacked to Deploy ClickFix Malware

Malicious QuickLens Chrome extension removed from Web Store after stealing cryptocurrency and deploying ClickFix malware to 30,000 users.

Runtime Rebel Intel
3 min read · Feb 28, 2026