Glossary
Credential Harvesting
The collection of usernames, passwords, or other authentication material, typically through phishing pages that mimic legitimate login portals, malware-based keylogging, or scraping data from breaches. Harvested credentials are frequently resold on dark web marketplaces or reused in credential stuffing attacks.
Recent coverage mentioning Credential Harvesting
GTIG AI Threat Tracker: Evolution of Adversarial Agentic AI
Google Threat Intelligence Group tracks threat actors shifting to agentic AI, targeting proprietary models, and abusing open source software.
Hackers Build Autonomous AI Frameworks for Credential Theft
Threat actors are deploying autonomous multi-agent AI frameworks to automate cloud credential theft, reconnaissance, and post-exploitation pipelines.
North Korean Hackers Deploy New Linux Espionage Toolkit
North Korean state-sponsored hackers target automotive and media firms in South Korea using a custom Linux espionage toolkit.
Phishing Campaign Leverages Invisible Unicode to Bypass Filters
A high-volume phishing campaign uses invisible Unicode tag characters to evade email security filters, mimicking financial lures for fraud and credential harvesting.
Microsoft Teams Abuse, The Gentlemen Ransomware, and PhaaS Trends
Analysis of social engineering campaigns via Microsoft Teams, The Gentlemen ransomware operations, and emerging phishing-as-a-service kits.
Recorded Future Launches AI Alert Filtering for Analysts
Recorded Future introduces AI Alert Filtering, an agent designed to automatically reduce security alert volume by 63% for threat analysts.
Advertisement