Tag: credentials
-
The Supercar Phishing Kit: A Luxurious Trap for Your Microsoft 365 Credentials
In August 2024, Fortgale’s cybersecurity researchers uncovered a phishing campaign targeting Microsoft 365 users. This discovery, dubbed the Supercar … First seen on securityonline.info Jump to article: securityonline.info/the-supercar-phishing-kit-a-luxurious-trap-for-your-microsoft-365-credentials/
-
Russian cyber snoops linked to massive credential-stealing campaign
First seen on theregister.com Jump to article: www.theregister.com/2024/08/14/russias_fsb_cyber_phishing/
-
Credential Theft Protection: Defending Your Organization’s Data
First seen on scmagazine.com Jump to article: www.scmagazine.com/native/credential-theft-protection-defending-your-organizations-data
-
Manufacturing Sector Under Fire From Microsoft Credential Thieves
First seen on darkreading.com Jump to article: www.darkreading.com/ics-ot-security/manufacturing-sector-microsoft-credential-thieves
-
New QR Code Phishing Campaign Exploits Microsoft Sway to Steal Credentials
Cybersecurity researchers are calling attention to a new QR code phishing (aka quishing) campaign that leverages Microsoft Sway infrastructure to host… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/new-qr-code-phishing-campaign-exploits.html
-
Qilin Ransomware Attack Targets Credentials Stored in Chrome
First seen on duo.com Jump to article: duo.com/decipher/qilin-ransomware-attack-targets-credentials-stored-in-chrome
-
Hackers inject malicious JS in Cisco store to steal credit cards, credentials
Cisco’s site for selling company-themed merchandise is currently offline and under maintenance due to hackers compromising it with JavaScript code tha… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-inject-malicious-js-in-cisco-store-to-steal-credit-cards-credentials/
-
Navigating Compliance: Password and Credential Security
In today’s digital age, the threat of cyberattacks is growing at an alarming rate. The frequency and impact of these attacks are escalating, prompting… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/09/navigating-compliance-password-and-credential-security/
-
SolarWinds Warns of Web Help Desk Hardcoded Credential Bug
Tags: credentialsFirst seen on duo.com Jump to article: duo.com/decipher/solarwinds-fixes-hardcoded-credential-bug-in-web-help-desk
-
New Qilin Ransomware Attack Uses VPN Credentials, Steals Chrome Data
The threat actors behind a recently observed Qilin ransomware attack have stolen credentials stored in Google Chrome browsers on a small set of compro… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/new-qilin-ransomware-attack-uses-vpn.html
-
Qilin Ransomware Attack Used To Steal Chrome Browser Data
In the cyberthreat landscape, Qilin ransomware attack has recently been observed stealing credentials in Chrome browsers. Reports claim that these cre… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/09/qilin-ransomware-attack-used-to-steal-chrome-browser-data/
-
Hardcoded Credential Vulnerability Found in SolarWinds Web Help Desk
SolarWinds has issued patches to address a new security flaw in its Web Help Desk (WHD) software that could allow remote unauthenticated users to gain… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/hardcoded-credential-vulnerability.html
-
Hackers Calling Employees to Steal VPN Credentials from US Firms
First seen on hackread.com Jump to article: hackread.com/hackers-calling-employees-steal-us-vpn-credentials/
-
Hackers Infect ISPs With Malware That Steals Customer Credentials
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36259/Hackers-Infect-ISPs-With-Malware-That-Steals-Customer-Credentials.html
-
Applause Credentials Exposed by Unsecured Config File
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/applause-credentials-exposed-by-unsecured-config-file
-
Applause credentials inadvertently exposed
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/applause-credentials-inadvertently-exposed
-
QR Code Phishing Targets Microsoft 365 Credentials
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/qr-code-phishing-targets-microsoft-365-credentials
-
Widespread QR Code Phishing Targeted Microsoft 365 Credentials
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/widespread-qr-code-phishing-targeted-microsoft-365-credentials
-
Czech Mobile Users Targeted in New Banking Credential Theft Scheme
Mobile users in the Czech Republic are the target of a novel phishing campaign that leverages a Progressive Web Application (PWA) in an attempt to ste… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/czech-mobile-users-targeted-in-new.html
-
Qilin Caught Red-Handed Stealing Credentials in Google Chrome
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/qilin-steal-credentials-google/
-
NTLM Credential Theft Risk in Python Apps Threaten Windows Security
First seen on hackread.com Jump to article: hackread.com/ntlm-credential-theft-python-apps-windows-security/
-
SolarWinds Leaks Credentials In Hotfix
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36250/SolarWinds-Leaks-Credentials-In-Hotfix.html
-
Qilin Ransomware Upgrades and Now Steals Google Chrome Credentials
First seen on hackread.com Jump to article: hackread.com/qilin-ransomware-steals-google-chrome-credentials/
-
DTEX i³ Threat Advisory Reveals Growing Risk of Credential Abuse by Outside Adversaries
In today’s digital age, where the line between personal and professional life is increasingly blurred, the storage of corporate credentials on persona… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/08/dtex-i%c2%b3-threat-advisory-reveals-growing-risk-of-credential-abuse-by-outside-adversaries/
-
Russian Hacker Jailed 3+ Years for Selling Stolen Credentials on Dark Web
A 27-year-old Russian national has been sentenced to over three years in prison for peddling financial information, login credentials, and other perso… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/russian-hacker-jailed-3-years-for.html
-
Getting Started With SPIFFE For Multi-Cloud Secure Workload Authentication
SPIFFE stands for Secure Production Identity Framework for Everyone, and aims to replace single-factor access credentials with a highly scalable ident… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/08/getting-started-with-spiffe-for-multi-cloud-secure-workload-authentication/
-
Qilin ransomware steals credentials stored in Google Chrome
Sophos researchers investigated a Qilin ransomware breach attack that led to the theft of credentials stored in Google Chrome browsers. Sophos researc… First seen on securityaffairs.com Jump to article: securityaffairs.com/167496/cyber-crime/qilin-ransomware-steal-google-chrome-passwords.html
-
Phishing attacks target mobile users via progressive web applications (PWA)
Cybercriminals use progressive web applications (PWA) to impersonate banking apps and steal credentials from mobile users. ESET researchers detailed a… First seen on securityaffairs.com Jump to article: securityaffairs.com/167472/cyber-crime/phishing-relies-progressive-web-applications.html
-
Qilin ransomware now steals credentials from Chrome browsers
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/qilin-ransomware-now-steals-credentials-from-chrome-browsers/
-
SolarWinds Axes Hardcoded Credentials With Hotfix for Exploited Web Help Desk Flaw
SolarWinds has issued a second Web Help Desk hotfix to remove hardcoded credentials after patching a critical-severity vulnerability last week. The po… First seen on securityweek.com Jump to article: www.securityweek.com/solarwinds-leaks-credentials-in-hotfix-for-exploited-web-help-desk-flaw/

