The threat actor known as ToddyCat has been attributed to a new malware called Umbrij that’s designed to gain surreptitious access to a victim’s email correspondence via the Google API.”In this campaign, the attackers focused their attention on corporate email communications hosted on Gmail, targeting access compromise via APIs,” Kaspersky said in a detailed report published this week. “
First seen on thehackernews.com
Jump to article: thehackernews.com/2026/07/toddycat-linked-umbrij-malware-abuses.html
![]()

