https://www.trendmicro.com/en/research/18/i/stop-office-365-credential-theft-with-an-artificial-eye.html
Stop Office 365 Credential Theft with A.I. | Trend Micro
Sep 25, 2018 - Business email remains the nexus of an employees online profile, and therefore a key target of cyber criminals. With the growth of Office 365, new threats are...
credential theftstopofficetrendmicro
https://thehackernews.com/2022/08/researchers-link-multi-year-mass.html
Researchers Link Multi-Year Mass Credential Theft Campaign to Chinese Hackers
A Chinese state-sponsored threat group named RedAlpha has been attributed to a multi-year mass credential theft campaign.
credential theftresearchersmultiyearmass
https://www.techtarget.com/healthtechsecurity/news/366595380/50-Phishing-Emails-Seek-Credential-Theft-as-Malware-Delivery-Declines
50% Phishing Emails Seek Credential Theft, as Malware Delivery Declines | TechTarget
Half of phishing attacks are designed for credential theft, while just 12 percent delivered a malware payload. Attacks are increasingly harder to detect as...
phishing emailscredential theftseek
https://thehackernews.com/2025/05/ottercookie-v4-adds-vm-detection-and.html?version=meter+at+null
OtterCookie v4 Adds VM Detection and Chrome, MetaMask Credential Theft Capabilities
OtterCookie v4 adds VM evasion and MetaMask theft in April 2025, signaling rapid malware evolution.
credential theftaddsvmdetection
https://homesecuritysystemsauthority.com/home-security-account-credential-theft/
Credential Theft Targeting Home Security Accounts
Credential theft targeting home security accounts represents a specific and growing attack surface within the broader residential cybersecurity landscape....
credential thefthome securitytargetingaccounts
https://thehackernews.com/2025/11/second-sha1-hulud-wave-affects-25000.html
Second Sha1-Hulud Wave Affects 25,000+ Repositories via npm Preinstall Credential Theft
Security vendors warn Sha1-Hulud has hijacked 25,000+ GitHub repos via npm packages, stealing cloud credentials or wiping dev home directories.
https://thehackernews.com/2024/12/north-korean-kimsuky-hackers-use.html?ref=lefilcyber.fr
North Korean Kimsuky Hackers Use Russian Email Addresses for Credential Theft Attacks
Kimsuky hackers use Russian email addresses and fake cloud storage alerts to steal user credentials in new phishing campaign.
north korean
https://advisories.gitlab.com/npm/flowise/CVE-2025-50538/
Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin...
CVE-2025-50538 Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel: A stored Cross-Site Scripting (XSS)...
https://thehackernews.com/2023/08/new-wave-of-attack-campaign-targeting.html?version=meter+at+null
New Wave of Attack Campaign Targeting Zimbra Email Users for Credential Theft
Attention businesses! A sneaky campaign is targeting Zimbra email servers for login credentials.
new wavecampaign targeting
https://newsroom.ibm.com/2025-04-17-2025-ibm-x-force-threat-index-large-scale-credential-theft-escalates,-threat-actors-pivot-to-stealthier-tactics?ref=cybernewscentre.com
2025 IBM X-Force Threat Index: Large-Scale Credential Theft Escalates, Threat Actors Pivot to...
IBM released the 2025 X-Force Threat Intelligence Index highlighting that cybercriminals continued to pivot to stealthier tactics, with lower-profile...
https://advisories.gitlab.com/pypi/firefighter-incident/CVE-2026-42864/
FireFighter has unauthenticated SSRF in its Raid jira_bot endpoint that allows IAM credential theft...
CVE-2026-42864 FireFighter has unauthenticated SSRF in its Raid jira_bot endpoint that allows IAM credential theft: The POST /api/v2/firefighter/raid/jira_bot...
https://thehackernews.com/2024/09/say-goodbye-to-phishing-must-haves-to.html?m=0
Say Goodbye to Phishing: Must-Haves to Eliminate Credential Theft
Discover how Beyond Identity's deterministic security approach eliminates phishing, credential theft, and other cyber threats with passwordless, phish
say goodbyemust havesphishingeliminatecredential
https://advisories.gitlab.com/npm/flowise/GHSA-7rgr-72hp-9wp3/
Duplicate Advisory: Flowise is vulnerable to stored XSS via "View Messages" allows credential theft...
GHSA-7rgr-72hp-9wp3 Duplicate Advisory: Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel: Duplicate...
https://thehackernews.com/2025/08/researchers-uncover-ecscape-flaw-in.html?version=meter+at+null
Researchers Uncover ECScape Flaw in Amazon ECS Enabling Cross-Task Credential Theft
ECS agent on EC2 exposes IAM credentials to containers, risking cross-task access without proper isolation.
amazon ecs