Robuta

https://www.trendmicro.com/en/research/18/i/stop-office-365-credential-theft-with-an-artificial-eye.html Stop Office 365 Credential Theft with A.I. | Trend Micro Sep 25, 2018 - Business email remains the nexus of an employees online profile, and therefore a key target of cyber criminals. With the growth of Office 365, new threats are... credential theftstopofficetrendmicro https://thehackernews.com/2022/08/researchers-link-multi-year-mass.html Researchers Link Multi-Year Mass Credential Theft Campaign to Chinese Hackers A Chinese state-sponsored threat group named RedAlpha has been attributed to a multi-year mass credential theft campaign. credential theftresearchersmultiyearmass https://www.techtarget.com/healthtechsecurity/news/366595380/50-Phishing-Emails-Seek-Credential-Theft-as-Malware-Delivery-Declines 50% Phishing Emails Seek Credential Theft, as Malware Delivery Declines | TechTarget Half of phishing attacks are designed for credential theft, while just 12 percent delivered a malware payload. Attacks are increasingly harder to detect as... phishing emailscredential theftseek https://thehackernews.com/2025/05/ottercookie-v4-adds-vm-detection-and.html?version=meter+at+null OtterCookie v4 Adds VM Detection and Chrome, MetaMask Credential Theft Capabilities OtterCookie v4 adds VM evasion and MetaMask theft in April 2025, signaling rapid malware evolution. credential theftaddsvmdetection https://homesecuritysystemsauthority.com/home-security-account-credential-theft/ Credential Theft Targeting Home Security Accounts Credential theft targeting home security accounts represents a specific and growing attack surface within the broader residential cybersecurity landscape.... credential thefthome securitytargetingaccounts https://thehackernews.com/2025/11/second-sha1-hulud-wave-affects-25000.html Second Sha1-Hulud Wave Affects 25,000+ Repositories via npm Preinstall Credential Theft Security vendors warn Sha1-Hulud has hijacked 25,000+ GitHub repos via npm packages, stealing cloud credentials or wiping dev home directories. https://thehackernews.com/2024/12/north-korean-kimsuky-hackers-use.html?ref=lefilcyber.fr North Korean Kimsuky Hackers Use Russian Email Addresses for Credential Theft Attacks Kimsuky hackers use Russian email addresses and fake cloud storage alerts to steal user credentials in new phishing campaign. north korean https://advisories.gitlab.com/npm/flowise/CVE-2025-50538/ Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin... CVE-2025-50538 Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel: A stored Cross-Site Scripting (XSS)... https://thehackernews.com/2023/08/new-wave-of-attack-campaign-targeting.html?version=meter+at+null New Wave of Attack Campaign Targeting Zimbra Email Users for Credential Theft Attention businesses! A sneaky campaign is targeting Zimbra email servers for login credentials. new wavecampaign targeting https://newsroom.ibm.com/2025-04-17-2025-ibm-x-force-threat-index-large-scale-credential-theft-escalates,-threat-actors-pivot-to-stealthier-tactics?ref=cybernewscentre.com 2025 IBM X-Force Threat Index: Large-Scale Credential Theft Escalates, Threat Actors Pivot to... IBM released the 2025 X-Force Threat Intelligence Index highlighting that cybercriminals continued to pivot to stealthier tactics, with lower-profile... https://advisories.gitlab.com/pypi/firefighter-incident/CVE-2026-42864/ FireFighter has unauthenticated SSRF in its Raid jira_bot endpoint that allows IAM credential theft... CVE-2026-42864 FireFighter has unauthenticated SSRF in its Raid jira_bot endpoint that allows IAM credential theft: The POST /api/v2/firefighter/raid/jira_bot... https://thehackernews.com/2024/09/say-goodbye-to-phishing-must-haves-to.html?m=0 Say Goodbye to Phishing: Must-Haves to Eliminate Credential Theft Discover how Beyond Identity's deterministic security approach eliminates phishing, credential theft, and other cyber threats with passwordless, phish say goodbyemust havesphishingeliminatecredential https://advisories.gitlab.com/npm/flowise/GHSA-7rgr-72hp-9wp3/ Duplicate Advisory: Flowise is vulnerable to stored XSS via "View Messages" allows credential theft... GHSA-7rgr-72hp-9wp3 Duplicate Advisory: Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel: Duplicate... https://thehackernews.com/2025/08/researchers-uncover-ecscape-flaw-in.html?version=meter+at+null Researchers Uncover ECScape Flaw in Amazon ECS Enabling Cross-Task Credential Theft ECS agent on EC2 exposes IAM credentials to containers, risking cross-task access without proper isolation. amazon ecs