<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Credential Theft on Breach Notes</title><link>https://breachnotes.vulnetix.com/credential-theft/</link><description>Recent content in Credential Theft on Breach Notes</description><generator>Hugo</generator><language>en-us</language><atom:link href="https://breachnotes.vulnetix.com/credential-theft/index.xml" rel="self" type="application/rss+xml"/><item><title>404 Media</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-07_snowflake-bausch-health-pharma/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-07_snowflake-bausch-health-pharma/</guid><description/></item><item><title>Advance Auto Parts data breach via Snowflake (UNC5537)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-04_advance-auto-parts-snowflake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-04_advance-auto-parts-snowflake/</guid><description/></item><item><title>Anodot SaaS Integrator Breach - ShinyHunters Snowflake Token Theft</title><link>https://breachnotes.vulnetix.com/credential-theft/2026-04_anodot-shinyhunters-snowflake-tokens/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2026-04_anodot-shinyhunters-snowflake-tokens/</guid><description/></item><item><title>Arby's POS Malware Breach (355K+ Payment Cards)</title><link>https://breachnotes.vulnetix.com/credential-theft/2017-02_arbys-pos-malware-355k-cards/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2017-02_arbys-pos-malware-355k-cards/</guid><description/></item><item><title>AT&amp;T call records breach via Snowflake (UNC5537)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-04_att-snowflake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-04_att-snowflake/</guid><description/></item><item><title>Barnes &amp; Noble PIN Pad Skimmer Attack (63 Stores, FBI-Delayed Disclosure)</title><link>https://breachnotes.vulnetix.com/credential-theft/2012-09_barnes-noble-pos-skimmers/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2012-09_barnes-noble-pos-skimmers/</guid><description/></item><item><title>Barnes &amp; Noble POS PIN Pad Tampering — 63 Stores, Card Skimmers</title><link>https://breachnotes.vulnetix.com/credential-theft/2012-09_barnes-noble-pos-skimmers-63-stores/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2012-09_barnes-noble-pos-skimmers-63-stores/</guid><description/></item><item><title>BleepingComputer</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-04_snowflake-cylance-blackberry/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-04_snowflake-cylance-blackberry/</guid><description/></item><item><title>BleepingComputer</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-06_pure-storage-snowflake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-06_pure-storage-snowflake/</guid><description/></item><item><title>Boost Mobile Credential Stuffing Attack (Sprint Subsidiary)</title><link>https://breachnotes.vulnetix.com/credential-theft/2019-05_boost-mobile-credential-stuffing/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2019-05_boost-mobile-credential-stuffing/</guid><description/></item><item><title>BrowserStack Forgotten AWS Access Key Breach</title><link>https://breachnotes.vulnetix.com/credential-theft/2014-11_browserstack-aws-access-key-forgotten/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2014-11_browserstack-aws-access-key-forgotten/</guid><description/></item><item><title>Canva Data Breach (137M Users, GnosticPlayers)</title><link>https://breachnotes.vulnetix.com/credential-theft/2019-05_canva-gnosticplayers-137m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2019-05_canva-gnosticplayers-137m/</guid><description/></item><item><title>CD Universe Maxus Credit Card Extortion (300K Cards, First Major Breach Extortion)</title><link>https://breachnotes.vulnetix.com/credential-theft/1999-12_cd-universe-maxus-extortion/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/1999-12_cd-universe-maxus-extortion/</guid><description/></item><item><title>Chipotle Mexican Grill POS Malware Breach (Most U.S. Restaurants)</title><link>https://breachnotes.vulnetix.com/credential-theft/2017-04_chipotle-pos-malware/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2017-04_chipotle-pos-malware/</guid><description/></item><item><title>CircleCI Secrets Breach — Customer Environment Variables, Tokens, and Keys Stolen</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-12_circleci-secrets-breach/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-12_circleci-secrets-breach/</guid><description/></item><item><title>Cisco WebEx AWS IAM User Compromise</title><link>https://breachnotes.vulnetix.com/credential-theft/2021-09_cisco-webex-iam-compromise/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2021-09_cisco-webex-iam-compromise/</guid><description/></item><item><title>Cisco Yanluowang Ransomware Attack — Employee Google Account and VPN Breach</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-05_cisco-yanluowang-mfa-fatigue/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-05_cisco-yanluowang-mfa-fatigue/</guid><description/></item><item><title>Cloudflare breach via stolen Okta credentials (nation-state, Thanksgiving 2023)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-01_cloudflare-midnight-blizzard/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-01_cloudflare-midnight-blizzard/</guid><description/></item><item><title>Coinbase Insider Bribery Data Breach</title><link>https://breachnotes.vulnetix.com/credential-theft/2025-05_coinbase-insider-bribery/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2025-05_coinbase-insider-bribery/</guid><description/></item><item><title>Collection #1 — 773M Email Credential Aggregation (Largest Credential Dump)</title><link>https://breachnotes.vulnetix.com/credential-theft/2019-01_collection1-773m-credential-dump/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2019-01_collection1-773m-credential-dump/</guid><description/></item><item><title>CommuteAir Jenkins Misconfiguration Exposes AWS Credentials and No-Fly List</title><link>https://breachnotes.vulnetix.com/credential-theft/2023-01_commuteair-jenkins-aws-s3/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2023-01_commuteair-jenkins-aws-s3/</guid><description/></item><item><title>Dark Reading / UpGuard / InfoQ</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-09_uber-mfa-fatigue/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-09_uber-mfa-fatigue/</guid><description/></item><item><title>DataDog AWS Access Keys Exposed in Breach</title><link>https://breachnotes.vulnetix.com/credential-theft/2016-07_datadog-aws-access-keys/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2016-07_datadog-aws-access-keys/</guid><description/></item><item><title>DMM Bitcoin Hack - TraderTraitor (North Korea)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-05_dmm-bitcoin-tradertraitor/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-05_dmm-bitcoin-tradertraitor/</guid><description/></item><item><title>DOGE Uploads Sensitive Social Security Administration Data to External Cloud Server</title><link>https://breachnotes.vulnetix.com/credential-theft/2026-01_breach-roundup-doge-uploaded-social-security-data-to-cloud/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2026-01_breach-roundup-doge-uploaded-social-security-data-to-cloud/</guid><description/></item><item><title>Drizly GitHub Credentials and RDS Database Breach</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-06_drizly-github-rds-breach/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-06_drizly-github-rds-breach/</guid><description/></item><item><title>Dropbox Credential Reuse Breach via LinkedIn (68M Accounts)</title><link>https://breachnotes.vulnetix.com/credential-theft/2016-08_dropbox-credential-reuse-68m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2016-08_dropbox-credential-reuse-68m/</guid><description/></item><item><title>Dropbox Sign (HelloSign) Breach — Customer Data, API Keys, MFA, OAuth Tokens</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-04_dropbox-sign-mfa-seeds/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-04_dropbox-sign-mfa-seeds/</guid><description/></item><item><title>Dunkin Donuts Credential Stuffing Attack — 325,000 DD Perks Accounts</title><link>https://breachnotes.vulnetix.com/credential-theft/2018-10_dunkin-donuts-credential-stuffing/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2018-10_dunkin-donuts-credential-stuffing/</guid><description/></item><item><title>eHarmony Password Breach — 1.5 Million Unsalted MD5 Hashes Leaked</title><link>https://breachnotes.vulnetix.com/credential-theft/2012-06_eharmony-15m-passwords-leaked/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2012-06_eharmony-15m-passwords-leaked/</guid><description/></item><item><title>eHarmony Password Hash Breach (1.5M Unsalted MD5 Passwords)</title><link>https://breachnotes.vulnetix.com/credential-theft/2012-06_eharmony-passwords-unsalted/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2012-06_eharmony-passwords-unsalted/</guid><description/></item><item><title>Football Australia AWS S3 Bucket IAM Credential Exposure</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-10_football-australia-aws-s3-keys/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-10_football-australia-aws-s3-keys/</guid><description/></item><item><title>Forever 21 POS Malware Breach (7-Month Encryption Failure)</title><link>https://breachnotes.vulnetix.com/credential-theft/2017-11_forever21-pos-malware/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2017-11_forever21-pos-malware/</guid><description/></item><item><title>FTX Bankruptcy AWS Multi-Account Secrets Compromise</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-11_ftx-aws-secrets-compromise/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-11_ftx-aws-secrets-compromise/</guid><description/></item><item><title>GoDaddy WordPress Managed Hosting Breach (1.2M Customers, SSL Keys Exposed)</title><link>https://breachnotes.vulnetix.com/credential-theft/2021-11_godaddy-wordpress-hosting-1m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2021-11_godaddy-wordpress-hosting-1m/</guid><description/></item><item><title>Handala Hacks FBI Director Kash Patel Personal Email — Iranian Intelligence Operation</title><link>https://breachnotes.vulnetix.com/credential-theft/2026-03_handala-iran-fbi-director-kash-patel-email/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2026-03_handala-iran-fbi-director-kash-patel-email/</guid><description/></item><item><title>Hyatt Hotels POS Malware Breach (250 Hotels in 50 Countries)</title><link>https://breachnotes.vulnetix.com/credential-theft/2015-12_hyatt-hotels-pos-malware-250-hotels/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2015-12_hyatt-hotels-pos-malware-250-hotels/</guid><description/></item><item><title>InterContinental Hotels Group (IHG) POS Breach (1,200 Franchise Locations)</title><link>https://breachnotes.vulnetix.com/credential-theft/2017-04_ihg-intercontinental-pos-1200-locations/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2017-04_ihg-intercontinental-pos-1200-locations/</guid><description/></item><item><title>IRS Get Transcript Identity Theft Attack — 100,000+ Taxpayer Accounts</title><link>https://breachnotes.vulnetix.com/credential-theft/2015-01_irs-get-transcript-100k/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2015-01_irs-get-transcript-100k/</guid><description/></item><item><title>Kmart / Sears Holdings POS Malware Breach — Payment Card Data</title><link>https://breachnotes.vulnetix.com/credential-theft/2014-09_kmart-sears-holdings-pos-malware/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2014-09_kmart-sears-holdings-pos-malware/</guid><description/></item><item><title>Last.fm Password Breach — 43 Million Unsalted MD5 Hashes (Discovered 2016)</title><link>https://breachnotes.vulnetix.com/credential-theft/2012-03_lastfm-43m-passwords-breach/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2012-03_lastfm-43m-passwords-breach/</guid><description/></item><item><title>LastPass Second Breach — Source Code Used to Target Employee, Decrypt Customer Vault Backups</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-11_lastpass-devops-keylogger/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-11_lastpass-devops-keylogger/</guid><description/></item><item><title>LendingTree / QuoteWizard data breach via Snowflake (UNC5537 / Sp1d3r)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-05_lendingtree-quotewizard-snowflake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-05_lendingtree-quotewizard-snowflake/</guid><description/></item><item><title>Libyan Oil Refinery Multi-Month Cyberespionage Campaign</title><link>https://breachnotes.vulnetix.com/credential-theft/2026-03_multi-month-cyberespionage-campaign-hits-libyan-oil-refinery/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2026-03_multi-month-cyberespionage-campaign-hits-libyan-oil-refinery/</guid><description/></item><item><title>LiteLLM Cascading Supply Chain Attack — TeamPCP Trivy Credentials Used</title><link>https://breachnotes.vulnetix.com/credential-theft/2026-03_litellm-hit-in-cascading-supply-chain-attack/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2026-03_litellm-hit-in-cascading-supply-chain-attack/</guid><description/></item><item><title>Los Angeles Unified School District (LAUSD) Snowflake Credential Breach</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-06_lausd-snowflake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-06_lausd-snowflake/</guid><description/></item><item><title>Mandiant / Wikipedia / CNBC / BleepingComputer</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-04_snowflake-customers/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-04_snowflake-customers/</guid><description/></item><item><title>Marriott International 2020 Breach — 5.2 Million Guests via Employee Credentials</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-01_marriott-employee-credentials-5-2m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-01_marriott-employee-credentials-5-2m/</guid><description/></item><item><title>Marriott International 2022 Social Engineering Breach — 20GB Data Stolen</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-06_marriott-social-engineering-20gb/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-06_marriott-social-engineering-20gb/</guid><description/></item><item><title>MEDNAX AWS Misconfiguration Breach — 1.3 Million Patients via Phishing</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-06_mednax-office365-phishing-1-3m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-06_mednax-office365-phishing-1-3m/</guid><description/></item><item><title>Mercedes-Benz GitHub Token Exposure — Source Code Repository Access</title><link>https://breachnotes.vulnetix.com/credential-theft/2023-09_mercedes-benz-github-token/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2023-09_mercedes-benz-github-token/</guid><description/></item><item><title>Michaels Stores POS Malware Breach — 2.6 Million Payment Cards</title><link>https://breachnotes.vulnetix.com/credential-theft/2013-01_michaels-stores-pos-malware-26m-cards/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2013-01_michaels-stores-pos-malware-26m-cards/</guid><description/></item><item><title>Michaels Stores POS Malware Breach (2.6M Cards, Aaron Brothers)</title><link>https://breachnotes.vulnetix.com/credential-theft/2013-01_michaels-stores-pos-malware/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2013-01_michaels-stores-pos-malware/</guid><description/></item><item><title>Microsoft corporate email breach by Midnight Blizzard (Nobelium / APT29)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-01_microsoft-midnight-blizzard/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-01_microsoft-midnight-blizzard/</guid><description/></item><item><title>Microsoft LAPSUS$ Breach: Bing, Bing Maps, Cortana Source Code Exfiltrated</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-03_microsoft-lapsus-bing-cortana-source/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-03_microsoft-lapsus-bing-cortana-source/</guid><description/></item><item><title>MyDeal Australia Data Breach — 2.2 Million Customers via Compromised Credentials</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-10_mydeal-australia-2-2m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-10_mydeal-australia-2-2m/</guid><description/></item><item><title>Neiman Marcus data breach via Snowflake (UNC5537)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-05_neiman-marcus-snowflake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-05_neiman-marcus-snowflake/</guid><description/></item><item><title>Neiman Marcus Snowflake Breach - 31M Email Addresses</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-05_neiman-marcus-snowflake-31m-email/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-05_neiman-marcus-snowflake-31m-email/</guid><description/></item><item><title>Nintendo Account Credential Stuffing — 160,000 Accounts Breached</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-04_nintendo-credential-stuffing-160k/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-04_nintendo-credential-stuffing-160k/</guid><description/></item><item><title>Nintendo Network ID (NNID) Credential Stuffing — 160,000 Accounts Compromised</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-04_nintendo-160k-account-takeover/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-04_nintendo-160k-account-takeover/</guid><description/></item><item><title>NVIDIA LAPSUS$ Breach: GPU Designs, DLSS Source Code, 71K Employee Credentials</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-02_nvidia-lapsus-gpu-source-code/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-02_nvidia-lapsus-gpu-source-code/</guid><description/></item><item><title>Okta / Critical Start / Hunters Security</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-01_okta-lapsus/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-01_okta-lapsus/</guid><description/></item><item><title>Okta October 2023 Support System Breach — All Customer Support Users Affected</title><link>https://breachnotes.vulnetix.com/credential-theft/2023-09_okta-support-system-breach/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2023-09_okta-support-system-breach/</guid><description/></item><item><title>Okta Security / BeyondTrust / BleepingComputer</title><link>https://breachnotes.vulnetix.com/credential-theft/2023-10_okta-support-system/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2023-10_okta-support-system/</guid><description/></item><item><title>OneLogin Single Sign-On Breach — Customer Data Decrypted by Attacker</title><link>https://breachnotes.vulnetix.com/credential-theft/2017-05_onelogin-aws-decryption-breach/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2017-05_onelogin-aws-decryption-breach/</guid><description/></item><item><title>P.F. Chang's POS Malware Breach — 2 Million Payment Cards (FIN6)</title><link>https://breachnotes.vulnetix.com/credential-theft/2013-09_pf-changs-pos-malware-2m-cards/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2013-09_pf-changs-pos-malware-2m-cards/</guid><description/></item><item><title>P.F. Chang's POS Malware Breach (2M Cards, FIN6)</title><link>https://breachnotes.vulnetix.com/credential-theft/2013-09_pf-changs-pos-malware/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2013-09_pf-changs-pos-malware/</guid><description/></item><item><title>Radiant Capital DeFi Hack</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-10_radiant-capital-defi-lazarus/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-10_radiant-capital-defi-lazarus/</guid><description/></item><item><title>RBS WorldPay ATM Cashout — First Major Coordinated Global ATM Fraud ($9.4M)</title><link>https://breachnotes.vulnetix.com/credential-theft/2008-11_rbs-worldpay-atm-cashout-9m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2008-11_rbs-worldpay-atm-cashout-9m/</guid><description/></item><item><title>Revolut Social Engineering Attack (50K Customers)</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-09_revolut-social-engineering-50k/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-09_revolut-social-engineering-50k/</guid><description/></item><item><title>Revolut Social Engineering Customer Data Breach — 50,150 Users</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-09_revolut-social-engineering/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-09_revolut-social-engineering/</guid><description/></item><item><title>Robinhood Customer Support Social Engineering Breach (7M Records)</title><link>https://breachnotes.vulnetix.com/credential-theft/2021-11_robinhood-social-engineering-7m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2021-11_robinhood-social-engineering-7m/</guid><description/></item><item><title>Roku credential stuffing attack (576,000 accounts)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-04_roku-credential-stuffing/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-04_roku-credential-stuffing/</guid><description/></item><item><title>Ronin Network / Axie Infinity Lazarus Group Hack ($625M, Largest Crypto Theft)</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-03_ronin-axie-infinity-lazarus-625m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-03_ronin-axie-infinity-lazarus-625m/</guid><description/></item><item><title>Russian GRU DNC / Podesta Email Hack — 2016 US Presidential Election Interference</title><link>https://breachnotes.vulnetix.com/credential-theft/2016-03_gru-dnc-podesta-election-hack/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2016-03_gru-dnc-podesta-election-hack/</guid><description/></item><item><title>Sabre SynXis Central Reservations Breach (1.3M Cards, 36K Hotels)</title><link>https://breachnotes.vulnetix.com/credential-theft/2017-05_sabre-synxis-hospitality-1-3m-cards/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2017-05_sabre-synxis-hospitality-1-3m-cards/</guid><description/></item><item><title>Saks Fifth Avenue / Lord &amp; Taylor FIN7 POS Breach (5M Cards)</title><link>https://breachnotes.vulnetix.com/credential-theft/2018-04_saks-lord-taylor-fin7-5m-cards/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2018-04_saks-lord-taylor-fin7-5m-cards/</guid><description/></item><item><title>Santander Bank data breach via Snowflake (UNC5537 / ShinyHunters)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-04_santander-snowflake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-04_santander-snowflake/</guid><description/></item><item><title>Schnucks Markets POS Malware Breach — 2.4 Million Cards</title><link>https://breachnotes.vulnetix.com/credential-theft/2012-12_schnucks-markets-pos-malware-24m-cards/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2012-12_schnucks-markets-pos-malware-24m-cards/</guid><description/></item><item><title>Service NSW Phishing Breach — 186,000 Customers, 3.8 Million Documents</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-04_service-nsw-phishing-186k/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-04_service-nsw-phishing-186k/</guid><description/></item><item><title>ShadowCrew / Operation Firewall: Underground Carding Forum Takedown (1.7M Cards)</title><link>https://breachnotes.vulnetix.com/credential-theft/2004-10_shadowcrew-operation-firewall/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2004-10_shadowcrew-operation-firewall/</guid><description/></item><item><title>Snapchat Employee Payroll Data Theft via CEO Impersonation</title><link>https://breachnotes.vulnetix.com/credential-theft/2016-02_snapchat-ceo-fraud-payroll/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2016-02_snapchat-ceo-fraud-payroll/</guid><description/></item><item><title>Sonic Drive-In POS Malware Breach (~5M Payment Cards)</title><link>https://breachnotes.vulnetix.com/credential-theft/2017-09_sonic-drive-in-pos-5m-cards/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2017-09_sonic-drive-in-pos-5m-cards/</guid><description/></item><item><title>Spotify Credential Stuffing Attack — ~350K Accounts</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-11_spotify-credential-stuffing-350k/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-11_spotify-credential-stuffing-350k/</guid><description/></item><item><title>Starbucks Partner Central Phishing Breach - 889 Employees</title><link>https://breachnotes.vulnetix.com/credential-theft/2026-01_starbucks-partner-central-phishing/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2026-01_starbucks-partner-central-phishing/</guid><description/></item><item><title>Subway Restaurants POS Malware Breach — 3 Million Cards (Romanian Gang)</title><link>https://breachnotes.vulnetix.com/credential-theft/2011-12_subway-pos-malware-3m-cards/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2011-12_subway-pos-malware-3m-cards/</guid><description/></item><item><title>Sumo Logic AWS Access Key Compromise</title><link>https://breachnotes.vulnetix.com/credential-theft/2023-11_sumo-logic-aws-access-key/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2023-11_sumo-logic-aws-access-key/</guid><description/></item><item><title>T-Mobile / Motherboard Vice / BleepingComputer</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-03_t-mobile-200k-breach/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-03_t-mobile-200k-breach/</guid><description/></item><item><title>T-Mobile 2019 Prepaid Customer Breach (1.26M Accounts)</title><link>https://breachnotes.vulnetix.com/credential-theft/2019-11_tmobile-prepaid-customers/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2019-11_tmobile-prepaid-customers/</guid><description/></item><item><title>TechCrunch / The Register / Group-IB (0ktapus research)</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-08_twilio-0ktapus/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-08_twilio-0ktapus/</guid><description/></item><item><title>Ticketek Australia / TEG Cloud Data Breach</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-05_ticketek-australia-teg-cloud/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-05_ticketek-australia-teg-cloud/</guid><description/></item><item><title>Ticketmaster / Live Nation data breach via Snowflake (UNC5537 / ShinyHunters)</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-04_ticketmaster-snowflake/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-04_ticketmaster-snowflake/</guid><description/></item><item><title>Timehop Social Memory App Breach — 21 Million Users, Access Tokens</title><link>https://breachnotes.vulnetix.com/credential-theft/2018-07_timehop-21m-social-tokens/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2018-07_timehop-21m-social-tokens/</guid><description/></item><item><title>Twitter 2020 Bitcoin Scam: Social Engineering of Admin Tools (130 High-Profile Accounts)</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-07_twitter-bitcoin-scam-vishing/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-07_twitter-bitcoin-scam-vishing/</guid><description/></item><item><title>Twitter Admin Panel Brute-Force: Obama, Britney Spears, Fox News Accounts Hijacked</title><link>https://breachnotes.vulnetix.com/credential-theft/2009-01_twitter-admin-panel-brute-force/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2009-01_twitter-admin-panel-brute-force/</guid><description/></item><item><title>Tycoon2FA Phishing-as-a-Service Platform — AiTM MFA Bypass, Rebound 2026</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-01_tycoon2fa-phishing-as-a-service-aitm/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-01_tycoon2fa-phishing-as-a-service-aitm/</guid><description/></item><item><title>Uber AWS GitHub Credentials Theft — 57 Million Riders and Drivers, $148M Settlement</title><link>https://breachnotes.vulnetix.com/credential-theft/2016-10_uber-github-aws-credentials/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2016-10_uber-github-aws-credentials/</guid><description/></item><item><title>Uber Canada GitHub Credentials — 2014 AWS S3 Breach of 50,000 Driver Records</title><link>https://breachnotes.vulnetix.com/credential-theft/2014-05_uber-github-aws-50k-drivers/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2014-05_uber-github-aws-50k-drivers/</guid><description/></item><item><title>UK Parliament Email Brute-Force Attack (~90 Accounts Compromised)</title><link>https://breachnotes.vulnetix.com/credential-theft/2017-06_uk-parliament-owa-brute-force/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2017-06_uk-parliament-owa-brute-force/</guid><description/></item><item><title>UNC2903 IMDSv1 AWS Instance Metadata Service Abuse</title><link>https://breachnotes.vulnetix.com/credential-theft/2022-06_unc2903-imdsv1-aws-metadata/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2022-06_unc2903-imdsv1-aws-metadata/</guid><description/></item><item><title>UnityPoint Health Phishing Attack — 1.4 Million Patient Records</title><link>https://breachnotes.vulnetix.com/credential-theft/2018-03_unitypoint-health-bec-1-4m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2018-03_unitypoint-health-bec-1-4m/</guid><description/></item><item><title>Verkada Security Camera Network Breach: 150,000 Live Feeds Exposed</title><link>https://breachnotes.vulnetix.com/credential-theft/2021-03_verkada-cameras-jenkins-credentials/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2021-03_verkada-cameras-jenkins-credentials/</guid><description/></item><item><title>Vitagene Unprotected S3 Buckets Expose Genetic and Health Data</title><link>https://breachnotes.vulnetix.com/credential-theft/2016-07_vitagene-s3-unprotected-buckets/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2016-07_vitagene-s3-unprotected-buckets/</guid><description/></item><item><title>Wattpad Data Breach (268M Users, ShinyHunters)</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-07_wattpad-shinyhunters-268m/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-07_wattpad-shinyhunters-268m/</guid><description/></item><item><title>WazirX Cryptocurrency Exchange Hack</title><link>https://breachnotes.vulnetix.com/credential-theft/2024-07_wazirx-lazarus-multisig/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2024-07_wazirx-lazarus-multisig/</guid><description/></item><item><title>Wendy's POS Malware Breach (1,025 Franchise Locations)</title><link>https://breachnotes.vulnetix.com/credential-theft/2016-05_wendys-pos-malware-1025-locations/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2016-05_wendys-pos-malware-1025-locations/</guid><description/></item><item><title>Zoom Credential Stuffing — 500,000 Accounts Sold on Dark Web</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-04_zoom-credential-stuffing-530k/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-04_zoom-credential-stuffing-530k/</guid><description/></item><item><title>Zoom Credential Stuffing — 530K Accounts Sold on Dark Web</title><link>https://breachnotes.vulnetix.com/credential-theft/2020-04_zoom-credential-stuffing-530k-accounts/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://breachnotes.vulnetix.com/credential-theft/2020-04_zoom-credential-stuffing-530k-accounts/</guid><description/></item></channel></rss>