Get a Pentest and security assessment of your IT network.

News

Google Searches Expose Stolen Corporate Credentials

Attackers behind phishing campaign have unintentionally left more than 1,000 stolen credentials available online via simple Google searches, researchers have found. The campaign, which began in August 2020, used e-mails that spoof notifications from Xerox scans to lure victims into clicking on malicious HTML attachments. The attackers stored the stolen credentials in designated webpages on compromised servers. Google constantly indexes the internet, the search engine also indexed these pages, making them available to anyone who queried Google for a stolen email address.

Source: https://threatpost.com/attackers-leave-stolen-credentials-google-searches/163220/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Vulnerabilities In Alibaba threatens security of million users

News

Russian cybercriminal Roman Seleznev gets another prison sentence