Russian-speaking attackers stole the credentials via “Qbot” malware that they installed on 500,000 PCs. 59 percent of the stolen credentials are tied to accounts at five of the largest U.S. financial services firms. Experts say an online banking credential theft of this magnitude isn’t unusual, especially for banks that don’t offer two-factor authentication. Some of the compromised PCs are inside financial institutions’ networks, meaning attackers could potentially launch APT attacks against businesses from inside their own firewalls.”]
Source: https://www.bankinfosecurity.com/hackers-grab-800000-banking-credentials-a-7416

