ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API

The threat actor known as ToddyCat has been attributed to a new malware called Umbrij that’s designed to gain surreptitious access to a victim’s email correspondence via the Google API.

“In this campaign, the attackers focused their attention on corporate email communications hosted on Gmail, targeting access compromise via APIs,” Kaspersky said in a detailed report published this week. “

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Attack Update: Top 5 Attack-IPs auf doode.info – 01.08.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 40.177.252.39 — 1027 requests (recent log) 89.167.35.212 — 317 requests (recent log) 216.244.66.232 — 68 requests (recent

The Watchtower Stands: Self-Hosted Attacks Radar on doode.info

The perimeter is talking back. For too long the logs were just noise. Scripted knocks, dictionary sprays, the endless background radiation of the internet trying doors. I got tired of

Kagi Changelog (July 2): Heads, tails, and an AI toggle

Kagi Changelog (July 2): Heads, tails, and an AI toggle Source: Hacker News