Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Over 100 Organizations Targeted in ShinyHunters Phishing Campaign

Over 100 Organizations Targeted in ShinyHunters Phishing Campaign

Posted on January 27, 2026January 27, 2026 By CWS

Many main organizations seem to have been focused in a current cybercrime marketing campaign linked to the ShinyHunters group, based on safety agency Silent Push.

Over the previous 30 days, Silent Push has recognized domains suggesting that the risk actors have been getting ready or conducting assaults in opposition to no less than 100 organizations in sectors corresponding to software program and expertise, monetary, biotech and pharma, monetary providers, actual property, power and utilities, healthcare, logistics and transportation, manufacturing, retail, and insurance coverage.

Silent Push has named main firms corresponding to Atlassian, Adyen, Canva, Epic Video games, HubSpot, Moderna, ZoomInfo, GameStop, WeWork, Halliburton, Sonos, and Telstra.

The hackers have arrange pretend domains concentrating on these firms, but it surely’s unclear whether or not any assaults had been carried out or whether or not their makes an attempt to realize entry to techniques had been profitable.

Within the marketing campaign, the cybercriminals used voice phishing (vishing) to focus on single sign-on (SSO) accounts related to Okta and different id platforms. 

In assaults noticed by Okta and others, risk actors used specialised phishing kits that allow them to intercept credentials and trick victims into serving to them bypass multi-factor authentication. Commercial. Scroll to proceed studying.

“Essentially the most vital of those options are client-side scripts that permit risk actors to regulate the authentication circulate within the browser of a focused person in real-time whereas they ship verbal directions or reply to verbal suggestions from the focused person,” Okta defined.

It added, “It’s this real-time session orchestration that delivers the plausibility required to persuade the risk actor’s goal to approve push notifications, submit one time passcodes (OTP) or take different actions the risk actor must bypass MFA controls.”

ShinyHunters is the public-facing entity that has taken credit score for the assaults, however Silent Push has attributed the marketing campaign — primarily based on TTPs — to Scattered LAPSUS$ Hunters, the group shaped final yr by Lapsus$, Scattered Spider, and ShinyHunters members. 

On the ShinyHunters leak web site, the cybercriminals just lately listed firms corresponding to Betterment, Crunchbase, and SoundCloud, all of which have confirmed struggling a knowledge breach.

Alon Gal, CTO of risk intelligence agency Hudson Rock, realized from ShinyHunters that these are victims of the Okta SSO vishing marketing campaign. The hackers have launched thousands and thousands of information allegedly stolen from these firms. 

Associated: Google Warns of Vishing, Extortion Marketing campaign Focusing on Salesforce Clients

Associated: Organizations Warned of Rise in Okta Help Phishing Assaults

Associated: Safety Trade Skeptical of Scattered Spider-ShinyHunters Retirement Claims

Security Week News Tags:Campaign, Organizations, Phishing, ShinyHunters, Targeted

Post navigation

Previous Post: ClickFix Attacks Expand Using Fake CAPTCHAs, Microsoft Scripts, and Trusted Web Services
Next Post: Hackers are Leveraging SEO Poisoning to Attack Users Looking for Legitimate Tools

Related Posts

India Rolls Back Order to Preinstall Cybersecurity App on Smartphones India Rolls Back Order to Preinstall Cybersecurity App on Smartphones Security Week News
Zip Security Raises .5 Million in Series A Funding Zip Security Raises $13.5 Million in Series A Funding Security Week News
Microsoft Disables Downloaded File Previews to Block NTLM Hash Leaks Microsoft Disables Downloaded File Previews to Block NTLM Hash Leaks Security Week News
Zero-Day Vulnerability in Gogs Allows Remote Code Execution Zero-Day Vulnerability in Gogs Allows Remote Code Execution Security Week News
Michelin Acknowledges Data Breach from Oracle EBS Attack Michelin Acknowledges Data Breach from Oracle EBS Attack Security Week News
Apple Resolves Numerous Security Flaws in Latest Updates Apple Resolves Numerous Security Flaws in Latest Updates Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • AI-Powered Cyberattack Targets Taiwan Government
  • Ivanti EPM Update Resolves Critical Security Flaws
  • Adobe ColdFusion Flaws Pose Severe Security Risks
  • WhatsApp Introduces Scam Alert to Enhance Security
  • Enterprise Security Shows Strength at Edge, Weakness Within

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • AI-Powered Cyberattack Targets Taiwan Government
  • Ivanti EPM Update Resolves Critical Security Flaws
  • Adobe ColdFusion Flaws Pose Severe Security Risks
  • WhatsApp Introduces Scam Alert to Enhance Security
  • Enterprise Security Shows Strength at Edge, Weakness Within

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark