Infosecurity-Magazine
Operation DoppelBrand Targets Fortune 500 Firms for Credential Theft
First seen 16 Feb 2026, 16:10 UTC
•



+1
•33.3
Export
Article Content
Browse articles
Operation DoppelBrand is a phishing campaign identified by SOCRadar that targets major financial and technology firms, including Wells Fargo and USAA. The campaign, attributed to the financially motivated threat actor GS7, took place between December 2025 and January 2026, with links to prior activities dating back to 2022.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2025-12-01
Operation DoppelBrand campaign begins targeting firms
2026-01-31
Operation DoppelBrand campaign ends
2026-02-16
Operation DoppelBrand publicly reported by SOCRadar
More articles in this cluster
Continue Reading
Major Cyber Attack on Victorian Government Schools Exposes Student Data
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
Massive Ransomware Attack Targets Critical Infrastructure in March 2026
Russian Hackers Exploit Zimbra Zero-Day for Espionage Campaign
Cl0p Ransomware Group Claims Data Theft from Nearly 50 Companies
Operation Escaneo Targets Latin American Critical Infrastructure