Scworld
ToddyCat APT Enhances Techniques for Email Compromise
First seen 26 Nov 2025, 18:31 UTC
•
•85% similarity
•26.3
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
The ToddyCat advanced persistent threat group has updated its methods to target Outlook emails and Microsoft 365 access tokens. Kaspersky Labs reported that between late 2024 and early 2025, ToddyCat refined its toolkit to capture email archives and access tokens, moving beyond previous tactics that focused on browser credentials.
ThreatCluster AI