Frequency
3
occurrences
First Seen
July 1, 2026
Last Seen
July 2, 2026
Related Threat Clusters
-
ToddyCat Exploits OAuth to Compromise Gmail Accounts Using Umbrij Malware
ToddyCat, an advanced persistent threat group, has adapted its tactics to exploit OAuth-based authorization flows, allowing them to compromise Gmail accounts without stealing user credentials. The group utilizes a…
4 articles · Updated July 2, 2026
Recent Intelligence Reports
- ToddyCat APT uses remote debugging to hijack Gmail OAuth tokens — Feeds.4Sysops · July 2, 2026
- ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API — Thehackernews · July 2, 2026
- ToddyCat Uses Shadow Token via Remote Debug to Compromise Gmail Accounts — Gbhackers · July 1, 2026