Google API is a technology platform tracked across 2 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed May 8, 2026; most recent activity July 2, 2026.
The newly discovered PCPJack malware framework is actively targeting cloud environments to steal credentials while removing remnants of the TeamPCP cybercrime group. This worm exploits exposed services such as Docker,…
ToddyCat, an advanced persistent threat group, has adapted its tactics to exploit OAuth-based authorization flows, allowing them to compromise Gmail accounts without stealing user credentials. The group utilizes a…