New Phishing Platform Used in Credential Theft Campaigns Against C-Suite Execs
2026-04-03T14:52:21Z•b12af7e5d3c60e97f336eb64edb4ac4c83fcdfa89cfac41ebea555a35f624f90
AiTMMaaScitrix-netscalercredential-theftethereum-c2f5-big-ipgithub-c2infostealerios-exploit-kitnpm-compromisephishingpypi-compromiseransomwaresupply-chainurgent-patching
What happened
Multiple active campaigns and exploited vulnerabilities pose elevated risk: a new automated phishing platform (Venom) and Venom Stealer MaaS are driving large-scale credential and crypto theft targeting executives; modern infostealers (Storm, Phantom, DeepLoad) and AiTM phishing campaigns against services like TikTok for Business are evading controls; supply-chain compromises (axios npm, TeamPCP PyPI/telnyx, LiteLLM) and GitHub-used C2 techniques are spreading RATs and stealers; EtherRAT and other malware hide C2 in smart contracts. Critically, attackers are actively exploiting high-severity,
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- b12af7e5d3c60e97f336eb64edb4ac4c83fcdfa89cfac41ebea555a35f624f90
- Enrichment time
- 2026-04-03T14:52:21Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.