Skip to main content

Phishing, fraud, and impersonation

Credential Stuffing

Credential stuffing is when hackers use stolen or leaked usernames and passwords from one online account to try to break into others. Many people reuse usernames and passwords across multiple services, so attackers use automated bots to try to gain access to different accounts with the stolen logins. In a credential stuffing attack, once an account is compromised, attackers can steal sensitive data and carry out other malicious activities.