logo

ReliaQuest confirms failed data-theft attack after ShinyHunters breach

ID: 2dc0628e-0051-54e8-afa0-d4e47a13db6a

STIX ID: report--2dc0628e-0051-54e8-afa0-d4e47a13db6a

Feed Name: Bleeping Computer

Threat Score
45/100

Date Published: 2026-08-24

Date Updated: 2026-08-24

Author: Bill Toulas

...
...

ReliaQuest confirmed a failed social-engineering attack in which actors impersonating security staff used a fake SSO page hosted on a lookalike reliaquest.claims domain and vishing to trick an employee into submitting credentials and approving an MFA push; the attacker gained temporary view-only access to the Okta identity dashboard but was blocked from accessing applications by device-trust controls, no customer data or persistence was found, and ShinyHunters subsequently published screenshots claiming the incident.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.