Miles Away from Safety: The Frequent Flyer Fraud
ID: 5322a3af-7bbe-5e7a-8d4a-aefcbfc1ba91
STIX ID: report--5322a3af-7bbe-5e7a-8d4a-aefcbfc1ba91
Feed Name: CloudSEK Blog
This report analyzes the exploitation of airline loyalty accounts for money laundering and value extraction, detailing how threat actors source credentials from breaches and infostealer logs, automate sales via Telegram bots, and scale account takeovers with credential stuffing tools like OpenBullet. It notes underground marketplace activity and example wallet transactions, and recommends defenses including MFA on customer endpoints, shorter session lifetimes, dark web credential monitoring, and robust behavioral detection on public logins.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
