logo

Under Siege: The threat of compromised Mobile Device Management credentials and its implications for organizational security

ID: 93632fcf-a08b-510b-9c38-483fe3b7c28f

STIX ID: report--93632fcf-a08b-510b-9c38-483fe3b7c28f

Feed Name: Group-IB Blog

Threat Score
70/100

Date Published: 2024-08-07

Date Updated: 2026-04-28

...
...

Group-IB researchers identified at least 1,500 stolen login/password pairs for web-based Mobile Device Management (MDM) services circulating on the dark web; 27.5% of the compromised MDM consoles were externally accessible across multiple countries, exposing organizations to device takeover, data exfiltration, and remote wipe risks. The report details operational impacts and recommends immediate mitigations: revoke compromised credentials, re-enroll devices, enable multi-factor authentication, and deploy continuous dark-web monitoring and security hygiene.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.