IntermediateVocabulary#security#backend#developer-tools

Credential Stuffing Vocabulary

Build fluency in the vocabulary of automated attackers retrying leaked login pairs against a different site.

0 / 5 completed
1 / 5
At standup, a dev mentions attackers taking a leaked list of username-password pairs from one breached site and automatically trying every pair against a login endpoint on a completely different site, hoping some users reused the same password. What is this attack called?