Draft:Account takeover

From Wikipedia, the free encyclopedia

Account takeover (ATO) is a type of cyber crime in which an unauthorized person gains control of a victim's account, typically on an online platform. A stolen account may be used for data theft or various forms of online fraud. According to a 2023 survey, 29% of the U.S. population has been the victim of an account takeover.[1]

Account takeover can be caused by several methods, including:[2][3]

  • Phishing, misleading the victim into giving away their credentials by impersonation.
  • Malware infection on the victim's device with an infostealer, which is able to extract saved passwords and cookies from the browser.
  • Credential stuffing, trying out passwords that are common or were previously breached.

Stolen accounts can be used to then commit various types of fraud.

See also

References

Related Articles

Wikiwand AI