Product
Supabase
- First Reported
- Jul 14, 2026
- Latest Reported
- Aug 19, 2026
Reported Context (2)
- impersonate OKX, Rabby Wallet, TronLink, and other Web3 products. Seven use threat actor-controlled Supabase projects as remote switches for phishing content. 15 capture recovery phrases, private keys, or other Socket Links 77 Firefox Extensions to Crypto Wallet and Credential Theft
- Multinational Telecom & Edge Device Manufacturer: Publicly accessible JavaScript files contained hardcoded Supabase anon keys, and Azure Logic App SAS tokens. Hunt.io Details Suspected China-Linked Campaign Using Claude Code and DeepSeek Against Government Systems
Malware (2)
MITRE ATT&CK (18)
Vendors (9)
Products (12)
Tools (8)
Industries (7)
Countries (6)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.