Okta releases info that they have seen an uptick in credential stuffing

https://arstechnica.com/security/2024/04/everyday-devices-are-used-to-hide-ongoing-account-compromise-campaign/

Authentication service Okta is warning about the “unprecedented scale” of an ongoing campaign that routes fraudulent login requests through the mobile devices and browsers of everyday users in an attempt to conceal the malicious behavior.

I’m not too surprised that this happening. Combined with the fact most average users reuse passwords on various websites, this is definitely not a good thing.