Threat actors successfully compromised an employee's personal Google account, gaining access to synchronized corporate credentials. After executing an extensive multi-factor authentication (MFA) fatigue attack, the Yanluowang ransomware group infiltrated the internal corporate network and exfiltrated 2.8 gigabytes of non-sensitive directory data.