Automated credential stuffing attacks targeted the central mySA Gov digital driver’s licensing portal. Malicious actors successfully accessed numerous citizen digital dashboards by reusing passwords stolen from completely separate historical breaches.