{"success":true,"data":{"id":"credential-stuffing-lure-subject","label":"Fake security alert from unknown sender","description":"Subject describes unusual sign-in activity, suspicious login, a breach, or account access attempts — but the sender is not a recognised service provider (Google, Microsoft, Apple, GitHub, etc.). Real security alert emails always originate from the service's own domain; the same wording from an unknown sender is a credential-harvest phishing lure.","tier":"danger","category":"subject","isThin":false}}