Credential Stuffing
Attackers take credentials exposed in one breach and test them at scale against unrelated services, relying on password reuse rather than on breaking anything. It is one of the most common causes of account takeover. See Why Password Reuse is Dangerous.