A long-term phishing scam campaign is targeting employees of large corporations with emails containing PDFs linked to Glitch’s apps that host credential-harvesting SharePoint’s phishing pages.
The malicious activity propagated by the PDFs is a link to Glitch apps hosting phishing pages that included obfuscated JavaScript for stealing credentials.
The campaign seems to be targeting only employees working in the Middle East as a single campaign. It appears to be in a series of similar, SharePoint-themed phishing scams.
Read More: Threatpost
For more such updates follow us on Google News ITsecuritywire News