Spear-Phishing Campaign Exploits Glitch Platform to Steal Credentials

Spear-Phishing Campaign Exploits Glitch Platform to Steal Credentials

A long-term phishing scam campaign is targeting employees of large corporations with emails containing PDFs linked to Glitch’s apps that host credential-harvesting SharePoint’s phishing pages.

The malicious activity propagated by the PDFs is a link to Glitch apps hosting phishing pages that included obfuscated JavaScript for stealing credentials.

The campaign seems to be targeting only employees working in the Middle East as a single campaign. It appears to be in a series of similar, SharePoint-themed phishing scams. 

Read More: Threatpost

For more such updates follow us on Google News ITsecuritywire News