DataSans
Phishing

Open Redirects Exploited for Phishing

Attackers are exploiting open redirects to distribute links to credential-harvesting sites, according to Roger Kay at INKY. The attackers are exploiting vulnerable American Express and Snapchat domains to launch the attacks. American Express has since fixed the vulnerability, but Snapchat’s domain remains unpatched.

originally published onhttps://blog.knowbe4.com/open-redirects-exploited-for-phishing

Related posts

Pre-Hijacking of Online Accounts are the Latest Method for Attackers to Impersonate and Target

administrator

40% of CSOs say Their Organization is Not Prepared for Cyberattacks as Phishing is the Top Likely Cause of Breaches

administrator

Holiday Shopping and Phishing-as-a-Service

administrator