DataSans
Phishing

Open Redirects Exploited for Phishing

Attackers are exploiting open redirects to distribute links to credential-harvesting sites, according to Roger Kay at INKY. The attackers are exploiting vulnerable American Express and Snapchat domains to launch the attacks. American Express has since fixed the vulnerability, but Snapchat’s domain remains unpatched.

originally published onhttps://blog.knowbe4.com/open-redirects-exploited-for-phishing

Related posts

Office 365 “Spam Notification” Phishing Emails Seek to Capture Credentials

administrator

Phishing Campaign Impersonates the UAE

administrator

Cash App Scams Strikes Again With New Types of Attacks

administrator