DataSans
Phishing

Open Redirects Exploited for Phishing

Attackers are exploiting open redirects to distribute links to credential-harvesting sites, according to Roger Kay at INKY. The attackers are exploiting vulnerable American Express and Snapchat domains to launch the attacks. American Express has since fixed the vulnerability, but Snapchat’s domain remains unpatched.

originally published onhttps://blog.knowbe4.com/open-redirects-exploited-for-phishing

Related posts

U.K.’s National Health Service Becomes the Latest Victim of a Credential Harvesting Phishing Operation

administrator

Domains Associated with Phishing Directed Against Ukraine

administrator

DPRK Operators Impersonate CoinBase

administrator