A new phishing campaign has emerged, specifically targeting high-profile US executives. This campaign takes advantage of open redirects from the jobs platform Indeed and employs EvilProxy to pilfer session cookies. Stolen session cookies bypass all authentication mechanisms, including multi-factor authentication (MFA), potentially granting unauthorized access to attackers.
Get through updates and upcoming events, and more directly in your inbox