Google Forms Exploited by BazarCall Scammers in Sophisticated Phishing Scheme

1 min read
Source: The Hacker News
Google Forms Exploited by BazarCall Scammers in Sophisticated Phishing Scheme
Photo: The Hacker News
TL;DR Summary

The BazaCall phishing scammers have started using Google Forms to enhance the credibility of their attacks. By impersonating popular subscription services like Netflix and Norton, the scammers send emails urging targets to contact a support desk to dispute or cancel a plan. In the latest attack variant, a Google Form is used to share details of the supposed subscription, with response receipts enabled to send a copy of the form to the target. The use of Google Forms and dynamically generated URLs helps bypass traditional security measures. In a separate phishing campaign, recruiters are being targeted with direct emails that lead to the More_eggs JavaScript backdoor, attributed to a financially motivated threat actor known as TA4557.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

2 min

vs 3 min read

Condensed

80%

582116 words

Want the full story? Read the original article

Read on The Hacker News