logo

Bogus recruiters go after high-value corporate credentials on mobile

ID: 4c7e168e-9dab-5b72-84cc-ebc46e226978

STIX ID: report--4c7e168e-9dab-5b72-84cc-ebc46e226978

Feed Name: Help Net Security

Threat Score
70/100

Date Published: 2026-08-26

Date Updated: 2026-08-26

Author: Sinisa Markovic

...
...

Zimperium warns of a recruitment-themed phishing campaign using the browser-in-the-browser (BitB) technique to trick targets into submitting corporate credentials via fake interview scheduling flows and brand-impersonating domains; attackers enforce corporate email use to capture high-value enterprise access, and researchers tracked hosting patterns and published 46 IOCs tied to the activity.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.