Phishing Scam Uses Clean Emails and PDFs to Steal Dropbox Logins
ID: 6108bdbc-6b1d-5718-a652-d6f3d3610179
STIX ID: report--6108bdbc-6b1d-5718-a652-d6f3d3610179
Feed Name: HackRead
Threat Score
### Executive Summary Forcepoint researchers uncovered a coordinated phishing campaign that embeds hidden clickable elements in professional PDF attachments to redirect users through Vercel Blob-hosted content to a realistic fake Dropbox login page; credentials, IP/location, and device data are captured and sent to a hardcoded Telegram bot while victims see a misleading error message.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
