Browser-in-the Browser sextortion scam
ID: af25f539-51a1-55e0-bcb8-79d1b53258a8
STIX ID: report--af25f539-51a1-55e0-bcb8-79d1b53258a8
Feed Name: Zscaler Security Research Blog
**Executive Summary:** This report documents a Browser-in-the-Browser (BITB) phishing campaign impersonating an Indian government site to coerce victims into paying fines and submitting credit-card and OTP details; it details technical TTPs (fullscreen fake browser chrome, browser fingerprinting, focus-stealing, keystroke blocking, anti-debugging), demonstrates active exfiltration to supernight.world/gateway.php, and lists multiple malicious domains and IPs observed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
