logo

Browser-in-the Browser sextortion scam

ID: af25f539-51a1-55e0-bcb8-79d1b53258a8

STIX ID: report--af25f539-51a1-55e0-bcb8-79d1b53258a8

Feed Name: Zscaler Security Research Blog

Threat Score
60/100

Date Published: 2025-07-03

Date Updated: 2026-05-01

...
...

**Executive Summary:** This report documents a Browser-in-the-Browser (BITB) phishing campaign impersonating an Indian government site to coerce victims into paying fines and submitting credit-card and OTP details; it details technical TTPs (fullscreen fake browser chrome, browser fingerprinting, focus-stealing, keystroke blocking, anti-debugging), demonstrates active exfiltration to supernight.world/gateway.php, and lists multiple malicious domains and IPs observed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.