AITM phishing attack against Enterprise Users
ID: e5b56a70-c7d3-5a2b-bed4-2e4cb7d0c7f3
STIX ID: report--e5b56a70-c7d3-5a2b-bed4-2e4cb7d0c7f3
Feed Name: Zscaler Security Research Blog
Threat Score
Zscaler ThreatLabz reports an active AitM phishing campaign (mid‑July 2022) targeting G Suite/Gmail enterprise users — primarily senior executives — that leverages multi-stage open-redirects, compromised intermediate redirectors, and client-side fingerprinting to evade analysis and intercept MFA; the report documents technical TTPs, infrastructure overlap with a prior Microsoft-targeting campaign, and provides phishing domains and compromised redirector IOCs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
