logo

SMS and OTP Bombing Campaigns Found Abusing API, SSL and Cross-Platform Automation

ID: ad51313b-67dc-5e4b-8bf2-e41f5f426ca2

STIX ID: report--ad51313b-67dc-5e4b-8bf2-e41f5f426ca2

Feed Name: The Cyber Express

Threat Score
70/100

Date Published: 2026-02-12

Date Updated: 2026-04-23

Author: Ashish Khaitan

...
...

The report analyzes the evolution and scale of SMS/OTP and voice-bombing tools and services — from terminal scripts to cross-platform automation and commercial web platforms — that abuse vulnerable authentication APIs (≈843 endpoints observed) with widespread SSL-bypass, proxy rotation, CAPTCHA circumvention and automation, concentrating activity in Iran, India and parts of Eastern Europe and producing measurable financial, operational and MFA-security impacts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.