logo

Hackers Exploiting Popular Document Publishing Sites for Phishing Attacks

ID: dd703949-9ae3-5669-b419-de678aa4f365

STIX ID: report--dd703949-9ae3-5669-b419-de678aa4f365

Feed Name: The Hacker News

Threat Score
60/100

Date Published: 2024-03-19

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

Cisco Talos observed threat actors leveraging digital document publishing (DDP) sites (FlipSnack, Issuu, Marq, Publuu, RelayTo, Simplebooklet) to host interactive phishing documents that serve as intermediaries to adversary-controlled pages; attackers exploit free/no-cost accounts, transient publishing, redirects and CAPTCHA solving to evade filters and ultimately harvest Microsoft 365 credentials and session tokens.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.