Cyber Criminal Microsoft Advertising Accounts are exploiting Google search advertisements to steal credentials, revealing a sophisticated fishing plan that is probably active for years.
Big picture. The attackers created malicious Google advertisements while imitating the official platform of Microsoft Advertisement. The campaign redempts users through complex networks to steal login information. Researchers discovered potential infrastructure
how it works. Hackers use a multi-step process to bypass safety:
- Create sponsored search results that look like valid microsoft advertisements.
- Apply clooking techniques to detect bot.
- Use cloudflare verification to make more authentic look.
- Introduce a solid fishing page copying the login screen of Microsoft.
Why do we care? This danger is important because it can compromise advertising accounts, potentially for financial losses, iconic damage and disintegration of important marketing functions on digital platforms.
protect yourself
- Carefully verify the URL before entering credentials.
- Use two-work authentication wisely.
- Monitor advertising accounts regularly.
- Report suspicious advertisements.
What will happen next? Cyber security firms are investigating its widespread implications Phishing infrastructureWhich spreads many countries and platforms.
Ground level. Since the online advertisement becomes more complex, do techniques used by cyber criminal to take advantage of it.
Search engine new on land