threat-intel CTM360 Uncovers Over 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser (BitB) Credential Traps A large-scale phishing campaign, dubbed RecruitTrap, is targeting over 3,000 recruitment-related URLs to steal Google and Facebook credentials, and in some cases, relay MFA prompts in real-time. The campaign uses Browser-in-the-Browser (BitB) techniques to mimic legitimate recruitment portals and scheduling pages, leve… The Hacker News · Aug 14, 2026 High phishingbrowser-in-the-browsercredential-theft
threat-intel How legitimate cloud platforms enable phishers to bypass MFA Threat actors are increasingly leveraging legitimate cloud platforms – like Cloudflare, Vercel, Netlify, and GitHub Pages – to conduct sophisticated phishing attacks. These attacks utilize multi-stage adversary-in-the-mi… Securelist · Aug 4, 2026 High phishingaitmbitb