CTM360 Uncovers Over 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser (BitB) Credential Traps

August 17, 2026 1 Min Read 0

Threat Intelligence Brief

Curated summary with source attribution

Source: thehackernews.com

Threat Risk: High
Victim: Corporate marketing professionals
Incident: A global recruitment-themed phishing campaign using BitB and MFA relay techniques.
Impact: Unauthorized access to corporate advertising platforms, social media profiles, and sensitive business data.
Attacker: Unidentified threat actors
Analysis: The campaign employs a sophisticated state-machine backend to guide targets through a realistic, staged authentication process. By using Browser-in-the-Browser (BitB) techniques, attackers simulate trusted login windows to steal Google and Facebook credentials. The most critical aspect is the MFA relay capability, which allows attackers to capture and use one-time passwords in real time to bypass secondary security layers.
Recommendations: Transition to FIDO2-compliant hardware security keys to neutralize MFA relay attacks.; Train staff to scrutinize recruitment invitations and verify identities through official corporate channels.; Implement advanced email security filters to detect and block unsolicited external recruitment lures.
Source: The Hacker News / CTM360

Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source

Leave a Reply

Your email address will not be published. Required fields are marked *