216.73.216.6

Microsoft advertisers phished via malicious Google ads

· Published 31/01/2025 09:50 · Modified 31/01/2025 10:07

Export JSON

Essential information

Published
31/01/2025 09:50
Modified
31/01/2025 10:07
Tags
2025-01-31 credential-theft google ads phishing
Related entities
101 observables, 7 techniques (mitre), 3 others

Description

Malicious actors are targeting Microsoft advertisers through fraudulent , aiming to steal login credentials for Microsoft's advertising platform. The campaign involves sophisticated techniques like cloaking, Cloudflare challenges, and redirection chains to evade detection. pages imitate the Microsoft Advertising platform, attempting to bypass 2-Step verification. The attack appears to be part of a larger, long-running campaign potentially affecting multiple advertising platforms. Users are advised to verify URLs carefully, use 2-Step verification wisely, monitor accounts regularly, and report suspicious ads. The article provides numerous indicators of compromise, including malicious domains associated with the campaign.

External references