A Google AppSheet has been used as a “phishing relay” by a recently uncovered Vietnamese-affiliated organization to disseminate phishing emails with the intention of compromising Facebook accounts.
Guardio has dubbed the practice “AccountDumpling,” and it involves the threat actors using an illegal storefront to sell the stolen accounts back. It is estimated that the effort involved the hacking of about 30,000 Facebook accounts.
In a study shared with The Hacker News, security researcher Shaked Chen stated, “What we found wasn’t a single phishing kit.” With real-time operator panels, sophisticated evasion, ongoing evolution, and a criminal-commercial cycle that stealthily feeds on the same accounts it helps steal back, it was a live enterprise.
The results are merely the most recent illustration of how Vietnamese threat actors continue to use a variety of strategies to obtain unlawful access to victims’ Facebook accounts, which are subsequently sold for money on underground ecosystems read more about 30000 Facebook Accounts Hacked via Google AppSheet Phishing Campaign
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
