Cybercriminals Use Webflow to Deceive Users into Sharing Sensitive Login Credentials
Researchers in cybersecurity have cautioned about an increase in phishing pages made with Webflow, a website builder tool, as threat actors continue to take advantage of genuine services like Microsoft Sway and Cloudflare.
According to an analysis by researcher Jan Michael Alcantara of Netskope Threat Labs, the campaigns target login credentials for various corporate webmail platforms, Microsoft 365 login credentials, and sensitive data from various cryptocurrency wallets, such as Coinbase, MetaMask, Phantom, Trezor, and Bitbuy.
According to the cybersecurity firm, between April and September 2024, the number of visitors to phishing pages created with Webflow increased tenfold, and the attacks targeted over 120 enterprises worldwide read more about Cybercriminals Use Webflow to Dece...


