Fixed Intel
Aggregated IntelVulnerabilities

A React-based phishing page with credential exfiltration via EmailJS, (Fri, Mar 13th)

On Wednesday, a phishing message made its way into our handler inbox that contained a fairly typical low-quality lure, but turned out to be quite interesting in the end nonetheless. That is because the accompanying credential stealing web page was dynamically constructed using React and used a le...

FIFixed Intel Team||1 min read|6 Views

Aggregated from SANS ISC

This article was automatically aggregated from an external source. Content may be summarized.

Read Original

Full Analysis

On Wednesday, a phishing message made its way into our handler inbox that contained a fairly typical low-quality lure, but turned out to be quite interesting in the end nonetheless. That is because the accompanying credential stealing web page was dynamically constructed using React and used a legitimate e-mail service for credential collection.

Source: SANS ISC

Original Source

SANS ISC