Open-Source Project Exploited for Large-Scale Phishing Campaign

TL;DR. An open-source project management tool was exploited by a botnet to send over 14,000 phishing invitations. - The attackers created nearly a thousand fake workspaces, each with a phishing subject line. - Invitations were sent from the project's verified domain, directing users to a scam site. - The incident highlights vulnerabilities in hosted open-source platforms and cloud service security.

Sources

Back to QLANKR News