Hackers Leverage Facebook’s Ads Manager to Send Credential Harvesting Links in Phishing Campaign: Avanan
Researchers at Avanan, a Check Point Company, have discovered threat actors using Facebook’s Ads manager to create a lead generation form where users can enter their email addresses and other information to obtain personal assets. As a result of this discover, Avanan has published its newest attack brief analyzing hackers using the legitimacy of Facebook to steal credentials and critical personal information using static expressway techniques to target end users.
This campaign sends emails from what appears to be from Facebook’s (Meta’s) ad manager team claiming that an ad doesn’t comply with their policies. Thus the ad account is disabled, prompting users to create an appeal using the provided link to a lead generation form to rectify the issue.
You can read the brief here.
September 15, 2022 at 8:26 am
[…] Hackers Leverage Facebook’s Ads Manager to Send Credential Harvesting Links in Phishing Campaign: … […]
September 29, 2022 at 11:52 am
[…] few weeks ago, researchers at Avanan observed how threat actors are using the Facebook Ad Manager to send credential harvesting links. Since then, Avanan has continued to see this campaign being used to get into the inbox and steal […]