Hackers hijack Google Ads to spread phishing campaign spoofing top GoDaddy tool



  • Cybercriminals are abusing Google Ads to lure ManageWP users to fake login pages
  • The phishing flow captures credentials and 2FA codes, relaying them to attacker‑controlled Telegram accounts
  • Researchers found a custom Russian‑language phishing framework, with at least 200 confirmed victims so far

Cybercriminals are targeting ManageWP users through a series of malicious Google Ads sponsored search results, security researchers have claimed.

ManageWP is GoDaddy’s cloud-based service that lets users manage multiple WordPress sites from a single dashboard. Its users include web developers, agencies running multiple websites for their clients, and enterprises needing more than one site for their business. According to data on WordPress.org, ManageWP’s plugin is installed on more than a million active websites.

https://cdn.mos.cms.futurecdn.net/rsstAB5QjUqoXwXYPEgT7d-1920-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img