> Bogus recruiters go after high-value corporate credentials on mobile
[AUTHOR: Sinisa Markovic]
[DATE: 26/08/2026 10:05]
[LANGUAGE: EN]
Scammers posing as HR staff at well-known companies are running interview scheduling scams that end with a stolen corporate password, according to Zimperium. Attackers are using a technique called browser-in-the-browser, or BitB, which CTM360 documented in earlier research on recruitment phishing. They scrape public profile data and use it to craft convincing scheduling flows designed to get past a target’s skepticism. Only corporate accounts get through BitB works on a desktop because it can mimic … More →
The post Bogus recruiters go after high-value corporate credentials on mobile appeared first on Help Net Security.