Blog
Why BitB Attacks are Concerning
By Jessica Ryan on Thu, 05/05/2022
PhishLabs has identified a Browser-in-the-Browser (BitB) campaign targeting financial institutions with a fake Office 365 (O365) authorization protocol. The attack is delivered via phishing email and redirects the victim to a website impersonating an O365 single sign-on (SSO) page.
A BitB attack is a novel phishing technique that replicates pop-up windows used for SSO in an effort to steal login...