Scmagazine
Phishing Campaign Exploits PDFs and Dropbox for Credential Theft
First seen 3 Feb 2026, 08:35 UTC
•

•24.3
Export
Article Content
Browse articles
A phishing campaign has been identified that uses PDF attachments to steal Dropbox credentials. The attack initiates with procurement-themed emails containing PDFs that bypass link-scanning security, redirecting victims to fake Dropbox login pages. This multi-stage attack leverages trust in Dropbox and employs a layered redirection technique.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Gamaredon APT Escalates Cyber Operations Against Ukraine in 2025
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
Russian GRU Hackers Use Fake CAPTCHAs to Compromise Ukrainian Users
OceanLotus Shifts Focus to Domestic Espionage with SPECTRALVIPER Attacks
ScarCruft's Supply-Chain Attack Targets Yanbian Gaming Platform with BirdCall Malware
Russian Cyber Espionage Clusters Exploit OAuth and Phishing Techniques