Phishing Campaign Exploits PDFs and Dropbox for Credential Theft

Phishing Campaign Exploits PDFs and Dropbox for Credential Theft

First seen 3 Feb 2026, 08:35 UTC ScmagazineCsoonlineInfosecurity-Magazine 24.3

Article Content

Browse articles
ThreatCluster

A phishing campaign has been identified that uses PDF attachments to steal Dropbox credentials. The attack initiates with procurement-themed emails containing PDFs that bypass link-scanning security, redirecting victims to fake Dropbox login pages. This multi-stage attack leverages trust in Dropbox and employs a layered redirection technique.