Chroniclelive Phishing Campaign Targets Job Seekers with Fake Disney and Coca-Cola Ads
Article Content
- •Over 800 phishing domains impersonate major brands like Disney and Coca-Cola.
- •Scammers target job seekers, particularly in marketing and communications roles.
- •Fake login pages convincingly mimic legitimate sites to capture credentials.
A phishing campaign is using fake job interview invitations from Disney and Coca-Cola to steal passwords and workplace logins. Cybersecurity researchers at NordVPN have identified 813 phishing domains linked to this operation, which impersonates recruiters from over 75 major companies, including Nike, Nvidia, and Adobe. The scam typically starts with an email or message from someone posing as a recruiter, often using the name and photo of a real employee. Victims are directed to a fake Calendly-like page to schedule interviews and are then prompted to log in using Google credentials. The fraudulent login window can convincingly mimic legitimate sites, allowing attackers to capture passwords and verification codes in real-time. The campaign appears to specifically target individuals in marketing and communications roles, where compromised accounts can lead to significant corporate access. Experts emphasize the need for job seekers to verify unexpected recruitment approaches independently. The sophistication of these scams is increasing, making it crucial for candidates to remain vigilant.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Adidas in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
Who is targeted by this phishing campaign?
How can I verify a job offer is legitimate?
What should I do if I entered my credentials on a fake site?
Continue Reading
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…