Push Security has uncovered a new AiTM phishing campaign targeting TikTok for Business accounts using Google and TikTok themed login pages
New Wave of AiTM Phishing Targets TikTok for Business
Push Security discovered an adversary-in-the-middle (AiTM) phishing campaign targeting TikTok for Business accounts by impersonating Google and TikTok login pages. The attack aims to steal credentials and session tokens, potentially compromising business accounts and associated data.