← Back to feed
PhishingEmerging1 sourceSep 10, 2026 · 05:00via Help Net Security

Cybercriminals are building phishing pages that exist only inside victims’ browsers

Brief

A phishing campaign routes victims through genuine Microsoft OAuth and Teams infrastructure before showing them a fake login page built entirely inside their own browser, according to researchers at Barracuda.

“Instead of delivering a phishing page from a web server, the malicious content is assembled inside the victim’s browser using a blob URL — a temporary browser-generated URL that points to content stored locally in memory rather than on a website,” researchers explained. The attack … More →

The post Cybercriminals are building phishing pages that exist only inside victims’ browsers appeared first on Help Net Security .

Read more on Help Net Security→