Scammers trick over 500,000 victims with fake Google, Bing ads to steal personal information


  • Payroll Pirates spoofed HR platforms via ads to steal credentials and MFA codes
  • Over 200 platforms were targeted, affecting around half a million users
  • Telegram bots enabled real-time phishing, infrastructure spanning Kazakhstan, Vietnam and obfuscated domains

Fraudsters have spoofed payroll systems, credit unions and trading platforms across the US in an attempt to steal login credentials and multi-factor authentication (MFA) codes, experts have warned.

Check Point cyber security researchers called the perpetrators ‘Payroll Pirates’, who use paid ads on popular networks such as Google or Bing to advertise fake payroll and HR portals.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top