Web services giant Aruba defrauded in major phishing scam – here’s what to watch out for to stay safe


  • Cybercriminals spoofed Aruba using a stealthy, automated phishing framework with CAPTCHA and Telegram bots
  • Phishing sites impersonated Aruba’s webmail portal and stole credentials via fake service alerts
  • Aruba’s large user base made it a valuable target for industrial-scale credential theft

Security researchers Group-IB have published details of a new scam targeting Aruba users, which turned out to be part of a “sophisticated phishing framework”.

The team found that cybercriminals had created a “fully automated, multi-stage platform” that provides both efficiency and stealth, using CAPTCHA filtering to avoid security scans, pre-filling victim data to increase credibility, and using Telegram bots to exfiltrate stolen credentials and payment information.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top