Web services giant Aruba spoofed in major phishing scam: Here’s what to watch out for to stay safe


  • Cybercriminals spoofed Aruba using a stealthy, automated phishing framework with CAPTCHA and Telegram bots.
  • Phishing pages imitate Aruba’s webmail portal, stealing credentials through fake service alerts.
  • Aruba’s large user base has made it a high-value target for industrial-scale credential theft.

Security researchers at Group-IB have released details of a new scam targeting Aruba users that turned out to be part of a “sophisticated phishing framework.”

The team found that cybercriminals had created a “fully automated, multi-step platform” that offered both efficiency and stealth, using CAPTCHA filtering to evade security scans, pre-populating victims’ data to increase credibility, and using Telegram bots to exfiltrate stolen credentials and payment information.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top