The campaign targets agency staff, media buyers, and administrators whose accounts extend to multiple downstream clients. Once compromised, attackers can spend available balances on fraudulent ad campaigns or resell the accounts for significant sums.
The phishing pages claim to offer AI-powered advertising assistance, but clicking the "connect" button opens a fake Google login window inside the page using the browser-in-the-browser (BitB) technique. The fake window displays a realistic address bar showing accounts.google.com.
Researchers found that a human operator takes over the process after the victim enters the BitB flow. The operator may request password entry up to three times, ask for an SMS or authenticator code to bypass MFA protections, display Okta push requests, show Google approval prompts, or display a QR code. Operators can reject submitted codes, hold victims on a waiting screen, or end the phishing flow at any time.
The campaign leverages the recent launch of Meta's Muse AI agent as a lure. By examining the infrastructure, researchers discovered that the operation is part of a larger campaign using multiple lures such as fake recruitment opportunities and refund pages. All pages share a common technology stack: Next.js and Socket.IO, with Vercel frontends and Railway or Render backends.
The browser-in-the-browser technique was originally devised by cybersecurity researcher mr. dox in March 2022 and has been used previously to target Steam accounts. Island's researchers noted that the attack kit adapts the interface to Windows, macOS, iOS, and Android, including browser styling and dark-mode support.