Sophisticated AitM Phishing Attacks Hijack TikTok Business Accounts
Threat actors are using AitM phishing to hijack TikTok Business accounts by evading Cloudflare Turnstile, enabling malware distribution and malicious ads.
Threat actors are using adversary-in-the-middle (AitM) phishing pages to seize control of TikTok for Business accounts in a new campaign, according to a report from Push Security. The attacks bypass Cloudflare Turnstile protections, allowing criminals to take over these accounts. Business accounts on social media platforms are lucrative targets as they can be weaponized for malvertising and distributing malware. TikTok has been historically abused to distribute malicious content. Source: https://thehackernews.com/2026/03/aitm-phishing-targets-tiktok-business.html
SENTINEL: For ordinary people this means your TikTok feed could start mixing in sneaky scam ads or shady links from accounts that look totally legit, making it easier to accidentally click on something that steals your info or infects your device.
Sources (1)
- [1]AitM Phishing Targets TikTok Business Accounts Using Cloudflare Turnstile Evasion(https://thehackernews.com/2026/03/aitm-phishing-targets-tiktok-business.html)