Active Campaign Targeting Zoom Account Credentials
National Cybersecurity Alert
Active Campaign Targeting Zoom Account Credentials
Issued: June 11, 2025, 14:30 UTC
OVERVIEW:
TechSecure Labs has identified an ongoing phishing campaign specifically targeting Zoom user accounts across multiple organizations. Threat actors are using sophisticated social engineering techniques to harvest login credentials and gain unauthorized access to video conferencing accounts.
LOOK OUT FOR:
-
- Malicious emails appearing to originate from “Zoom Security Team”
-
- Subject lines include: “Urgent: Verify Your Zoom Account” and “Security Update Required”
-
- Emails contain convincing Zoom branding and direct users to fraudulent login pages
-
- Fake domains observed: zoom-security-update[.]net, zoomverify[.]org
IMMEDIATE ACTIONS:
-
- Change Zoom password
-
- Enable two-factor authentication immediately
