---
title: "Meta-Phish Facebook Phishing Campaign Stealing Login Credentials and PII | DuoCircle"
description: "Threat actors have adopted a novel phishing campaign utilizing Facebook posts to lure in victims and deploying Facebook forms to target the login credentials."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/email-security/meta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2/"
---

Quick Answer

Trustwave SpiderLabs documented Meta-Phish, a campaign that uses real Facebook posts as the entry point in a chained credential-theft attack. The flow: a Facebook post links to a fake copyright-appeal page (e.g., hxxps://meta\[.\]forbusinessuser\[.\]xyz/main\[.\]php) styled like Facebook's real page; the form posts harvested data plus the victim's IP and geolocation (via ipinfo.io) to a Telegram bot API endpoint; a fake OTP step always fails, prompting Get Code which redirects to a fake Facebook login that captures credentials. Variants use fake account-restriction notices and fake page-recovery pages hosted on free web hosting. A related campaign abuses Messenger chatbots with a 48-hour ultimatum and Appeal Now button. To defend: enable two-factor authentication on Meta accounts, never enter credentials from links in unsolicited messages, verify takedown or copyright notices through facebook.com directly, and watch for the IoCs published in Trustwave's research.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Femail-security%2Fmeta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Meta-Phish%20Facebook%20Phishing%20Campaign%20Stealing%20Login%20Credentials%20and%20PII&url=undefined%2Fblog%2Femail-security%2Fmeta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Femail-security%2Fmeta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Femail-security%2Fmeta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2%2F&title=Meta-Phish%20Facebook%20Phishing%20Campaign%20Stealing%20Login%20Credentials%20and%20PII "Share on Reddit") [ ](mailto:?subject=Meta-Phish%20Facebook%20Phishing%20Campaign%20Stealing%20Login%20Credentials%20and%20PII&body=Check out this article: undefined%2Fblog%2Femail-security%2Fmeta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2%2F "Share via Email") 

![Phishing Campaign Stealing Login Credentials](https://media.mailhop.org/duocircle/images/2023/04/dmarc-report-3070.jpg) 

_Threat actors have adopted a **novel phishing campaign** utilizing Facebook posts to lure in victims and deploying Facebook forms to target the login credentials of innocent individuals along with their [PII (Personally Identifiable Information)](https://www.investopedia.com/terms/p/personally-identifiable-information-pii.asp). Here is an in-depth look into the novel phishing campaign, sharing its workings, IoCs (Indicators of Compromise), recent attacks, and how to protect against the Meta-Phish Facebook phishing campaign._

The Metaverse is surrounded by a novel phishing campaign where threat actors are using Facebook posts as **part of a chained attack** to make away with login credentials and PII. [Phishing attacks](/resources/how-does-a-phishing-attack-work) have targeted victims via [social media platforms](https://viralyft.com/blog/social-media-statistics) to lure them into providing **confidential information** or downloading malware to their devices.

However, this new Meta-Phish Campaign takes things to another level as one of the core features of the social media giant, i.e., Facebook posts are being used for malicious purposes. Let us show you how.

## Meta-Phishing Facebook Phishing Campaign at a Glance

[![Phishing Campaign Stealing Login Credentials](https://media.mailhop.org/duocircle/images/2023/04/DMARC-report-service-3007.jpg)](https://media.mailhop.org/duocircle/images/2023/04/DMARC-report-service-3007.jpg)

Security researchers at Trustwave Spiderlabs [analyzed](https://web.archive.org/web/20251003032601/https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/meta-phish-facebook-infrastructure-used-in-phishing-attack-chain/) the new phishing campaign while looking into **phishing activities** on Facebook and Instagram. The security team identified a novel phishing campaign known as Meta-Phish, where threat actors employed [social engineering](/phishing-protection/social-engineering-is-a-growing-threat/) tactics to lure innocent Facebook users using phony notifications to **steal their login credentials** by redirecting them to malicious phishing [URLs (Uniform Resource Locators)](https://www.techtarget.com/searchnetworking/definition/URL#:~:text=A%20URL%20%28Uniform%20Resource%20Locator%29%20is%20a%20unique%20identifier%20used,where%20to%20retrieve%20a%20resource.).

The threat actors make use of two critical practices in the Meta-Phish Facebook Phishing Campaign:

1. **_Phishing Links:_** Instead of utilizing direct phishing links, the threat actors embedded links to genuine Facebook posts with legitimate content. The page had dummy “Page Support” content with Facebook profiles and additional links leading to external websites. One of the phishing URLs, “**hxxps://meta\[.\]forbusinessuser\[.\]xyz/main\[.\]PHP,**” impersonated Facebook’s authentic copyright appeal page so individuals would not be able to identify the link as phony as it would **appear to be a real one**.
2. **_Copyright Forms:_** The impersonated copyright appeal page contains a Facebook form for users to fill out copyright appeals. However, once the individual fills and submits the form, all the information is sent to the threat actor’s Telegram account, along with the IP (Internet Protocol) address and the user’s location.

## How Does the Latest Meta-Phish Facebook Post Phishing Attack Campaign Work?

The following points demonstrate how this campaign worked:

1. **_Stolen Information:_** Once a user fills in the information on the form dubbed as the copyright appeal form, all their information is sent to the threat actors. The page is linked to a JavaScript file that contains a method to retrieve all data and send the form information to a Telegram account using a bot **API (Application Programming Interface).**
2. **_Telegram Bot API:_** The bot API is a crucial part of the **Meta-Phish campaign** and accepts queries in HTTPS (Hypertext Transfer Protocol Secure). The Index.js page sending information via the API has another site, “ipinfo.io,” connected to it, which is utilized to steal the victim’s IP address and geographical location, which are also sent to the Telegram channel.
3. **_Fake OTPs:_** Once the victim sends the information, the threat actors redirect them to another page with a fake OTP (One Time Password) verification that always fails the authentication, urging the users to click an option, “Need another way to authenticate?”
4. **_Facebook Logins:_** Whenever any user clicked on the “Get Code” button on the page, they were redirected to a **fake Facebook login page** designed to harvest login credentials.
5. **_Malicious Approaches:_** The threat actors also employed additional tactics to steal login credentials. Some of the most common ones shared by Trustwave’s security researchers included Fake Appeal Forms, **Fake Account Restrictions**, Fake Social Network Violation Pages, Fake Page Recovery Notifications, and more. All such pages led the victims to [phishing pages](https://www.bleepingcomputer.com/news/security/phishing-page-embeds-keylogger-to-steal-passwords-as-you-type/) on a network of domains created via free web hosting services.

## TrustWave Uncovering the Messenger Chatbot

Trustwave also shared [details](https://web.archive.org/web/20251111104204/https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/interactive-phishing-mark-ii-messenger-chatbot-leveraged-in-a-new-facebook-themed-spam/) about another phishing campaign targeting Meta users in June, where the threat actors leveraged emails utilizing the platform’s chatbot feature.

- **_Malicious Emails:_** The threat actors imitated Facebook, warning users of page terminations due to violating **Facebook community guidelines** and providing a chance to appeal the termination.
- **_Phishing Page:_** The threat actors gave a 48-hour ultimatum and a shortened URL hiding under the “Appeal Now” button that redirects users to personal account pages or messenger conversations.
- **_Malicious Messenger Chatbot:_** The chatbot showed the account termination page to the victims where the [threat actors](/email-security/threat-actors-attack-thousands-of-computers-following-the-ion-incident/) appeared as Facebook’s support team staff and utilized social engineering tactics to lead victims into filing a reply form that stole all data. They were then led to a **password confirmation window** designed to steal their Facebook passwords.

The threat actors stole all information and **redirected victims to a fake OTP page** to make the campaign appear more convincing. A similar approach is also seen in the Meta-Phish Facebook phishing campaign, which could indicate the same threat actor is behind both campaigns.

## Meta-Phish Facebook Post Phishing IOCs

Threat actors use malicious URLs to carry out the Meta-Phish Facebook Phishing Campaign. Here are the links you need to look out for:

- _hxxps://www\[.\]facebook\[.\]com/01oix2/posts/102106376025783_
- _hxxps://meta\[.\]forbusinessuser\[.\]xyz/?fbclid=123_
- _hxxps://meta\[.\]forbusinessuser\[.\]xyz/main\[.\]php_
- _hxxps://meta\[.\]forbusinessuser\[.\]xyz/checkpoint\[.\]php_
- _hxxps://api\[.\]telegram\[.\]org/bot5213906361:AAEAYFxbgjU7aBqrUm3ufkkt8UybZP\_Lnbo/_

## How to Protect Against Meta-Phishing and Facebook Phishing?

[Phishing](/content/phishing-prevention/phishing-email) is one of the most significant and damaging cyberattacks, where threat actors trick innocent individuals and make away with sensitive information by impersonating a genuine website or organization. Facebook, one of the most **significant social media giants**, is a common target for phishing attacks as it is the platform for logging into other websites and applications.

[![spoofed email](https://media.mailhop.org/duocircle/images/2023/04/SPF-record-checker-4279.jpg)](https://media.mailhop.org/duocircle/images/2023/04/SPF-record-checker-4279.jpg)

To steer clear of the Meta-Phish campaign, you need to be on your guard, be wary of the above IoCs list, and:

- **_Be Wary of Unsolicited Messages / Requests:_** You should be on your guard if you receive an unsolicited message or request, especially when the individual claims to be a Facebook employee, asking you to download attachments or click on malicious links.
- **_Verify the Identity of Senders:_** Threat actors and phishers have a knack for using [spoofed email](https://indianexpress.com/article/cities/mumbai/mumbai-company-email-spoofing-fraud-4-crore-8325488/) addresses, so you should always match the addresses with the organization’s domain name. Such information is readily available on Google.
- **_Look Out for Grammatical Errors or Misspellings:_** Threat actors that employ [phishing emails](/content/email-phishing-prevention/how-to-investigate-phishing-emails) are not well-versed, and such emails generally contain multiple typos, misspellings, or grammatical errors that organizations need to make.
- **_Refrain from Downloading Attachments from Unknown Sources:_** You should never click on links or download any **suspected malicious attachments** unless the email is from an authentic source.
- **_Implement MFA:_** Multi-Factor Authentication is a [cybersecurity](/) boon and will protect your account by requiring additional authentication at login.
- **_Invest in a Good Anti-Virus:_** Reputable anti-virus software can detect and **block phishing attacks** or flag questionable content before the threat actors reach your device or account. You should invest in a good antivirus solution that comes with **AI capabilities**.

Following the above, you can avoid the Meta-Phishing Facebook phishing campaign. On the other hand, keeping up to date with the latest phishing campaigns can help you identify phishing attacks faster.

## Final Words

Phishing is a constantly evolving threat that grows over time and will remain one of the most significant [cyber threats](/phishing-protection/small-businesss-shocking-response-to-cyber-threats/) as it opens doors to stolen information, organizational systems, accounts, and the deployment of malware and [ransomware](/resources/ryuk-ransomware-attacks). Organizations need to follow the above guidelines and protect themselves against **novel phishing attacks**. Phishing attacks might take the shape of a known individual or entity as well since threat actors also tailor these for specific targets. Only by being vigilant on all fronts can individuals and organizations protect against this grave threat.

## Topics

NewsSecurityUpdates 

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Femail-security%2Fmeta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2%2F) [ ](https://twitter.com/intent/tweet?text=Meta-Phish%20Facebook%20Phishing%20Campaign%20Stealing%20Login%20Credentials%20and%20PII&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Femail-security%2Fmeta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Femail-security%2Fmeta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2%2F) Copy 

Related Articles

- [ ![Spam Filters](https://media.mailhop.org/duocircle/images/2023/02/spf-record-tester-9932.jpg)  10 Crucial Tips that Will Help You Avoid Spam Filters and Send Better Emails Email Security ](/blog/email-security/10-crucial-tips-that-will-help-you-avoid-spam-filters-and-send-better-emails/)
- [ ![Prevent Fraud](https://media.mailhop.org/duocircle/images/2022/07/hosted-email-server-8646.jpg)  7 Best Ways to Prevent Fraud Before It’s Too Late Email Security ](/blog/email-security/7-best-ways-to-prevent-fraud-before-its-too-late/)
- [ ![Email Security](https://media.mailhop.org/duocircle/images/2023/02/spf-record-4041.jpg)  7 Email Security Risks Facing Small Business Owners and How to Defend Against Them Email Security ](/blog/email-security/7-email-security-risks-facing-small-business-owners-and-how-to-defend-against-them/)
- [  7 Tips to Reinforce Your Business Email Security Email Security ](/blog/email-security/7-tips-to-reinforce-your-business-email-security/)

## Related Articles

[  Email Security 7m  10 Crucial Tips that Will Help You Avoid Spam Filters and Send Better Emails  Feb 14, 2023 ](/blog/email-security/10-crucial-tips-that-will-help-you-avoid-spam-filters-and-send-better-emails/)[  Email Security 9m  7 Best Ways to Prevent Fraud Before It’s Too Late  Jul 28, 2022 ](/blog/email-security/7-best-ways-to-prevent-fraud-before-its-too-late/)[  Email Security 10m  7 Email Security Risks Facing Small Business Owners and How to Defend Against Them  Feb 7, 2023 ](/blog/email-security/7-email-security-risks-facing-small-business-owners-and-how-to-defend-against-them/)[  Email Security 9m  7 Tips to Reinforce Your Business Email Security  Nov 9, 2022 ](/blog/email-security/7-tips-to-reinforce-your-business-email-security/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Meta-Phish Facebook Phishing Campaign Stealing Login Credentials and PII","description":"Threat actors have adopted a novel phishing campaign utilizing Facebook posts to lure in victims and deploying Facebook forms to target the login credentials.","url":"https://www.duocircle.com/blog/email-security/meta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2/","datePublished":"2023-04-04T16:24:13.000Z","dateModified":"2025-05-19T20:24:29.000Z","dateCreated":"2023-04-04T16:24:13.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/email-security/meta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2/"},"articleSection":"email-security","keywords":"News, Security, Updates","wordCount":1239,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2023/04/dmarc-report-3070.jpg","caption":"Phishing Campaign Stealing Login Credentials","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"Email Security"},{"@type":"ListItem","position":3,"name":"Meta-Phish Facebook Phishing Campaign Stealing Login Credentials and PII","item":"https://www.duocircle.com/blog/email-security/meta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"Email Security","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Meta-Phish Facebook Phishing Campaign Stealing Login Credentials and PII","item":"https://www.duocircle.com/blog/email-security/meta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Meta-Phish Facebook Phishing Campaign Stealing Login Credentials and PII","description":"Threat actors have adopted a novel phishing campaign utilizing Facebook posts to lure in victims and deploying Facebook forms to target the login credentials.","url":"https://www.duocircle.com/blog/email-security/meta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2/","datePublished":"2023-04-04T16:24:13.000Z","dateModified":"2025-05-19T20:24:29.000Z","dateCreated":"2023-04-04T16:24:13.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/email-security/meta-phish-facebook-phishing-campaign-stealing-login-credentials-and-pii-2/"},"articleSection":"email-security","keywords":"News, Security, Updates","wordCount":1239,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2023/04/dmarc-report-3070.jpg","caption":"Phishing Campaign Stealing Login Credentials","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
