[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fPoOOiJXPb3UlvXb42CkxJuxmseTwmCYzcuCEH6o03jY":3},{"article":4,"iocs":38,"watch_terms":43},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":28,"category":29,"article_tags":32},"9d75f7b0-05e3-4e9c-ba35-95bdee4fb3af","AitM Phishing Targets TikTok Business Accounts Using Cloudflare Turnstile Evasion","aitm-phishing-targets-tiktok-business-accounts-using-cloudflare-turnstile-evasio","Threat actors are using adversary-in-the-middle (AitM) phishing pages to seize control of TikTok for Business accounts in a new campaign, according to a report from Push Security. Business accounts associated with social media platforms are a lucrative target, as they can be weaponized by bad actors for malvertising and distributing malware. \"TikTok has been historically abused to distribute","Threat actors are conducting adversary-in-the-middle (AitM) phishing attacks targeting TikTok for Business accounts, exploiting Cloudflare Turnstile CAPTCHA to evade detection. Compromised business accounts are then weaponized for malvertising and malware distribution. The campaign highlights how legitimate platform features can be abused once account credentials are compromised.","Threat actors deploy AitM phishing against TikTok Business accounts using Cloudflare Turnstile bypass.",null,"https:\u002F\u002Fthehackernews.com\u002F2026\u002F03\u002Faitm-phishing-targets-tiktok-business.html","https:\u002F\u002Fblogger.googleusercontent.com\u002Fimg\u002Fb\u002FR29vZ2xl\u002FAVvXsEg9MSv7TxvzRXdcpb_tW0hSC0Jq5_7-VYEhbddL8im1K25nOcjSr0T3_Y2f9zG8Q9l7K3U_zOXBKWgnHAO9rWvYG9158OKLKcZif_lq7e5fpqwxrW3IdPWzgTko6ogQSQg77hmiWszgf3OOT7baBY8vI8XcPt0h8R_0p7oBX2WmVQUSgsJXfPQmCzOGTMX9\u002Fs1600\u002Ftiktok-b.jpg","2026-03-27T12:03:00+00:00","2026-03-27T13:00:17.763407+00:00",8,[18,21,23,25],{"name":19,"type":20},"TikTok","vendor",{"name":22,"type":20},"Cloudflare",{"name":24,"type":20},"Push Security",{"name":26,"type":27},"TikTok Business Account AitM Phishing Campaign","campaign","2c8f44d4-b56e-47cf-9677-04f22c9ee78d",{"id":28,"icon":11,"name":30,"slug":31},"Identity & Access","identity-access",[33],{"category":34},{"id":35,"icon":11,"name":36,"slug":37},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[39],{"type":40,"value":41,"context":42},"malware","AitM phishing pages","Adversary-in-the-middle phishing infrastructure targeting TikTok Business account credentials",[19,22,24]]