A new phishing-as-a-service (PaaS) platform named "Greatness" has emerged, offering a sophisticated attack vector that bypasses traditional password theft and fake website tactics. This platform leverages a legitimate Microsoft login page to gain full access to a victim's emails, files, and potentially their entire organizational infrastructure. The attack relies on a moment of misplaced trust from the user, rather than the typical indicators of a phishing attempt like suspicious URLs.
Concurrently, a fraudulent service dubbed "Poison Claude" is preying on users seeking discounted access to Anthropic's Claude AI. This service promises a 90% reduction in the normal price for Claude access, but requires users to redirect their traffic through its mysterious platform. This scheme is identified as a clear fraud, designed to exploit users eager for cost savings on AI services.
The Greatness phishing attack represents an evolution in social engineering, moving beyond the need for attackers to host their own malicious sites or trick users into entering credentials on fake pages. By utilizing a genuine Microsoft login, the attackers aim to instill a false sense of security, making it harder for victims to identify the compromise before it's too late. The specifics of how Greatness achieves its objectives without a suspicious URL or password theft were not detailed, but the outcome is full access to the victim's digital assets.
The "Poison Claude" scam highlights a different facet of cybercrime, targeting the growing user base of AI services. The promise of a significant discount, specifically 90% off Anthropic's Claude, is the bait. Users are then directed to route their traffic through the "Poison Claude" service, which is operated by fraudsters. The exact mechanism of compromise or data exfiltration through this traffic redirection was not specified, but the service is unequivocally identified as fraudulent.
Both incidents underscore the ongoing adaptability of cybercriminals. While Greatness focuses on bypassing established security awareness around phishing URLs and fake login pages, "Poison Claude" exploits the financial incentive of discounted AI access. These developments emphasize the need for users and organizations to remain vigilant against evolving attack methodologies, even when traditional warning signs are absent.
The "Poison Claude" scheme serves as a reminder that offers that seem too good to be true, especially those involving significant discounts on popular services, often conceal malicious intent. Users are advised to verify the legitimacy of any third-party service claiming to offer discounted access to established platforms like Anthropic's Claude directly with the official vendor.
The Greatness PaaS platform, by eliminating the need for a fake website or suspicious URL, presents a more insidious threat. It suggests that users should be wary even when interacting with seemingly legitimate login pages, and that the context and method of access are crucial. The full implications of an attacker gaining "full access to your emails, your files, and your entire organisation" through such a method are severe, potentially leading to data breaches, corporate espionage, and further network compromise.






