Scammers Used Fake Job Ads to Steal Credentials

Fraudsters impersonating major brands targeted job seekers to harvest login credentials and verification codes.

Updated on Oct. 2, 2026 in Job Search

Isometric editorial illustration of a heavy metallic padlock with a digital circuit pattern, symbolizing the vulnerability of authentication systems.
Scammers are using sophisticated fake job advertisements and fraudulent portals to harvest login credentials from job applicants globally. AI Illustration. Upload story photo >

Live Poll

Do you feel confident in your ability to identify a fraudulent job advertisement online?

Scammers have leveraged deceptive job advertisements to impersonate high-profile companies like Disney and Coca-Cola. By creating fake scheduling pages, attackers successfully harvested user authentication credentials from unsuspecting applicants.

Why it matters

Fraudsters exploit the urgency and trust associated with the job hunt to lower candidate vigilance. This allows attackers to capture passwords in real time and gain unauthorized access to corporate systems.

Attackers utilize typo-squatting by changing 1 or 2 letters in URLs to mimic official recruitment sites. This tactical shift allows fake login windows to capture passwords and verification codes from candidates.

The players

LinkedIn

This professional networking site serves as the primary platform where the fraudulent job scheme was reported.

Disney

This multinational entertainment corporation was among the brands impersonated by scammers to lure applicants.

Coca-Cola

This global beverage manufacturer had its branding used by fraudsters to deceive job seekers.

The details

Candidates applying for marketing and communications roles were redirected to fraudulent interview scheduling pages that mirrored platforms like Calendly. Once at these sites, applicants were prompted to authenticate through their existing Google or Facebook accounts, providing scammers with immediate access to their credentials.

Timeline

  1. A report regarding the scam was submitted to LinkedIn during September 2026.

Market Landscape

This activity follows the established trend of typo-squatting in digital recruitment fraud. By capitalizing on brand prestige, these scammers gain a foothold in professional networks and corporate communication systems.

Job seekers should carefully verify the URL of any recruitment site to ensure it does not feature slight spelling variations of a legitimate company name. Never provide authentication codes or personal login credentials on third-party interview scheduling websites.

The takeaway

Candidates should maintain high vigilance during the application process, even when dealing with well-known brands that seem credible. Always use official company career portals instead of clicking links found in unsolicited messages to prevent credential theft.

Further reading

For tips on identifying secure application processes, see the Job Search section.

Live Poll

Do you feel confident in your ability to identify a fraudulent job advertisement online?