#BubbleApps

2025-11-24

Last week, our International CyberSOC team detected a wave of #phishing emails sent to several customers in Germany ๐Ÿ‡ฉ๐Ÿ‡ช. Designed for Microsoft 365 credentials harvesting, the campaign relies on #bubbleapps subdomains spoofing company names.

Bubble[.]io is a no-code platform that lets users build full web applications through a visual editor instead of writing code. This platform has been regularly abused by threat actors to host phishing content ๐Ÿ‘พsince at least 2020.

Upon investigation, the campaign also also targets English-speaking ๐Ÿ‡ฌ๐Ÿ‡ง and Italian-speaking users ๐Ÿ‡ฎ๐Ÿ‡น, with emails sent from compromised accounts.

๐Ÿ”ŽBy pivoting on @urlscanio
, we suspect the campaign has been ongoing since at least 6 months.

A second stage URL redirects victims into a fake Microsoft sign-in page. This second URL' structure typically is:

online-app.*.info
login.*.it.com
processing.*.info
A search on Censys provides several IPs likely linked to this phishing cluster, all associated to AS199785.

๐Ÿ”—IoCs related to this campaign are available on our on our Datalake platform for our Managed Threat Intelligence clients:
datalake.cert.orangecyberdefen
๐Ÿ”—They are also available on our GitHub: github.com/cert-orangecyberdef

#phishing

UrlScan query for Bubbleapps.ioLures used on the phishing websites on multiple languagesCensys query to de-anonymized Cloudflare protected domains.
Tuvoc Technologiestuvoc
2025-05-27

The Best Tech Stack for Bubble Developers in 2025

thomasadman.bcz.com/2025/05/26

Discover the most effective tech stack choices for Bubble developers in 2025 to enhance performance, scalability, and app capabilities. Stay ahead with the right tools tailored for no-code success.










Tuvoc Technologiestuvoc
2025-05-21

Top Factors That Influence the Cost of Hiring a Bubble Developer

logcla.com/blogs/614263/Top-Fa

Discover the key elements that impact the cost of hiring a Bubble developer, from project complexity to developer expertise. This guide helps businesses plan better and allocate budgets wisely.










Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst