TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Trend Micro Research

How AI-Native Development Platforms Enable Fake Captcha Pages

Bakuei Matsukawa · 2025-09-19 · Read original ↗

ATT&CK techniques detected

4 predictions
T1566.002Spearphishing Link
94%
"services to create and host fake captcha challenge websites, which serve as entry points for phishing campaigns. since january, trend micro has observed a rise in fake captcha pages hosted on such platforms. these scams pose a dual threat : misleading users while evading automate…"
T1566.002Spearphishing Link
91%
"trend ’ s in - depth analysis : conclusion the rise of fake captcha phishing highlights how attackers are weaponizing ai - powered website creation platforms. while these services drive innovation for legitimate developers, they can also provide cybercriminals with the tools to l…"
T1566.002Spearphishing Link
50%
"how ai - native development platforms enable fake captcha pages key takeaways - since january, trend micro has tracked a surge in phishing campaigns using ai - powered platforms ( lovable, netlify, vercel ) to host fake captcha pages that lead to phishing websites. this ploy misl…"
T1566.002Spearphishing Link
47%
"sites - netlify. app – 3 sites - lovable. app – 43 sites while proofpoint previously covered the abuse of ai - driven site builders, their findings emphasized lovable. meanwhile, trend data shows that vercel, in particular, hosts even more fake captcha pages. while lovable is mor…"

Summary

Cybercriminals are abusing AI-native platforms like Vercel, Netlify, and Lovable to host fake captcha pages that deceive users, bypass detection, and drive phishing campaigns.