Sneaky Google Ads Inject Fake Phone Numbers onto Legitimate Websites
2025-06-19

Malwarebytes uncovered a sophisticated phishing campaign. Attackers buy Google Ads appearing at the top of search results for major companies like Apple and Microsoft. These ads contain cleverly hidden parameters that inject fake phone numbers onto the legitimate website after a user clicks. These parameters are invisible in the ad itself, making detection difficult. The scam exploits the inability of some websites to identify malicious queries, displaying fake support numbers that trick users into revealing personal or financial information. Malwarebytes' browser security now flags these scams; users are advised to avoid clicking Google Ads and instead opt for organic search results.
Tech
google ads