Security researchers report an active phishing campaign that targets credentials for GoDaddy’s ManageWP platform. According to multiple outlets, attackers take advantage of Google sponsored search results by placing malicious advertisements that mimic or direct users to a fraudulent ManageWP login page. When victims attempt to sign in, the site is designed to capture login details and other related credentials. The campaign’s goal is credential theft for ManageWP, a service used to manage fleets of WordPress websites, and the stolen information could then be used to access or compromise accounts. The reporting notes that the phishing is delivered via hijacked or abused Google Ads rather than through direct email or standalone websites. The ads lead users to the spoofed login page where attackers collect the credentials. The described activity focuses specifically on ManageWP/GoDaddy access rather than broader generic phishing, and it relies on search advertising visibility to reach potential victims. Users are advised to be cautious when following links from ads and to verify URLs before entering login information.