home.social

#phishingkit — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #phishingkit, aggregated by home.social.

  1. BlackForce – das Phishing‑Kit, das MFA-Systeme ausspielt

    Seit seiner ersten Beobachtung im August 2025 habe sich das Phishing‑Toolkit BlackForce schnell zu einem gefürchteten Werkzeug für Cyberkriminelle entwickelt, berichtet Zscaler ThreatLabz. Das Besondere: Es kombiniere klassischen Credential‑Diebstahl mit Man‑in‑the‑Browser‑Techniken...

    Mehr: maniabel.work/archiv/796

    #PhishingKit #BlackForce #CredentialDiebstahl #MITB #Trojaner #JavaScript #infosec #infosecnews #BeDiS

  2. Neu auf dem CyberCrime-Markt: SpiderMan-Phishing-Kit

    Das neue Phishing‑Kit Spiderman habe die Cyberkriminellen‑Szene erobert, da es selbst technisch wenig versierten Angreifern das Ausspähen von Bank‑ und Krypto‑Konten ermöglicht, berichtet VARONIS. Der Name sei Programm: Wie ein Spinnennetz verknüpfe das Toolkit zahlreiche europäische Banken und Finanzdienste zu einem einzigen Angriffspunkt.

    Mehr: maniabel.work/archiv/761

    #PhishingKit #Phishing #Spiderman #Crypto #infosec #infosecnews #BeDiS

  3. 🪝🚨 New ‘Spiderman’ phishing kit makes it trivial to clone major EU bank logins and steal credentials and OTPs in real time. If you get unexpected bank‑login links, double‑check before typing anything.

    Read: hackread.com/spiderman-phishin

    #Phishing #Cybersecurity #BankFraud #Spiderman #PhishingKit

  4. Anatomy of a Phishing Kit

    Phishing is a profitable industry: low cost, low risk, high reward. In fact, there’s more phishing “enabling technology” than there are barriers to entry. The resources that one needs to conduct phishing attacks are easily acquired using search engines or AI agents, are rolled up into “kits”, or are offered as services. In Part 1 of a series, we’ll look at phishing kits.

    interisle.substack.com/p/anato

    #phishing #phishingkit #cybercrime #fraud

  5. We published a blog yesterday about a PhaaS and phishing kit that employs DoH and DNS MX records to dynamically serve personalized phishing content. It also uses adtech infrastructure to bypass email security and sends stolen credentials to various data collection spaces, such as Telegram, Discord, and email. blogs.infoblox.com/threat-inte

    #dns #doh #mx #adtech #obfuscation #phaas #phishing #phishingkit #threatintel #cybercrime #threatintelligence #cybersecurity #infoblox #infobloxthreatintel #infosec #wordpress #spam #telegram #discord #morphingmeerkat

  6. ⭐️ 5 new #yara rules added to the PhishingKit-Yara-Rules project ( github.com/t4d/PhishingKit-Yar) for phishing kits targeting #customers of:
    📌 DocuSign
    📌 OrangeBankFR
    📌 POST_Luxembourg
    📌 webmail
    📌 Greatness PHaaS

    #phishing #phishingkit #cybersecurity #opensource #scam

  7. Intresting #phish and portal hxxps[:]//kecoland[.]com/srs/host%5b21%5d/admin/js/ms[.]php

    #phishing #phishingkit

  8. 📣 New blog post available on stalkphish.com called "About the Phishing as a Service tool named Greatness".

    In this blog post you will find:
    📌 a (short) analysis of the phishing kit
    📌 a Yara rule dedicated to the detection and hunting of this kit
    📌 previously undisclosed IOCs
    stalkphish.com/2023/07/04/thre

    #phishing #phishingkit #fraud #greatness