Phishing
DATE | NAME | INFO | CATEGORY | SUBCATE |
5.6.25 | Vishing Threats | Hello, Operator? A Technical Analysis of Vishing Threats | PHISHING | Vishing |
14.5.24 | Horabot | Horabot Unleashed: A Stealthy Phishing Threat | PHISHING | PHISHING |
12.5.24 | CoGUI Phish Kit | CoGUI Phish Kit Targets Japan with Millions of Messages | PHISHING | Kit |
9.5.24 | Darcula PhaaS | Exposing Darcula: a rare look behind the scenes of a global Phishing-as-a-Service operation | PHISHING | PhaaS |
24.4.25 | Darcula phishing-as-a-service | AI-Enabled Darcula-Suite Makes Phishing Kits More Accessible, Easier to Deploy | PHISHING | PHaaS |
23.4.25 | Phishing for Codes | Phishing for Codes: Russian Threat Actors Target Microsoft 365 OAuth Workflows | PHISHING | PHISHING |
15.4.25 | Precision-Validated Phishing | The Rise of Precision-Validated Credential Theft: A New Challenge for Defenders | PHISHING | PHISHING |
13.4.25 | Tycoon2FA | Tycoon2FA New Evasion Technique for 2025 | PHISHING | Kit |
9.4.25 | VibeScamming | VibeScamming — From Prompt to Phish: Benchmarking Popular AI Agents’ Resistance to the Dark Side | PHISHING | AI |
2.4.25 | Lucid Phishing-as-a-Service | Lucid is a sophisticated Phishing-as-a-Service (PhAAS) platform operated by Chinese-speaking threat actors, targeting 169 entities across 88 countries globally. With 129 active instances and 1000+ registered domains, Lucid ranks among prominent PhAAS platforms, alongside Darcula and Lighthouse | PHISHING | Platform |
28.3.25 |
Morphing Meerkat | A Phishing Tale of DoH and DNS MX Abuse | PHISHING | PHaaS |
22.2.25 | Darcula phishing-as-a-service | The Bleeding Edge of Phishing: darcula-suite 3.0 Enables DIY Phishing of Any Brand | PHISHING | PAAS |
18.1.25 | Sneaky 2FA | Sneaky 2FA: exposing a new AiTM Phishing-as-a-Service | PHISHING | PHISHING |
18.1.25 | Star Blizzard | New Star Blizzard spear-phishing campaign targets WhatsApp accounts | PHISHING | PHISHING |
29.11.2024 |
Trustwave SpiderLabs has been actively monitoring the rise of Phishing-as-a-Service (PaaS) platforms, which are increasingly popular among threat actors. |
PHISHING |
||
1.11.24 |
Xiū Gǒu Phishing Kit | Every Doggo Has Its Day: Unleashing the Xiū Gǒu Phishing Kit | PHISHING | PHISHING KIT |
28.10.24 | Gophish Framework | Threat actor abuses Gophish to deliver new PowerRAT and DCRAT | PHISHING | CAMPAIGN |
2.8.24 | OneDrive Pastejacking: The crafty phishing and downloader campaign | PHISHING | ||
30.3.24 | Darcula | Out of the shadows – ’darcula’ iMessage and RCS smishing attacks target USPS and global postal services | Phishing | PhaaS |
28.3.22 | Phishing | Phishing/Malware/Vulenerebility |