X-SniPer Chase Phishing Kit Targets Fullz for Account Takeover

X-SniPer Chase Phishing Kit Targets Fullz for Account Takeover
X-SniPer phishing kit even tries to steal the victim’s mobile phone carrier PIN to perform a SIM swap attack to “bypass” 2FA.
Read more →

restore-metamask.com Used to Steal Entire Crypto Wallets

restore-metamask.com Used to Steal Entire Crypto Wallets
The malicious domain restore-metamask.com was used to steal existing crypto wallets of metamask.io users. It also allowed new wallets to be created and cryptocurrencies deposited to the new wallet, but it would ultimately go to the attackers.
Read more →

Bad Opsec: xcazanova -> thetoxichydra -> utoxic

Bad Opsec: xcazanova - thetoxichydra - utoxic
Utoxic is very likely xcazanova, or at minimum very close to him based on the evidence I will show. A leopard don’t change its spots.
Read more →

XBALTI Phishing Kits

XBALTI Phishing Kits
Analysis of the XBALTI phishing kits and their exfiltration techniques.
Read more →

PaaS à la carte: Phishing Kit Caught In Development

PaaS à la carte: Phishing Kit Caught In Development
A phishing kit found in-the-wild during the development stage and leaks the ‘order notes’ from the buyer.
Read more →
Disclaimer: The research posted on this website is for information purposes only. Do not use it for illegal purposes.