Scam Telegram: 暗号通貨ドレイナーを拡散するグループネットワークの解明
偽のサポートグループの大規模ネットワークが暗号通貨スティーラーやドレイナーを拡散している実態を調査し、その手口と影響を明らかにする。
偽のサポートグループの大規模ネットワークが暗号通貨スティーラーやドレイナーを拡散している実態を調査し、その手口と影響を明らかにする。
A new phishing-as-a-service called Starkiller uses disguised links to load real login pages from target brands. It acts as a relay between victims and legitimate sites, forwarding usernames, passwords, and MFA codes to bypass security measures.
BreachForums data shows that cybercriminals frequently use specific VPN and proxy services to anonymize their activities. The analysis identifies the most popular services among threat actors based on leaked forum logs.
A Reddit user reports being asked to verify they're not an AI agent through scanslop.com, which directs them to an external site with a URL containing their comment ID. The user expresses concern that this allows scanslop.com to associate Reddit usernames with IP addresses.
The Spiderman phishing kit is a phishing-as-a-service tool that allows attackers to create fake login pages to steal credentials. It's known for its user-friendly interface and ability to bypass security measures like two-factor authentication. The kit has been used in various campaigns targeting organizations worldwide.
A free online AI tool removes image backgrounds and provides transparent PNG downloads within seconds. The service requires no sign-up and adds no watermarks.