TGViewer
Group-IB Group-IB @group_ib · 2.53K subscribers
Post #990 884
🚨 Outsider Phishing Kit: a resilient PhaaS threat

Group-IB researchers uncovered the Outsider Phishing Kit, operated by threat actor ChenLun, which has enabled large-scale smishing campaigns targeting 54+ countries.

From December 2025 to May 2026, researchers identified 100,000+ phishing pages and 267+ ready-made templates targeting financial services, telecom, government, logistics and other sectors.

The kit includes AiTM capabilities, real-time credential and payment card interception, MFA manipulation, WebSocket-based C2 communication and anti-analysis techniques.

Even after law enforcement action, Group-IB identified 700+ new phishing pages and domains, highlighting the resilience of the ecosystem.

Read the full technical analysis.

#CyberSecurity #Phishing #Smishing #PhaaS
  • 🔥 8
  • 👍 2
  • ❤ 1
  • 👏 1
  • 🍌 1
More from @group_ib
  1. Sep 23, 2026🚨Group-IB researchers have uncovered RemControl, a previously undocumented Android bankin…
  2. Sep 17, 2026🚨Group-IB Threat Intelligence has uncovered 29 new samples linked to the HEAVYGRAM and CR…
  3. Sep 14, 2026🚨 Inside the Smishing Triad’s Phishing Cockpit Group-IB’s latest research dives into JWR,…
  4. Sep 9, 2026🚨 Group-IB uncovers Vwork, a weaponized fork of the open-source Android app cloner Shelte…
  5. Sep 1, 2026🚨 Cybercrime is evolving, and so is the underground economy behind it. Group-IB has uncov…
  6. Aug 27, 2026🚨 By the time a bank detects fraud, legacy systems are simply watching the end of a story…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →