🚨 Inside the Smishing Triad’s Phishing Cockpit
Group-IB’s latest research dives into JWR, a phishing kit used by the Outsider cluster, revealing how attackers turn phishing pages into real-time fraud operations.
Key findings:
🔹32 operator commands for real-time victim manipulation
🔹Keystroke-level credential and payment-data capture
🔹~70 data fields for PII, cards, OTPs, credentials and device data
🔹WebSocket C2 with AES-256-CTR encrypted communications
🔹Distinctive fingerprints, IOCs, YARA and Suricata detection rules
Read the full technical analysis.
#Phishing #Smishing #CyberCrime
Post #993
650

- 🔥 10
- 👍 3
- 😍 3