Phishing

New Phishing Service Bypasses Security with Real Login Pages

via Krebs on Security
New Phishing Service Bypasses Security with Real Login Pages

A new phishing service named 'Starkiller' allows fraudsters to trick victims by using real login pages for popular websites. This service works by connecting users to the actual site while capturing their login credentials and multi-factor authentication (MFA) codes. As a result, victims unwittingly provide their sensitive information, which is then relayed to the real website. Traditional phishing sites are often short-lived as security measures quickly remove them, but Starkiller’s approach makes it harder for authorities to shut down these operations. Users should remain cautious and ensure they are on legitimate websites before entering any personal information. Source: [publication name].

Read the full story

Original reporting by Krebs on Security. We only summarise — never republish.

Open source