Category: hunting

[Phishing kit] MonCompteFormation ‘Lead’ phishing kit – an analysis

In mid-December 2024, while checking the new findings of Stalkphish.io (our phishing URL detection, enrichment and investigation platform), I noticed that a CPF (MonCompteFormation – which manages personal training accounts for French citizens) phishing kit was present in one of the kit download and analysis probes. In this post I’m reproducing the LinkedIn posts I

Continue reading

[StalkPhish.io] Phishing Kit family enrichment

stalkphish.io-phishing-kit-family-enrichment

Since last summer, StalkPhish.io, our advanced platform dedicated to combating bank fraud, phishing, and scams, has been upgraded with a system for classifying phishing kits. This enhancement allows us to effectively categorize phishing kits collected through our infrastructure, bringing a new level of insight and prevention for businesses facing phishing threats. PhishingKit-Yara-Rules: An Open Source

Continue reading

Une campagne de phishing Netflix, Société Générale, Ameli ou Crit’air pour 10€

Chez Stalkphish nous nous plongeons – depuis plusieurs mois – dans certains réseaux de “scama”, de scammers (arnaqueurs), pratiquant des campagnes de phishing parfois assez volumineuses et qui touchent plusieurs marques, enseignes ou services du gouvernement français, comme Ameli/Carte vitale, la vignette Crit’Air, les împots, ainsi que des services privés comme Netflix ou des services bancaires tels que ceux de la Société Générale, la Banque Postale, et bien d’autres.

[Use case] Hunting for phishing pages

Fight phishing (aka “Phight”) is not an easy task, you need to detect a campaign before starting to dismantle it. You can compare that to a race: the faster you detect a campaign, the faster you can start to takedown it! We created StalkPhish with this idea in mind, to be fast and accurate. Fast

Continue reading