World's top 100 cities revealed — Los Angeles and Orlando climb the rankings    Racism allegations could derail right-wing populist Nigel Farage's bid to become Britain's next PM    Absher to update some of its services on Friday    Minister Al-Sheikh discusses Islamic cooperation with Pakistani counterpart    Saudi-Qatari panel discusses intensifying joint cooperation to achieve shared strategic interests    Saudi Arabia's global trade up 8.6% annually reaching SR540 billion in 3Q 2025    Saudi, Thai justice ministers sign MoU to strengthen legal and judicial cooperation    Netherlands, Spain, Ireland and Slovenia boycott Eurovision after Israel allowed to compete    Trump hosts signing of peace deal between leaders of DR Congo and Rwanda    Leader of anti-Hamas militia armed by Israel killed in Gaza    Al-Ibrahim: Saudi non-oil economy posts growth of over 30%, outperforming advanced economies    Al-Jasser: Transporting goods by rail will remove up to 2 million trucks from the roads    Saudi Arabia to open Red Sea Museum in Historic Jeddah on December 6    Mexico's Fatima Bosch, who walked out on organisers, crowned Miss Universe    Philippines rallies behind Ahtisa Manalo ahead of Miss Universe finale    Daniel Radcliffe wrote supportive letter to new Potter cast    UK to ban reselling event tickets for profit    From accidental athlete to Olympian: Rakan Alireza's unlikely road to the Winter Games    Riyadh Season 2025 draws 1 million visitors in 13 days    Athar Festival 2025 opens in Riyadh with record attendance, new creative streams, and Saudi-first innovations    The key to happiness    Sholay: Bollywood epic roars back to big screen after 50 years with new ending    Ministry launches online booking for slaughterhouses on eve of Eid Al-Adha    Shah Rukh Khan makes Met Gala debut in Sabyasachi    Exotic Taif Roses Simulation Performed at Taif Rose Festival    Asian shares mixed Tuesday    Weather Forecast for Tuesday    Saudi Tourism Authority Participates in Arabian Travel Market Exhibition in Dubai    Minister of Industry Announces 50 Investment Opportunities Worth over SAR 96 Billion in Machinery, Equipment Sector    HRH Crown Prince Offers Condolences to Crown Prince of Kuwait on Death of Sheikh Fawaz Salman Abdullah Al-Ali Al-Malek Al-Sabah    HRH Crown Prince Congratulates Santiago Peña on Winning Presidential Election in Paraguay    SDAIA Launches 1st Phase of 'Elevate Program' to Train 1,000 Women on Data, AI    41 Saudi Citizens and 171 Others from Brotherly and Friendly Countries Arrive in Saudi Arabia from Sudan    Saudi Arabia Hosts 1st Meeting of Arab Authorities Controlling Medicines    General Directorate of Narcotics Control Foils Attempt to Smuggle over 5 Million Amphetamine Pills    NAVI Javelins Crowned as Champions of Women's Counter-Strike: Global Offensive (CS:GO) Competitions    Saudi Karate Team Wins Four Medals in World Youth League Championship    Third Edition of FIFA Forward Program Kicks off in Riyadh    Evacuated from Sudan, 187 Nationals from Several Countries Arrive in Jeddah    SPA Documents Thajjud Prayer at Prophet's Mosque in Madinah    SFDA Recommends to Test Blood Sugar at Home Two or Three Hours after Meals    SFDA Offers Various Recommendations for Safe Food Frying    SFDA Provides Five Tips for Using Home Blood Pressure Monitor    SFDA: Instant Soup Contains Large Amounts of Salt    Mawani: New shipping service to connect Jubail Commercial Port to 11 global ports    Custodian of the Two Holy Mosques Delivers Speech to Pilgrims, Citizens, Residents and Muslims around the World    Sheikh Al-Issa in Arafah's Sermon: Allaah Blessed You by Making It Easy for You to Carry out This Obligation. Thus, Ensure Following the Guidance of Your Prophet    Custodian of the Two Holy Mosques addresses citizens and all Muslims on the occasion of the Holy month of Ramadan    







Thank you for reporting!
This image will be automatically disabled when it gets reported by several people.



How much is the phish? Underground market of phishing kits is booming
Published in The Saudi Gazette on 17 - 04 - 2020

Group-IB, a Singapore-based cybersecurity company, has found out that phishing kits are the new bestsellers of the underground market, with the number of phishing kit ads on underground forums and their sellers having "doubled" in 2019 compared to the previous year.
The growing demand for phishing kits is also reflected in its price that skyrocketed last year by 149 percent and exceeded $300 per item. Last year, phishing kit creators‚ favorite brands were Amazon, Google and Office 365.
Phishing kits represent archive files with a set of scripts that ensure the work of a phishing website. This toolset enables attackers with modest programming skills carry out massive malicious campaigns, which is the reason why they represent a point of interest for cybersecurity researchers.
The detection of a phishing kit not only helps to discover hundreds or even thousands of phishing pages, but can also serve as a starting point of an investigation to identify the toolkit‚ creator and bring them to justice.
Thus, according to Group-IB Threat Hunting Intelligence team, the number of phishing kit sellers active on underground forums increased by over 120% in 2019 year-on-year. Relatively the same growth showed the number of online ads posted on such web resources.
In 2019, the average price of a phishing kit more than doubled compared to the year before and totaled $304, with the prices generally ranging between $20 and $880. In comparison, in 2018, the prices for a phishing kit varied between $10 and $824, while the average price stood at $122.
According to Group-IB experts, the price for phishing kits depends on their complexity, the quality and the number of phishing pages, as well as the existence of side services like technical support on behalf of their creator.
What is remarkable some of the phishing kits were offered free of charge, which was explained not by human generosity but likely by backdoors contained in them, which enabled their creators to access all the gathered data.
Detect and neutralize: how to hunt for phishing kits?
Throughout its years of work, Group-IB has managed to collect a huge database of phishing kits, which enables the company to eradicate the problem of phishing for a specific brand.
The database is being enriched on an ongoing basis: as soon as Group-IB Threat Intelligence system detects a phishing page, it also scans a relevant server for phishing kits. Over 16,200 unique phishing kits were detected by Group-IB Threat Intelligence system in 2019.
Meanwhile, the process of phishing kit detection is becoming more and more challenging, with the statistics for the previous year showing a frustrating trend: hackers grow more cautious in their malicious activities since only 113,460 out of 2.7 million phishing pages detected contained a phishing kit.
Cyber crooks normally remove them or resort to various means to hide them and prevent from being detected by cybersecurity researchers.
Casting nets
To collect data, phishing kits normally have a designated email address, to which the illegally harvested info should be sent. One more trend saying in favor of phishing kits' expanding place on the underground market is the number of unique email addresses detected in them and the figure saw an 8% growth last year, according to data of Group-IB's Computer Emergency Response Team (CERT-GIB). The increased amount of unique email addresses in phishing kits might reflect the rising number of their operators.
To attract more buyers, the developers of phishing kits usually make them targeting well-known brands with large audience, the fact that potentially should facilitate the conduct of fraudulent campaigns for the toolkit future owner. The brands most commonly found in phishing kits in 2019 were Amazon, Google, Instagram, Office 365, and PayPal. Top 3 online markets for trafficking in phishing kits last year were Exploit, OGUsers, and Crimenetwork.
Phishing kit creators are the driving force of this criminal marketplace — one individual might be behind the creation of hundreds of phishing pages and, even worse, behind the compromise of the personal information of thousands of people, Group-IB CTO and Head of Threat Hunting Intelligence team Dmitry Volkov said.
"Therefore, the fight against phishing kit creators should be at the core of the struggle to eradicate phishing. In its practice, Group-IB had a number of investigations that resulted in the de anonymization of phishing kit creators. By sharing such info with relevant law enforcers and ensuring the apprehension of cybercrooks, Group-IB seeks to prevent the further spread of the disease and fight not against its symptoms, phishing pages, but against its causative agent — phishing kit makers." — SG


Clic here to read the story from its source.