Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1B162B57AA188213F029342D2AF1536DAF3A680C0D1163999D6FD835D8FEDF0EDD2654B |
|
CONTENT
ssdeep
|
192:cUHHYB0LXyIIWEunhEFfRVdRXB8tVqsBv3w5lT6tFSomj0YuoniVMSh0CJodlbB2:Zk0LCIIWeFfRNwtB/wHT6KWPkF31s |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
aa60f795113cfcd0 |
|
VISUAL
aHash
|
00000000ffffffff |
|
VISUAL
dHash
|
cec3c7e7f8222b2b |
|
VISUAL
wHash
|
00000000ffffffff |
|
VISUAL
colorHash
|
03001000180 |
|
VISUAL
cropResistant
|
365edc599ada6e6f,c3c7e7e3f42a2b2b,b1b95bd28a12d2f6,3939bab2a2a2eded,93d6585cdc98eb6f,5e5a929696979393,ba5490bb4f4ef4ff,cec7c3c3e7e7e7f8 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.