Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T17A21497D10299EF70146A1F8A7E6936677C0CB88DB83270026E4C3EE6FDBD59CE29454 |
|
CONTENT
ssdeep
|
24:haNsyxXL745q0NyapJkDyNu9TyHOyMdVE6yn:m745q0MgIyA2XWWn |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
b131e7c6c44ace8e |
|
VISUAL
aHash
|
cfcfc8484fffffff |
|
VISUAL
dHash
|
981a9b9990019000 |
|
VISUAL
wHash
|
0b88080808ffffff |
|
VISUAL
colorHash
|
07200048040 |
|
VISUAL
cropResistant
|
981a9b9990019000,c7490b5ec0c51719,0d0d0d078191cdc7 |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.