Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1B6C1FC3068947A3751D3E2C4A7B6A72BB3D1C246DA27571A63F6D3AD0FC3C45DC126A0 |
|
CONTENT
ssdeep
|
96:h0wDGN+dE7ahq19xCxP8mmxQHuH0BPfKxjKdCoSr8GRa:h0wDo+8KqEFIuawfKxjKdC49 |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8246bdb8c2c6fd38 |
|
VISUAL
aHash
|
ff000070040000ff |
|
VISUAL
dHash
|
7bffe7cdcddfffff |
|
VISUAL
wHash
|
ff000075770307ff |
|
VISUAL
colorHash
|
000000001c0 |
|
VISUAL
cropResistant
|
00002123238c006b,db00000000000000,ff7fe7cdcddfffff |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.