Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T1600240609104AD1BA293A0D4A6B2EB1F33408386D70A1B6557F9D3F6EACED21DD702DD |
|
CONTENT
ssdeep
|
192:R/xc+UAjLdJaMhwsujX1x9EQjU1xU11YQzLjU1tYC:R/xUA3XD2+GvD+v |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
99194c4c19f3e6e6 |
|
VISUAL
aHash
|
0018efffffffffff |
|
VISUAL
dHash
|
b2b20c1a48080008 |
|
VISUAL
wHash
|
0000c3c3c3e7ffe7 |
|
VISUAL
colorHash
|
060000001c0 |
|
VISUAL
cropResistant
|
b2320c5a48080008,b1b2b2b2b2b2b2b2 |
Victim is prompted for 2FA code after entering credentials. The code is intercepted and used by attacker to access victim's account in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.