Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T12DD14F7A7540AA7B42C783D07B70EB1B73828185E3430B5965E5D39E8FE6F05CCA3285 |
|
CONTENT
ssdeep
|
96:TSegPG2KvDv9mLkZRlutkDa5j2bGNiWGZVoyJVOY4oLd:G5PXKLv9mLkZbCj2bSiWGZVoyJV34oLd |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
996234ba86b57d25 |
|
VISUAL
aHash
|
0200007c7c880e9f |
|
VISUAL
dHash
|
86a9aac8f92a9a7e |
|
VISUAL
wHash
|
4750407cdcdc0ebf |
|
VISUAL
colorHash
|
39600000000 |
|
VISUAL
cropResistant
|
86a9aac8f92a9a7e |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.