Kratos phishing-as-a-service kit loses its battle with international law enforcement
International law enforcement agencies have taken down a phishing-as-a-service kit operated by Russian threat actors, who were using it to launch attacks mimicking Signal support. The kit exploited vulnerabilities in Joomla extensions, impacting a significant number of open-source websites worldwide. This highlights ongoing efforts to combat phishing and the continued threat posed by actors leveraging open-source platforms.
International law enforcement agencies successfully dismantled a phishing-as-a-service operation originating from Russia. The attackers were utilizing a kit designed to impersonate Signal support, luring victims into providing sensitive information. The kit exploited vulnerabilities within Joomla extensions, specifically in iCagenda and Balbooa Forms, affecting a large number of websites powered by the open-source CMS. This action underscores the persistent challenge of phishing attacks and the importance of maintaining vigilance against malicious actors targeting open-source software. The operation demonstrates a sophisticated approach to leveraging popular platforms for criminal activity.