Logokit leverages commercial APIs to generate target-specific phishing pages in real time and forwards stolen credentials via Telegram bot, eliminating the need for downstream infrastructure.
The dismantling of Kratos disrupts a PhaaS operation but is likely to reduce phishing activity only temporarily, as the customer base and competing products remain intact.
Phishing-as-a-Service lowers barriers to entry for cybercriminals to such an extent that hardware-based authentication according to FIDO2 standards becomes an essential defensive measure.
Forg365 is a PhaaS service sold for 400 dollars monthly that combines device-code phishing and AitM attacks against Microsoft 365 and is optimized through antibot evasion and AI-powered lure automation.
Cybercriminals increasingly exploit supply chains and shared infrastructure as attack vectors, with commercialized tools such as Tycoon 2FA (89 percent market share) enabling even less sophisticated actors.
Outsider, a Chinese phishing network, abused Gemini to mass-produce fraudulent SMS messages and websites, caused $1.9 billion in damages, and was shut down through U.S. law enforcement action.