importantSYS.SOURCE: The Hacker News• 2026-10-08T16:00:00+05:30
Wazza Phishkit Exploits Multi-Stage Routing to Target Critical Sectors in Multiple Regions
Wazza Phishkit employs multi-stage routing to evade detection while delivering Adobe-themed Device Code phishing pages targeting banking, government, and manufacturing sectors. The campaign complicates threat detection for MSSPs by obscuring phishing infrastructure through session validation and traffic filtering.
Phishing kits are no longer limited to copying a familiar login page and waiting for a victim to enter credentials. Attackers are increasingly building filtering, session management, and traffic controls into the infrastructure that delivers the phishing page itself.
ANY.RUN has identified Wazza, a new phishkit targeting banking, manufacturing, and government organizations across the US, Europe
*** END OF TRANSMISSION ***