Minacce · 127 giorni fa
I servizi di phishing in lingua cinese stanno andando oltre il furto di password e si stanno spostando verso la frode in tempo reale. La risposta standard di reimpostare le credenziali manca il punto quando gli aggressori possono catturare un codice monouso, bypassare MFA nella stessa sessione e inserire subito i dati di pagamento rubati in un wallet tokenizzato.
3 fonti che coprono questa storia
Chinese Threat Actors Shift to Live Credential Interception
Almost all organizations impersonated by Chinese phishing platforms are non-Chinese entities, suggesting operators deliberately avoid domestic targets
Chinese phishing gangs grow into a force to be reckoned with - Help Net Security
Chinese-language phishing-as-a-service communities are expanding beyond a market long dominated by Russian-speaking cybercriminals.
The Evolution of Chinese-Language Phishing Services | Google Cloud Blog
We highlight rapid growth and key shifts in the Chinese-language phishing-as-a-service (PhaaS) ecosystem.
Part of the PlainSec briefing for 2026-05-27