Cyber Attacks

Malaysian Police disrupt BulletProftLink phishing operation

0

Malaysian police have disrupted the notorious BulletProftLink phishing-as-a-service (PhaaS) and initial access broker (IAB) operation that provided more than 300 phishing templates.

The Royal Malaysia Police announced last week that intelligence shared by Australia Federal Police and the FBI enabled the arrest of eight individuals including a software developer who designed phishing templates.

According to inspector general, Sri Razarudin Husain, the syndicate has not only compromised websites of financial and education institutions, and official government sites in Australia, but they are also involved with the selling of stolen credentials.

BulletProftLink which has been active since 2015, offered both phishing services and stolen login credentials.

PhaaS platforms provide cybercriminals with tools and resources to carry out phishing attacks through “ready-to-use” kits and templates, page hosting, customization options, credential harvesting, and reverse proxying tools.

The authorities also seized cryptocurrency wallets holding about $213,000, servers, computers, jewelry, vehicles, and payment cards.

With servers confiscated, law enforcement can examine them to identify users of the platform, some of them paying a $2,000/month subscription fee to access regular batches of credentials logs.

According to cybercrime intelligence company Intel471, as of April 2023, BulletProftLink had 8,138 active subscribers with access to 327 phishing page templates.

Intel 471 says that phishing resources BulletProftLink offered before it was taken down included login pages for Microsoft Office, DHL, the South Korea-based online platform Naver and financial institutions including American Express, Bank of America, Consumer Credit Union and Royal Bank of Canada.

Image Credits : CSO Online

Priyanka R
Cyber Security Enthusiast, Security Blogger, Technical Editor, Author at Cyber Safe News

New Kamran spyware targets Urdu-speaking users in Pakistan

Previous article

LockBit ransomware leaks Boeing data

Next article

You may also like

Comments

Leave a reply

Your email address will not be published. Required fields are marked *