Login
Discover
Waves
Decks
Plus
Login
Signup
balor
@balor
40
Internet crime research and travel.
Followers
26
Following
20
Resource Credits
Available
Used
Location
Distributed.
Created
May 14, 2019
RSS Feed
Subscribe
Posts
Blog
Posts
Comments
Communities
Wallet
balor
technology
2019-05-25 17:45
Getting Code Execution on an iCloud Phishing Panel
So in my previous post I mentioned that the panel I discovered was really, really badly coded. So I decided to do a little audit of the code and find a way to gain code execution. Firstly, you will have
$ 0.107
5
1
balor
technology
2019-05-25 13:31
A Look Inside an Apple iCloud Phishing Panel.
So by sheer dumb luck today, we managed to nab a nice phishing panel and gain access to its backend literally as it got deployed to the internet. We were monitoring the Certificate Transparency logs for
$ 0.347
17
7
balor
introduceyourself
2019-05-24 11:47
A Somewhat Overdue Introduction...
So I forgot to post an introduction post, due to being a bit busy posting up a bunch of content and working out some of the backend stuff for the Fried Phish Project. So I am balor, a security
$ 0.404
46
12
balor
technology
2019-05-24 11:05
An Example of a DHL Phishing Attack (Featuring: Comic Sans).
So this is another really, really crude phishing kit that I have seen around the place quite a lot in the past while, targeting users of the DHL service. Effectively it seeks to jack peoples DHL accounts
$ 0.109
7
1
balor
technology
2019-05-24 08:26
An Example of an Alibaba (and Gmail!) Phishing Attack.
So this is a moderately interesting one, in that you get twice the fuckery for half the price. What appeared to be, on first glance, a phishing page targeting Alibaba users, also harvests your login
$ 0.105
4
balor
technology
2019-05-20 12:22
An Outlook Phishing Page Hosted on a Kenyan Government Website.
So this is a curious case, while reviewing our logs of phishing sites detected, we spotted a Kenyan government domain amongst the logs, so of course we had to investigate. The phishing page we landed on
$ 0.077
2
1
balor
technology
2019-05-16 13:38
An Example of an Ourtime.com (Dating Site) Phishing Attack.
So this one is a little amusing, we came across it after updating our phishing sample collector to also search for dating-site related keywords. The kit is targeting users of "Ourtime.com", a
$ 0.075
3
1
balor
technology
2019-05-15 18:59
An Example of an Outlook Phishing Attack.
So here we have another phishing setup we discovered as part of the "Fried Phish" project, this time targeting Spanish speaking Outlook webmail users. This one is rather crude, but the way we
$ 0.068
3
balor
technology
2019-05-15 10:28
An Example of a Cox Phishing Attack.
So here we have another phishing setup we discovered as part of the "Fried Phish" project, this time targeting customers of Cox Communications, an ISP and TV provider in the United States. This
$ 0.068
5
1
balor
technology
2019-05-14 16:38
An Example of a Maersk Phishing Attack.
So for my first post here, as part of the "Fried Phish" project I'll give you all a look behind the scenes of a phishing campaign we came across today, while scouring the internet for evil. So
$ 0.089
6
1