A new sophisticated phishing toolkit, Spiderman, has surfaced on cybercrime forums, allowing attackers to build highly convincing fake login pages for dozens of European banks and cryptocurrency platforms in minutes. The kit automates phishing-as-a-service operations, lowering technical barriers for threat actors while enabling real-time theft of login credentials, multi-factor authentication data, and personal information. The Spiderman phishing kit consolidates pre-built templates for major financial institutions into a single control panel, enabling operators to quickly generate pixel-perfect clones of legitimate login portals and launch phishing campaigns without coding expertise. Unlike traditional kits focusing on specific targets, Spiderman offers broad coverage across at least five European countries with ready-made replicas for banks such as Deutsche Bank, Commerzbank, ING, and CaixaBank, along with cryptocurrency services such as Ledger, MetaMask, and Exodus. Upon deployment, attackers select a target banking service from the interface the kit then produces a phishing page that captures usernames, passwords, credit card details, and one-time authentication codes. A built-in dashboard provides real-time session monitoring, allowing malicious operators to dynamically request additional data fields and execute live credential harvesting. Advanced anti-detection capabilities including country allow-listing, ISP and ASN filtering, and device-type checks help evade automated security scanning and research tools by restricting access to intended victims and returning benign content to others.
A recently disclosed supply chain vulnerability in Anthropic’s Claude Code GitHub Actions integration exposed numerous repositories to potential compromise through a single malic...
A critical security vulnerability affecting KMW CCTV cameras has been disclosed under CVE-2026-5386. The flaw allows attackers to bypass authentication controls and change device c...
A critical vulnerability, tracked as CVE-2026-4387, has been disclosed in StrongDM, exposing organizations to authentication token theft and session hijacking. Discovered by Specte...