LabHost phishing service with 40,000 domains disrupted, 37 arrested
ID: 0f2d3f79-da9e-5a54-9ac5-3678cc1f0b60
STIX ID: report--0f2d3f79-da9e-5a54-9ac5-3678cc1f0b60
Feed Name: Bleeping Computer
Global law enforcement, coordinated by Europol with support from private-sector partners, dismantled the LabHost phishing-as-a-service platform, arresting 37 suspects and seizing infrastructure tied to at least 40,000 phishing domains and 10,000 users. LabHost charged around $249/month for kits, hosting, and the LabRat tool enabling real-time capture of 2FA tokens. Between April 14–17, 2024, authorities conducted 70 searches, took down 207 servers, notified 800 users of impending investigations, and estimated $1.173M in illicit subscription revenue; investigators attribute the theft of 480,000 credit cards, 64,000 PINs, and 1 million passwords to the service.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
