logo

Chinese Threat Actors Ditch Static Phishing Pages for Live Credential Interception

ID: eb572dec-aea6-532f-82be-a5fce3326bbf

STIX ID: report--eb572dec-aea6-532f-82be-a5fce3326bbf

Feed Name: Infosecurity Magazine (News)

Threat Score
72/100

Date Published: 2026-05-26

Date Updated: 2026-05-26

...
...

Google Threat Intelligence Group (GTIG) reports rapid growth in Chinese phishing-as-a-service (PhaaS) operations that target international victims using encrypted messaging (RCS, iMessage), real-time credential and OTP interception via live admin panels, AI-generated phishing pages to evade detection, and digital wallet provisioning to monetize stolen payment data; many platforms also provide full criminal service suites and flaunt their operations publicly.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.