Ciberseguridadlatam AI-Powered Phishing Kits Enable Rapid Credential Theft
Article Content
- •BlueKit allows phishing attacks to be launched in under 10 minutes.
- •The kit targets 97 brands with ready-to-use templates for various sectors.
- •Misconfigured proxies are exposing attackers' infrastructures, complicating defenses.
A new AI-based phishing kit, BlueKit, has emerged, allowing cybercriminals to launch sophisticated scams in under 10 minutes. This kit provides a complete package including a control center, victim tracking, and administration tools, significantly lowering the technical barrier for attackers. BlueKit boasts a library of templates targeting 97 brands, including major services like Amazon, Google, and financial institutions. Concurrently, a misconfiguration in adversary-in-the-middle proxies has exposed attackers' infrastructures, revealing IP addresses through session cookies. This highlights the evolving landscape of phishing, where attackers can relay real-time traffic to legitimate services while capturing credentials. Microsoft has reported that such campaigns have impacted over 10,000 organizations, demonstrating the widespread nature of these threats. The rapid deployment of these phishing kits underscores the limited effectiveness of traditional domain blocking measures.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Bluekit and Amazon in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What brands are targeted by BlueKit?
How quickly can phishing attacks be launched?
What should organizations do to protect against these threats?
Continue Reading
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…