Skip to content
Smishing Triad Expands Phishing Operations Targeting Egyptian Services

Smishing Triad Expands Phishing Operations Targeting Egyptian Services

First seen 26 Nov 2025, 18:31 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

The Smishing Triad, a Chinese-speaking cybercrime group, has expanded its phishing operations by creating fraudulent domains that impersonate major Egyptian service providers such as Careem, Fawry, and Egypt Post. This campaign, identified by Dark Atlas, aims to facilitate fraud and data harvesting from both individuals and organizations. The operation also includes domains spoofing TikTok and UnionPay, indicating a broader strategy to exploit various platforms.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 182d ago How this analysis works

More articles in this cluster (2)