Skip to content
Starkiller Phishing Kit Enables MFA Bypass and Identity Theft

Starkiller Phishing Kit Enables MFA Bypass and Identity Theft

First seen 19 Feb 2026, 13:17 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 16:10 UTC

The Starkiller phishing kit has been identified as a new tool that allows cybercriminals to spoof real login pages and bypass multi-factor authentication (MFA). This commercial-grade platform, detailed by researchers at Abnormal, is designed for large-scale identity theft and is available on the dark web. It requires no technical skills to operate, as it includes monthly updates and documentation.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 182d ago How this analysis works

Timeline

2026-02-19
Starkiller phishing kit publicly detailed by cybersecurity analysts
Date unknown
Starkiller kit made available on the dark web

More articles in this cluster (14)