Sneaky 2FA is a tool tracked across 5 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed November 19, 2025; most recent activity July 21, 2026.
On July 20, 2026, German and U.S. authorities dismantled the Kratos phishing-as-a-service (PhaaS) platform, arresting its developer in Indonesia. The operation neutralized over 200 servers and disrupted approximately…
Following the takedown of Tycoon 2FA, a major phishing-as-a-service platform, the phishing landscape has rapidly shifted. Tycoon 2FA, which previously accounted for over 9 million attacks per month, saw its activity…
On World Password Day 2026, experts highlight that traditional password security measures are inadequate against modern threats. Infostealer malware, such as LummaC2 and RedLine, now operates in a…
The Sneaky2FA phishing-as-a-service kit has integrated Browser-in-the-Browser (BITB) techniques to enhance its ability to steal Microsoft 365 credentials. This updated functionality allows attackers to create deceptive…
The Sneaky2FA phishing-as-a-service kit has been upgraded to include Browser-in-the-Browser (BITB) techniques, allowing attackers to create deceptive phishing pages that mimic legitimate login interfaces. This evolution…