"Global iPhone Users Beware: Darcula Phishing Network Exploits iMessage Vulnerabilities"

A new phishing-as-a-service called 'Darcula' is targeting iPhone and Android users in over 100 countries, using 20,000 domains to spoof brands and steal credentials. Unlike traditional methods, it leverages modern technologies like JavaScript, React, Docker, and Harbor, and utilizes the Rich Communication Services (RCS) protocol for Google Messages and iMessage to send phishing messages. The platform offers over 200 templates and is becoming increasingly popular in cybercrime circles. However, it faces challenges such as restrictions imposed by Apple and Google. Users are advised to be cautious of suspicious messages and phishing attempts, regardless of the platform or app.
- New Darcula phishing service targets iPhone users via iMessage BleepingComputer
- Darcula Phishing Network Leveraging RCS and iMessage to Evade Detection The Hacker News
- 'Darcula' Phishing-as-a-Service Operation Bleeds Victims Worldwide Dark Reading
- Attackers leverage weaponized iMessages, new phishing-as-a-service platform Help Net Security
- Surprise New iMessage Security Warning For iPhone Users In 100 Countries Forbes
Reading Insights
0
13
3 min
vs 4 min read
85%
633 → 98 words
Want the full story? Read the original article
Read on BleepingComputer