hacker-news · Crawled Oct 8, 2026

Wazza Phishkit Targets Banking, Government, and Manufacturing Across the US, EU, and Australia

3 IoCs
Read original article ↗

AI Summary

Wazza is a newly identified phishing kit that targets banking, government, and manufacturing sectors across the US, EU, and Australia. It employs a multi-stage routing infrastructure to filter traffic and evade detection, only delivering the final Adobe-themed Device Code phishing page after validating session tokens and browser telemetry. This layered approach complicates automated analysis and increases investigation time for MSSPs, as the malicious behavior is hidden behind multiple redirects and access controls.

AI-extracted · verify before operational use

Indicators of Compromise 3 extracted

Type Value Detail
Domain boegl-krysl[.]eu Details →
Domain check[.]boegl-krysl[.]eu Details →
Domain beacon-surge-sync[.]workers[.]dev Details →