Imperva has discovered a phishing kit that is hosted separately from the phishing websites.
It said that unlike previously available phishing kits, this new approach lives in the cloud and relies on hackers exploiting other hackers and never goes away. The company's director of security strategy Rob Rachwald, explained that in traditional schemes when you take down a server you take down, not only the web page but also the back end data collection capability comes offline.
“In this cloud version, data collection is hosted separately from the phishing web sites which means hackers only need to repost the web front end in a new location to be back in business. Also, and perhaps what's more interesting, this attack highlights that there's no honour among thieves. Two master hackers wrote and then posted a phishing kit into hacker forums,” he said.