:

BLUEKIT PHISHING KIT ADDS BROWSER-IN-THE-MIDDLE THEFT

SECURITY DESK1 MIN READ
THU, JUN 25, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

The Bluekit phishing-as-a-service platform has expanded its capabilities with browser-in-the-middle technology for stealing login credentials. Security researchers identified nearly 70 new hostnames associated with the service over the past week.

Bluekit continues to evolve as a commercial phishing platform, now incorporating browser-in-the-middle (BitM) techniques to intercept and capture user credentials with greater sophistication. The BitM approach positions the attacker's infrastructure between a victim and legitimate websites, allowing real-time interception of login data and session tokens. This advancement moves beyond traditional phishing, which typically relies on static credential capture forms. Researchers discovered approximately 70 additional hostnames linked to Bluekit deployments in a single week, suggesting active distribution and expansion. The platform operates as a phishing-as-a-service model, offering tooling and hosting to lower-skilled attackers. The addition of BitM capabilities represents a significant technical upgrade for the kit, enabling attackers to bypass certain security measures and capture data that standard phishing pages cannot access. Organizations should monitor for Bluekit-related phishing campaigns and educate users on credential verification practices.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Countries worldwide are competing to develop and deploy the most sophisticated mass surveillance capabilities. The trend reflects a shift in how governments approach citizen monitoring and data collection.

JUST NOWSecurity Desk

Account takeover attacks continue to evade security defenses because attackers exploit legitimate accounts and trusted services. A new webinar examines how behavioral AI can accelerate detection and response.

3H AGOAI Desk

A WIRED investigation into a British police region's predictive analytics system reveals significant accuracy problems with the AI tool designed to forecast criminal activity.

3H AGODev Desk

Chinese cybersecurity firm 360 Security Technology has unveiled two new AI tools—Tulongfeng and Yitianzhen—designed to automate cyber defense operations. The company positions Tulongfeng as a domestic alternative to Anthropic's Claude.

5H AGOAI Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.