Back to Intel

Intel Node

2 PhaaS 2 Furious: The Evolution of Chinese-language Phishing Services

lowadvisory2026-05-25T14:00:00+00:00source excerpt
tradecraftcloudidentityemail

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

Written by: Jamie Collier While Russian-speaking threat actors have historically dominated the phishing-as-a-service (PhaaS) landscape, a rival ecosystem is rapidly growing within the Chinese-language underground. Google Threat Intelligence Group (GTIG) analyzed a dozen current PhaaS offerings in the Chinese underground, all of them mature services and many likely tied intricately to the broader criminal ecosystem in that region. These services not only lower the barrier to entry for Chinese cyber criminals, but reveal broader patterns on the evolution of social engineering and credential theft.

Late last year , Google took legal action against one PhaaS provider and has worked since then to endorse legislation and enact technical safeguards against these types of scams.

Read Original Source