Skip to content

phishing-hunter/PHOps

Folders and files

NameName
Last commit message
Last commit date

Latest commit

ย 

History

10 Commits
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 

Repository files navigation

Phishing Hunging Operations (PHOps) ๐Ÿš€

PHOps

๐Ÿ’‚โ€โ™‚๏ธ Repository for automating Phishing Hunting Operations (PHOps)
If you need to modify scoring rules, etc., please Pull Request. ๐Ÿ“ˆ
The repository is updated regularly on a daily basis, but if you require more timely notification of information, please create a user account on Discord ๐Ÿค– or here. ๐Ÿ“ฉ

We believe that in order to combat the latest threats, such as scattershot types, it is necessary to keep the configuration values open and keep the patterns up-to-date.
The scoring algorithm is also available here. If you would like to suggest modifications to the algorithm, please send a Pull Request to this repository.

Hunting Archive

Certificate Transparency Logs and Phishing Kit collected by phishing-hunter.

How to Test

  • detection target score: 150
  • max detection domains par day: 500
$ docker run --rm -it \
    -v $PWD:/work \
	-w /work \
	phishinghunter/cert-hunter:20230125 \
	/app/checker.py suspicious.yaml -f /csv/target.csv -m 500 -s 150

Yara rule test

$ yara rules/index_test.yar /test.zip

Reference