Bluekit Phishing Kit Adopting Browser-in-the-Middle for Login Theft

First reported on bleepingcomputer on June 25, 2026.

The Bluekit phishing kit is adopting a new technique called browser-in-the-middle to steal login information from users.

What it looks like

  • Login information theft
  • Phishing attacks

How to fix it

  1. Be cautious when clicking on links or providing login information.
  2. Use a reputable antivirus software to protect against phishing attacks.
  3. Enable two-factor authentication for added security.
  4. Report any suspicious activity to the authorities.

Affected products

  • Bluekit phishing kit

Sources


Search terms covered: bluekit phishing kit, browser-in-the-middle attack