
International Operation Dismantles Kratos Phishing Kit Infrastructure
CybercrimePhishingLawEnforcementCybersecurity
German and U.S. law enforcement, in collaboration with Indonesian authorities, dismantled the core infrastructure of the Kratos phishing kit, a widely used criminal tool designed to steal Microsoft 365 sessions and bypass multi-factor authentication (MFA). The operation, announced on Monday by Germany’s Frankfurt public prosecutor’s cybercrime unit (ZIT) and the Federal Criminal Police Office (BKA), resulted in the arrest of an Indonesian national identified as the developer and operator of the kit. Kratos was described by investigators as one of the most prevalent phishing kits globally. No specific technical details, victim counts, or financial impacts were disclosed in the announcement.