Researchers uncovered a phishing kit that closely mimics major US banking portals. The kit uses rotating domains and one-time credential capture.

Defenders are encouraging customers to use hardware security keys and app-based logins. Banks are sharing indicators of compromise via industry sharing groups.