SMS Scams Gone Phishing: PointyPhish & TollShark Cast a Global Net
CTM360 has uncovered a global phishing bonanza! The PointyPhish and TollShark campaigns are tricking victims with fake SMS alerts about expiring rewards and unpaid tolls. Powered by Darcula Suite, these scams are spreading faster than a cat video, aiming to swipe your precious payment info. Stay alert, folks!

Hot Take:
Who knew Dracula had a modern cousin named Darcula, and instead of blood, it’s after your credit card details! With PointyPhish and TollShark, it seems like phishing is evolving faster than my ability to come up with witty puns. These campaigns are global, scalable, and have a taste for your payment information. The vampires of the cyber world are out there, and they’re hungry!
Key Points:
- PointyPhish uses fake SMS alerts about expiring reward points to lure users into giving up payment details.
- TollShark mimics toll authorities, scaring users with unpaid fines to capture personal and financial info.
- Both campaigns are global, leveraging over 5,000 phishing domains combined.
- Darcula Suite, a Phishing-as-a-Service platform, is the backbone of these campaigns, enabling rapid setup and execution.
- CTM360 has identified these campaigns as part of a larger, ongoing phishing initiative affecting multiple regions.
Already a member? Log in here