Cybersecurity researchers have discovered a new phishing technique that deploys DNS Mail exchange (MX) records to serve phishing emails that closely resemble legitimate messages.
The Phishing-as-a-Service (PhaaS) kit, called Morphing Meerkat, is capable of spoofing more than 100 different brands, making it a potent offering for cybercriminals.
The phishing kit dynamically serves fake login pages based on the victim's email domain, leading to a more natural and consistent phishing experience.
To protect against this phishing technique, organizations are advised to implement a strong layer of DNS security, including DNS controls and restrictions on communication with Domain over HTTPS (DoH) servers.