THREATOPS
THREAT OPSThreat News › Dissecting the JWR phishing framework

Dissecting the JWR phishing framework

medtalosPublished 2026-08-13

<ul><li>Cisco Talos recently&#xa0;identified&#xa0;an undocumented phishing&#xa0;framework, internally branded &quot;JWR&quot; by its developer, built to&#xa0;convincingly&#xa0;impersonate&#xa0;checkout and&#xa0;login pages across major payment and shopping&#xa0;platforms.&#xa0;</li><li>The client engine of the JWR phishing framework is a real-time, operator-driven system that, rather than merely l

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://blog.talosintelligence.com/dissecting-the-jwr-phishing-framework/