FlowerStorm
- Primary motivation
- financial-gain
- Sophistication
- intermediate
- Resource level
- organization
- Actor type
- criminal
- Profile updated
- 2026-07-07 12:27:02
Targeted industries: financial-services government-and-public-sector technology-and-telecommunications healthcare-and-pharmaceutical professional-services
Targeted regions: country_code:us country_code:ca country_code:gb country_code:de country_code:fr
Context
FlowerStorm is a phishing-as-a-service platform that mimics legitimate services to bypass multi-factor authentication structure. The majority of its targets are located in North America and Europe, with a significant focus on organizations in the United States. FlowerStorm's operational mistakes have led to vulnerabilities that can be exploited for disruption and analysis.
Reports & references
- news.sophos.com — Phishing Platform Rockstar 2Fa Trips And Flowerstorm Picks Up The Pieces (report)