FlowerStorm

Primary motivation
financial-gain
Sophistication
intermediate
Resource level
organization
Actor type
criminal
Profile updated
2026-07-07 12:27:02

Targeted industries: financial-services government-and-public-sector technology-and-telecommunications healthcare-and-pharmaceutical professional-services

Targeted regions: country_code:us country_code:ca country_code:gb country_code:de country_code:fr

Context

FlowerStorm is a phishing-as-a-service platform that mimics legitimate services to bypass multi-factor authentication structure. The majority of its targets are located in North America and Europe, with a significant focus on organizations in the United States. FlowerStorm's operational mistakes have led to vulnerabilities that can be exploited for disruption and analysis.

Reports & references

  • news.sophos.com — Phishing Platform Rockstar 2Fa Trips And Flowerstorm Picks Up The Pieces (report)

External references