The bait is not a threat or a warning. It is a deal. A phishing kit called Milk Dragon, also sold as NaiLong, sends shoppers to fake online stores through ordinary-looking social media posts offering steep discounts on brands like LEGO and Calvin Klein, then steals their card numbers and the one-time codes their bank sends to approve the payment.
Researchers at Group-IB, who published the original report, say the kit has been active since October 2025. They have identified 258 phishing pages and victims spanning 66 countries, with 21 consumer brands and regional supermarket chains, including Aeon Malaysia, impersonated as lures.
Fear of missing out replaces fear
Most phishing leans on urgency: an unpaid fine, a stuck parcel, a locked bank account. Milk Dragon flips that. Its operators push links through native posts and e-commerce listings on platforms such as Facebook and TikTok, so the lure looks like a normal ad that turned up organically. Group-IB found some of the posting profiles carried AI-generated content and may have bought followers to look legitimate. The researchers say they saw no sign that the kit's sellers run distribution themselves, but the seller recommends this tactic to buyers.
Clicking through lands the victim on a WordPress shop that uses WooCommerce, a legitimate e-commerce plugin, to build a convincing checkout. Alongside it sits a custom malicious plugin called BytePress, which adds fake card and PayPal payment options and opens a live WebSocket connection to the operator's control panel.
An operator watching every keystroke
That live link is what makes the kit an adversary-in-the-middle (AiTM) tool, meaning the attacker sits between the victim and the real payment check in real time. According to Group-IB, card details stream to the panel character by character before the victim even presses submit. The operator then picks a verification page matching the 3D Secure check (the bank's extra approval step for online card payments) that the real card issuer has triggered, captures the one-time password the victim types in, and can relay it to approve a fraudulent transaction. A fake order confirmation closes the loop so the victim does not cancel the card.
Group-IB counted 36 different bank verification templates across the panels it examined. The panel also keeps every victim's card, personal and device details on file, which the researchers note lets affiliates target the same people again.
Phishing sold by subscription
Milk Dragon is sold as phishing-as-a-service in Telegram channels from 300 USDT a month. Buyers get a one-click installer that deploys the panel as a Docker container on their own server, role-based accounts for subordinate operators, Telegram alerts for new victims, and plugin updates pushed from the developers. It joins a growing field of commercial kits built to beat one-time codes, from the DoppelCart fake-shop network to the EvilTokens device-code kit Microsoft disrupted.
Treat a steep discount as a red flag
Group-IB advises retailers to watch for lookalike domains and push takedowns before campaigns scale, and card issuers to watch for unusual checkout patterns so stolen cards are caught before they are spent. For shoppers, the advice is simple: treat a deep, limited-time discount in a social media ad as suspicious, check an unfamiliar shop with a reputation service such as urlscan.io or VirusTotal before entering card details, and call your bank immediately if you think you have been caught. Group-IB has not published indicators for this campaign, saying the data is sensitive and available only to its customers.
The lesson is that a bank's one-time code is only as strong as the page you type it into. When the operator is reading along live, the code protects the attacker's transaction, not yours.
This briefing is provided by IntelFusions for informational and defensive purposes only. It is based on sources assessed to be reliable at the time of writing, and analytic judgments carry the confidence levels indicated. Indicators of compromise are defanged; re-arm them only in controlled environments. IntelFusions is not affiliated with the organizations named and makes no warranty as to completeness or accuracy.