Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk

Kali365 is turning a legitimate Microsoft login into a gateway to corporate data.

The phishing kit targets US organizations with attacker-controlled device codes that victims approve on Microsoft’s real authentication page. Once access and refresh tokens are issued, attackers may retain access to email, documents, and cloud resources, creating a direct path to data exposure, financial fraud,

from The Hacker News https://ift.tt/kReEQ1r
https://ift.tt/ag7ewRh

About the Author

Leave a Reply

Your email address will not be published. Required fields are marked *

You may also like these