AI-Powered Phishing Kits Fuel 1,380% Surge in Attacks Targeting Microsoft 365
ID: 29bd4812-314b-53e6-bdd9-fe7d3430285d
STIX ID: report--29bd4812-314b-53e6-bdd9-fe7d3430285d
Feed Name: Cyber Press
Threat Score
ReliaQuest warns of a sharp rise in AI-powered phishing-as-a-service targeting Microsoft 365, highlighting two tools (Jalisco and OmegaLord) that abuse the device-code OAuth flow to capture access and refresh tokens, bypass MFA, and enroll attacker-controlled devices (Primary Refresh Tokens) for persistent access; the report includes IOCs and describes rapid data exfiltration and increased operational costs for incident response.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
