logo

AI-Powered Phishing Kits Fuel 1,380% Surge in Attacks Targeting Microsoft 365

ID: 29bd4812-314b-53e6-bdd9-fe7d3430285d

STIX ID: report--29bd4812-314b-53e6-bdd9-fe7d3430285d

Feed Name: Cyber Press

Threat Score
78/100

Date Published: 2026-07-15

Date Updated: 2026-07-15

Author: Varshini

...
...

ReliaQuest warns of a sharp rise in AI-powered phishing-as-a-service targeting Microsoft 365, highlighting two tools (Jalisco and OmegaLord) that abuse the device-code OAuth flow to capture access and refresh tokens, bypass MFA, and enroll attacker-controlled devices (Primary Refresh Tokens) for persistent access; the report includes IOCs and describes rapid data exfiltration and increased operational costs for incident response.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.