logo

FBI-Flagged Phishing Kit Kali365 Expands Its Reach

ID: a29d3d95-7f10-5bca-ae72-9708b27b94c3

STIX ID: report--a29d3d95-7f10-5bca-ae72-9708b27b94c3

Feed Name: Dark Reading

Threat Score
78/100

Date Published: 2026-06-02

Date Updated: 2026-06-15

Author: Jai Vijayan

...
...

Kali365, a phishing-as-a-service kit notable for device-code phishing that can bypass MFA, has expanded from Microsoft 365 targeting to a broad set of enterprise and Russian consumer platforms (including MAX Messenger), with researchers identifying active C2 infrastructure and dozens of malicious hosts; vendors and the FBI warn organizations to harden controls and increase user awareness as multiple similar kits proliferate.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.