Microsoft Takes Action Against Phishing-as-a-Service Platform
ID: bd1291a7-28a0-5285-b293-97dac9d6e8c9
STIX ID: report--bd1291a7-28a0-5285-b293-97dac9d6e8c9
Feed Name: Dark Reading
Threat Score
Microsoft seized 240 domains associated with ONNX, a long-running phishing-as-a-service operation that provided AitM phishing kits, MFA/2FA bypasses, and QR-code (quishing) capabilities to customers via Telegram subscriptions; ONNX targeted Microsoft 365 and other tech and financial firms, used bulletproof hosting and encrypted JavaScript to evade takedowns, and has had its infrastructure disrupted by legal action.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
