logo

FBI Warns of Kali365 Phishing Service Targeting Microsoft 365 Account

ID: bac83e28-b4f6-5040-944b-a1838bf45e08

STIX ID: report--bac83e28-b4f6-5040-944b-a1838bf45e08

Feed Name: HackRead

Threat Score
75/100

Date Published: 2026-05-22

Date Updated: 2026-05-22

Author: Deeba Ahmed

...
...

The FBI warns of Kali365, a Phishing-as-a-Service platform marketed on Telegram that uses device-code phishing to steal OAuth tokens from Microsoft 365 accounts, allowing attackers to bypass multi-factor authentication and hijack active sessions for Business Email Compromise and corporate data theft. Security firms observed realistic lures and recommend restricting device code flows, enforcing strict conditional access, and monitoring token and authentication activity.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.