logo

Eviltokens: A Conversation with Huntress on an AI‑Enabled Device Code Phishing Campaign

ID: 2f8223fe-c754-5bdb-a8f0-991590646600

STIX ID: report--2f8223fe-c754-5bdb-a8f0-991590646600

Feed Name: The CyberWire

Threat Score
70/100

Date Published: 2026-05-20

Date Updated: 2026-05-20

...
...

This Microsoft Threat Intelligence Podcast episode examines EvilTokens, an AI-driven phishing-as-a-service that uses device code phishing to bypass multi-factor authentication and automate large-scale credential theft, highlighting how attackers leverage trusted infrastructure and AI-generated lures to blend into normal enterprise traffic and evade traditional defenses.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.