The FBI issued a warning about Kali365, a Phishing-as-a-Service toolkit targeting Microsoft 365 users by bypassing multi-factor authentication. First detected in April 2026, it is distributed via Telegram and allows low-skilled attackers to conduct automated phishing campaigns. The platform captures OAuth tokens for persistent access to Outlook, Teams, and OneDrive.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
North Korean Hackers Weaponize VS Code Projects