
Microsoft Disrupts EvilTokens Phishing-as-a-Service Platform Targeting Microsoft 365 Accounts
CybersecurityPhishingMicrosoftThreat Disruption
Microsoft seized 50 websites and disabled more than 150 domains in a coordinated disruption operation against a phishing-as-a-service platform called EvilTokens. The platform was specifically targeting Microsoft 365 accounts using device code phishing techniques. The action represents a takedown effort against a service that enabled cybercriminals to conduct phishing attacks at scale.