In February 2026, a phishing-as-a-service (PhaaS) platform called EvilTokens went live. Within five weeks, it had compromised more than 340 Microsoft 365 organizations across five countries. The targets of the platform received a message asking them to enter a short code at microsoft.com/devicelogin
โก
Key Insights
10 editorial insights.
AiFeed24 Teamยทโฑ 1 min readยทSecurity
Deep Analysis
Multi-Source Intelligence
Found this useful? Share it!
Related Stories

๐ฑMobile
Optimize Windows Now
about 2 hours ago
๐
๐Security
Spanish Authorities Crack Down on Cyberstalker Exposing Govt Officials' Personal Data
about 2 hours ago
๐
๐Security
Red Hat npm packages compromised to steal developer credentials
about 2 hours ago
๐
๐Security
Hackers hijack thousands of sites for ClickFix and FakeUpdate attacks
about 1 hour ago
