Monday 13 July 2026 01:58:11 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#Microsoft 365


Forg365 Turns a Legitimate Microsoft Login Step into a Rentable Access Trick

Published: 10 July 2026 19:35Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A reported phishing-as-a-service kit is said to abuse Microsoft’s device-code flow, showing how cloud identity abuse can outlast a simple password theft.

Forg365 Turns Microsoft 365 Phishing Into a Bought-and-Sold Access Business

Published: 10 July 2026 18:24Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: NEURALSHIELD

A Telegram-linked phishing service shows how identity theft now borrows the mechanics of SaaS, combining device-code abuse, token persistence, and AI-written lures.

Passkeys Become the Bait: A Vishing Crew Turns Microsoft Entra Enrollment Into a Trap

Published: 10 July 2026 14:46Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A panel-driven phishing operation is using fake security calls to pressure Microsoft 365 users into registering a new passkey, showing how identity attacks can target the enrollment process instead of the login itself.

Fake Microsoft Sign-In Pages Turn a Phone Call into an Identity Trap

Published: 10 July 2026 14:24Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A vishing campaign is steering Microsoft 365 users toward counterfeit Microsoft Entra ID login pages, showing how social engineering now targets the identity layer itself.

Forg365 and the New Business of Stealing Microsoft 365 Sessions

Published: 10 July 2026 02:06Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: NEURALSHIELD

A freshly described phishing service shows how cloud-account theft is becoming a packaged identity operation, blending relay tactics, OAuth abuse, and AI-assisted lures.

Forg365 and the New Face of Microsoft 365 Theft: Phishing for Sessions, Not Just Passwords

Published: 09 July 2026 18:24Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: NEURALSHIELD

A reported phishing-as-a-service kit blends AiTM relays, device-code abuse, and AI-written lures, showing how identity attacks are being packaged for reuse.

Fake Passkey Enrollment Is Becoming the New Front Door for Microsoft 365 Intrusions

Published: 09 July 2026 10:17Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A vishing-led campaign is abusing the trust users place in passkey onboarding, showing that phishing resistance can still be undermined at the enrollment step.

How a Phone Call Can Become a Cloud Break-In

Published: 09 July 2026 08:18Category: Ransomware & ExtortionGeo: North America / USAAuthor: LOGICFALCON

A recently reported extortion operation shows how voice phishing, device-code login abuse, and rushed MFA enrollment can turn Microsoft 365 identity controls into a pathway for data theft.

The Phishing Page That Waited to Wake Up

Published: 08 July 2026 18:47Category: Security Awareness & Social EngineeringAuthor: PATCHKNIGHT

A ghost-phishing campaign is reportedly hiding malicious pages until they decrypt inside the browser, a trick that can leave traditional email and URL checks staring at an empty frame.

Microsoft’s Device Code Flow Is Becoming a Rental Service for Account Takeovers

Published: 08 July 2026 18:06Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: AUDITWOLF

A late-June phishing run against Microsoft 365 shows how attackers are industrializing a legitimate sign-in method, turning trusted authentication into a reusable identity-abuse chain.

The Real Microsoft Login That Handed Criminals a Session

Published: 08 July 2026 14:12Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A phishing kit called EvilTokens shows how attackers can abuse a legitimate OAuth path to collect valid Microsoft 365 tokens without stealing a password.

Verified, Sponsored, and Still Dangerous: The Trust Signals Cybercriminals Are Learning to Hijack

Published: 04 July 2026 08:09Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: AUDITWOLF

Two separate techniques show how attackers are leaning on user trust - one through a promoted macOS lure, the other through browser-based Microsoft 365 token abuse.

Affiliate Phishing Is Getting an Identity Stack of Its Own

Published: 03 July 2026 18:13Category: CybercrimeGeo: North America / USAAuthor: CRYSTALPROXY

A Microsoft 365 phishing panel linked to the EvilTokens ecosystem shows how criminal operators are turning login abuse, token handling, and persistence into a reusable service.

When the Consent Screen Becomes the Crime Scene

Published: 02 July 2026 18:37Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: AUDITWOLF

ConsentFix and ClickFix show how a fake prompt and an OAuth flow can turn Microsoft 365 identity controls into a fast-moving token theft problem.

When Microsoft Sign-In Becomes the Trap: ARToken and the New Token-Theft Playbook

Published: 02 July 2026 14:48Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A phishing kit tied to Microsoft 365 targeting shows how attackers can lean on legitimate cloud login flows, trusted collaboration branding, and edge-hosted delivery to turn identity into the attack surface.

The ARToken Panel Shows How Phishing Became a Token Factory

Published: 02 July 2026 14:12Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A React-based phishing-as-a-service panel reportedly built for Microsoft 365 abuse points to a quieter threat: industrialized token handling, not just stolen passwords.

81 Million Login Probes Turn a Routine Identity Weakness Into a Cloud Alarm

Published: 02 July 2026 10:24Category: CybercrimeGeo: North America / USAAuthor: CIPHERWARDEN

A two-week burst of automated sign-in attempts shows how password spraying can strain cloud defenses even when the full extent of account impact is still unclear.

81 Million Logins, 78 Compromises: The Password-Spray Flood Hitting Microsoft 365

Published: 02 July 2026 08:09Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A massive credential campaign against Microsoft 365 shows how distributed password spraying can turn identity controls into the real front line of cloud defense.

81 Million Login Attempts, 78 Accounts: The Quiet Machinery Behind a Microsoft 365 Spray Campaign

Published: 02 July 2026 02:08Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: AUDITWOLF

A two-week wave of password spraying against Microsoft 365 shows how weak credentials and permissive sign-in controls can turn identity into the softest layer of cloud security.

EvilTokens and the Quiet Theft of Trust Inside Microsoft 365

Published: 30 June 2026 15:24Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: NEURALSHIELD

A phishing-as-a-service kit tied to OAuth 2.0 shows why modern account attacks can succeed without ever stealing a password.