A fast-moving phishing kit is being watched as it shifts from early testing to live deployment, with Microsoft sign-ins in its sights and proxy-style attacks at the center of the risk.
The latest Bluekit development points to a harder problem for defenders: phishing that does not stop at passwords, but can target the live login flow itself.