Tycoon2FA Si Ricostruisce in Phishing Microsoft 365 Device-Code

Tycoon2FA è tornato come una piattaforma di phishing più resiliente, e la vecchia assunzione che un takedown o un link dall’aspetto legittimo rendano la minaccia meno seria non regge più. Ora usa l’abuso di OAuth device-code contro Microsoft 365, che può trasformare un phish riuscito in accesso persistente all’account tramite un rogue device.

Part of the PlainSec briefing for 2026-05-17

Every edition of this story: Tycoon2FA Si Ricostruisce in Phishing Microsoft 365 Device-Code

Sources