Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft
A sophisticated phishing-as-a-service (PhaaS) platform, dubbed Forg365, has been uncovered targeting Microsoft 365 users with a particularly insidious tactic. The attackers use AI-generated device codes and stolen Active Idle Time Management (AitM) sessions to breach user accounts, underscoring the evolving nature of cyber threats. Forg365’s operation hinges on its ability to generate convincing device codes, … Read more