Microsoft and UK Police Dismantle EvilTokens AI Phishing Ring That Hit 12,000+ Inboxes
TechNadu · x · 2026-09-23
- Microsoft and UK police disrupted the EvilTokens BEC operation: 2 arrests, 50 websites seized, 150+ domains disabled.
- The gang compromised 12,000+ inboxes across 10,000+ organizations and used AI inside stolen Office 365 accounts to analyze emails, flag wire-transfer threads, and pick employees to impersonate.
- Attacks could survive password resets as long as stolen tokens remained valid.
Related event: Microsoft and UK Police Dismantle EvilTokens AI Phishing Operation(2 posts)→
More from Safety
- Copyright Office's AI guidelines use artwork Rose Enigma to illustrate what AI-assisted work is copyrightable — Kyrannio · 2026-09-23
- $1000 bounty for one pre-2022 article flagged 100% AI goes unclaimed, exposing detector flaws — Afinetheorem · 2026-09-23
- OpenAI extends Daybreak cyber defense access to Ukraine's government — OpenAI News · 2026-09-23
- Cross-platform WiFi cracking tool released — deemed impossible a decade ago — evilsocket · 2026-09-23
- Critical Next.js RCE (CVSS 9.5): attacker-controlled SVG in next/og can execute server code — evilsocket · 2026-09-23
- Claude Code users approve 93% of permission prompts, raising agent security concerns — annetgriffin · 2026-09-23