Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft

A new phishing-as-a-service (PhaaS) operation called Forg365 is using a combination of device code phishing, adversary-in-the-middle (AitM) tactics, antibot evasion, artificial intelligence (AI)-assisted lure creation, and post-compromise mailbox operations targeting Microsoft 365 accounts.

Distributed via Telegram and costing $400 a month (or $3,800 per year), attack chains leverage phishing

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

An Embedded Linux on a Single Floppy

An Embedded Linux on a Single Floppy Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 13.06.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. a password is required — sudo: requests (recent log) Mehr Live-Daten und die komplette Historie im /attacks/

Attack Update: Top 5 Attack-IPs auf doode.info – 09.07.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. Keine relevanten IPs erfasst (ruhig oder stark gefiltert). Mehr Live-Daten und die komplette Historie im /attacks/ Watchtower-Bereich