Diamond Member ThaHaka 0 Posted May 19 Diamond Member Share Posted May 19 This is the hidden content, please Sign In or Sign Up In February 2026, a phishing-as-a-service (PhaaS) platform called EvilTokens went live. Within five weeks, it had compromised more than 340 This is the hidden content, please Sign In or Sign Up 365 organizations across five countries. The targets of the platform received a message asking them to enter a short code at This is the hidden content, please Sign In or Sign Up .com/devicelogin and complete their normal MFA challenge, then walked away believing they had verified a This is the hidden content, please Sign In or Sign Up 0 Quote Link to comment https://hopzone.eu/forums/topic/313757-h4ckn3wsthe-new-phishing-click-how-oauth-consent-bypasses-mfa/ Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.