1. Basic Information
Report Title: Tracking BigBear 2.0 Evilginx2 phishing campaign
Source: CloudSEK
Date Published: 2026-09-07
Original Source: CloudSEK
1. Basic Information Report Title: Tracking BigBear 2.0 Evilginx2 phishing...
1. Basic Information
Report Title: Tracking BigBear 2.0 Evilginx2 phishing campaign
Source: CloudSEK
Date Published: 2026-09-07
Original Source: CloudSEK

CloudSEK found 4,148 stolen session cookies and 1,032 plaintext passwords in an operation targeting 461 organizations across more…

A phishing-as-a-service framework called BigBear 2.0 has been used to bypass multi-factor authentication at 258 organizations and…

BigBear 2.0 ruba sessioni Microsoft 365 dopo la MFA: come funziona l'attacco AiTM e quali difese usare per proteggersi.

Researchers got inside the crooks' admin panel and found 5,137 stolen records tied to 461 organizations

Talos details ARToken, a PhaaS panel tied to EvilTokens that supports device code phishing, BEC workflows, SharePoint theft, and…

EvilTokens uses AES-GCM encrypted HTML and Microsoft Device Code Phishing to hide Microsoft 365 account takeover pages until…