Protect YourselfPublic
New Phishing Kits Use Open-Source Tools to Bypass MFA
KnowBe4·July 31, 2026·1 min read
Researchers at Lexfo are tracking three sophisticated phishing kits that were built using open-source components, primarily based on the publicly available adversary-in-the-middle ( AiTM ) attack framework “Evilginx.” The phishing kits are designed to proxy “live Microsoft 365 authentication sessions to capture session cookies and OAuth tokens in real time, bypassing MFA entirely.”
Read full article on KnowBe4 →Share this article
Follow broker incidents, regulatory actions & market intelligence
Stay ahead with CLEAREX.MARKET
View all intelligence →