Le FBI met en garde contre une campagne de phishing utilisant Kali pour cibler les jetons OAuth de Microsoft

Le FBI a émis un avertissement concernant un nouveau kit de phishing baptisé Kali365 qui cible les jetons OAuth de Microsoft. Ce kit est proposé sur Telegram et utilise des leurres générés par intelligence artificielle.

L'alerte souligne comment Kali365 abaisse la barrière à l'entrée pour les attaquants moins techniques. Il permet d'accéder à des leurres de phishing générés par IA capables de compromettre des comptes Microsoft via des jetons OAuth.

Articles connexes

IT expert Supangat warns of Lebaran digital scams via WhatsApp and SMS in a press conference illustration.
Image générée par IA

IT expert warns of digital scams ahead of Lebaran

Rapporté par l'IA Image générée par IA

Ahead of Idul Fitri, IT expert from Untag Surabaya, Supangat, urges the public to heighten vigilance against scams via WhatsApp and SMS. Rising digital transactions are exploited by cybercriminals. Vida founder Niki Santo Luhur identifies two main methods: phishing and malware prevalent in Indonesia.

Microsoft has alerted users that hackers are targeting password reset processes to breach accounts. The activity is attributed to the group Storm-2949.

Rapporté par l'IA

FBI's Atlanta field office, with Indonesian authorities, has dismantled a sophisticated global phishing operation. The network stole thousands of victim account credentials and attempted fraud exceeding $20 million or Rp 342 billion. This marks the first joint cyber investigation of its kind.

A hacking group known as Handala, believed to be affiliated with Iranian cyberintelligence units, has breached the personal email account of FBI Director Kash Patel. The group published photos and emails from the account as proof of the hack, which the FBI and Department of Justice have confirmed involved only historical personal information. The breach follows recent U.S. actions against the group's websites and Patel's public threats to pursue them.

Rapporté par l'IA

A deceptive tech support scam has tricked employees into compromising their company computers. Posing as IT help, scammers guide victims through steps that install Havoc malware. The attack begins with spam emails and escalates via fake phone calls.

Ce site utilise des cookies

Nous utilisons des cookies pour l'analyse afin d'améliorer notre site. Lisez notre politique de confidentialité pour plus d'informations.
Refuser